Privacy Policy
Effective Date: May 26, 2026
Omakase ("we", "us", "our") operates the web application at omakase.io (the "Service"). This Privacy Policy explains what information we collect, how we use it, and the choices you have.
1. Information We Collect
Account Information
When you register, we collect your display name, email address, and a hashed password. If you sign in with Google, we receive your Google account email and profile name. We never store your Google password.
Usage Data
We collect information about how you interact with the Service, including pages visited, features used, journey progress, workbook responses, and journal entries. This data is tied to your account and used to provide the Service.
Cookies
We use essential session cookies to keep you signed in and to protect against cross-site request forgery. We do not use advertising or tracking cookies.
2. How We Use Your Information
- To provide, maintain, and improve the Service
- To authenticate your identity and secure your account
- To save and display your journey progress, workbook responses, and journal entries
- To provide AI coaching features (your prompts are sent to third-party AI providers; see Section 4)
- To generate anonymized, aggregated analytics about Service usage
3. Information We Do NOT Collect
- Payment or financial information (no billing features currently)
- Precise geolocation data
- Data from your contacts, phone, or other device sensors
4. Third-Party Services & Data Sharing
We do not sell your personal information. We may share data with third parties only in the following limited circumstances:
- Google OAuth: When you sign in with Google, Google receives confirmation that you authorized our application. Google's use of your data is governed by Google's Privacy Policy.
- AI Coaching Providers: When you use AI coaching features, the text of your prompts and workbook responses is sent to our AI provider (currently Google Gemini) to generate feedback. We do not send your name, email, or other personally identifiable information with these requests.
- Google Drive: When you export a template to Google Docs, the document content is uploaded to your Google Drive via your own OAuth token. We do not retain access to your Drive after the export.
- Anonymized Analytics: We may share anonymized, aggregated usage statistics (e.g., number of users, popular journeys, completion rates) with third parties. This data cannot be used to identify any individual user.
- Legal Requirements: We may disclose information if required by law, regulation, or legal process.
5. Data Retention
We retain your account data and associated content for as long as your account is active. You may delete your account at any time from the Settings page, which permanently removes your personal data, progress, and responses from our systems.
6. Data Security
We use industry-standard practices to protect your data, including encrypted connections (HTTPS/TLS), hashed passwords (bcrypt), and secure session management. However, no method of transmission over the Internet is 100% secure.
7. Your Rights
You may:
- Access and update your profile information at any time
- Export your data (workbook responses, journal entries, templates)
- Delete your account and all associated data
- Contact us with questions about your data
8. Children's Privacy
The Service is not directed to children under 16. We do not knowingly collect personal information from children under 16.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify registered users of material changes by posting a notice on the Service. Your continued use after changes constitutes acceptance of the updated policy.
10. Contact
For questions about this Privacy Policy, contact us at privacy@directorsjourney.dev.