Optimistic WritingOptimistic Writing
Legal

Privacy & Terms

Last updated: 28 July 2026

This page covers both our Privacy Policy and our Terms of Use, in one place, in plain language. If anything here is unclear, contact us — we'd rather explain it than have you guess.

Privacy PolicyTerms of Use

Privacy Policy

What we collect

When you register, we collect your email and password, and optionally your name, birth date, phone number, and a social media handle — all optional fields stay optional. If you write journal entries, we store what you write and any theme or personal topic you attach to it. If you take one of the self-assessment tests, we store your answers and score. We also record basic technical details: your chosen language, and, for visitors who haven't registered yet, an anonymous device token so a draft can survive a page reload. When you save an entry we also note whether it was written on a phone or on a computer, worked out from the description your browser sends of itself. It is stored with that entry so your own writing report can show it. We also record, against your account, which of our apps you have used — the iPhone app, the Android app, a phone browser or a computer browser — so that a problem you tell us about can be traced to the one you were using. That is a category and not a device: two different Android phones are the same single word here, and we keep no device identifier, no model and no operating-system version.

Your test answers are health data. The self-assessment questionnaires ask about mood, anxiety and, in one item, thoughts of self-harm — so your answers and scores count as health information under data-protection law, a category the law treats as needing your explicit consent. We rely on exactly that: we hold them because you chose to take the test, and for one purpose, which is to show you your own result and how it moves over time. They are never used for advertising, never sold, and seen by nobody else unless you have separately chosen to contribute your results. They are deleted when your account is.

How your writing is protected

You choose one privacy level for your journal in Preferences, and that single choice decides everything that happens to what you write. You can change it whenever you like; it applies to entries written from then on.

Beyond the level you pick, a few other protections are always available to you: you can blur your text while you type, so nobody beside you can read over your shoulder; opening your past writings asks for your password again — or your fingerprint or face — even on an already signed-in browser; and you can turn on two-factor authentication for the account itself. Our servers are our own, so your entries do not pass through a third-party cloud database vendor.

Prefer to watch? Two minutes on everything that protects your words:

Cookies

We use a small number of cookies: one that keeps you signed in, one that remembers your chosen language, one anonymous device token for visitors writing before they register, and one that remembers your cookie choice itself. None of these are used for advertising, and none are shared with ad networks.

Who else sees your data

Our servers are self-hosted — we don't route your data through a third-party cloud database vendor. If you use the optional AI writing analysis, the text you submit for that specific check is sent to an outside AI provider’s API to generate feedback; it isn't used to identify you. The request is made by a site-owned account and carries nothing about who wrote the text — no sender, no author, no details about the entry — only what is needed to produce your analysis. If email confirmation or notifications are enabled, an email provider handles delivery of those messages only.

The AI: what it sees, and what it never knows

Some parts of the app use an AI model — the writing check that reads an entry back to you, and the extras built on it. Today that model is not ours: it is run by an outside provider, on their machines, which is exactly why it is worth being exact about what "we send it to an AI" means. The phrase can describe almost anything; here it describes one narrow thing, and the points below are the whole of it.

The same thing, end to end:

You write your day in your own words, and the writing stays with you.

There are three things we would rather tell you than have you discover for yourself. First, the masking is careful, but it is not infallible: it can miss a detail written in an unusual way, or a name that is uncommon in the language you are writing in. So we see it as one layer of protection among several, and not the whole of it.

Second, there is one feature that needs to read more than a single entry: when you ask the theme library to suggest themes for you, the engine reads what you have written in your flow, with the personal details hidden in the same way. The exception is entries on the zero-knowledge level, which we cannot reach at all. And in the end, all we keep from that analysis is the short report it produces — never the writing itself.

Third, we check the AI itself. On the two levels where you have already agreed that our team may read what you write — shared to help the method and open for research — we look at samples of the exchange: what was sent to the model, with names and contact details already masked, and what it answered back. We do that to catch the model being wrong, unkind or unsafe, and that is the only thing those samples are ever used for. We start with the exchanges our own checks flag, and take a small number at random besides. A sample is kept for at most ninety days, and it is not linked to your account. On the other three levels we do not do this at all: zero-knowledge entries we cannot open, don’t store at all leaves nothing to look at, and on the recommended stored, encrypted level our team still does not read your entries.

Research

We use a small set of anonymised numbers to study what writing does for wellbeing: the positivity score our AI gives an entry, how much you wrote, your language and streaks, and — if test sharing is on — your self-assessment scores. These numbers are separated from your identity before any research use: no name, no email, no account identifier, and findings are only ever published in aggregate. Your words themselves are never research data unless you explicitly chose the "Open for research" privacy level. Accounts created from July 2026 share test scores for research by default; you can switch this off any time in Preferences → Your data. Accounts created earlier keep their old setting (off) unless you turn it on. Some privacy levels have nothing to share by design: "Don't store at all" leaves no data anywhere, and zero-knowledge entries contribute only their length — never a positivity score, which for them does not exist on our servers.

This is one person's day: a name, a date, a positivity score, a word count.

Working with anonymised, aggregated data like this is ordinary and lawful — UK data-protection law does not restrict information that can no longer identify anyone. It is how Apple studies typing habits (differential privacy), how Google Maps shows traffic without knowing who is driving, and how the NHS and the ONS publish health statistics. The difference here is only how little we collect in the first place.

Your rights

You can review and change most of your data any time in Preferences. You can ask us to export or permanently delete your account and its writings by contacting us — we'll act on that request without asking you to justify it.

Data retention

We keep your data for as long as your account exists. If you delete your account, your writings and test results are deleted with it.

Changes to this policy

If we materially change how we handle your data, we'll update this page and its "last updated" date, and — for significant changes — let signed-in users know directly.

Terms of Use

Not medical advice

The self-assessment tests on this site (including CORE-OM and GAD-7) are screening tools, not a diagnosis. They're meant to help you notice patterns, not to replace a conversation with a qualified professional. If a result concerns you, please talk to one.

Your account

You're responsible for keeping your password private and for the accuracy of the information you provide. You must be old enough, under the law where you live, to agree to these terms on your own.

Payments & subscriptions

Writing, your journal, and every self-assessment test are free, and will stay free. A paid yearly subscription unlocks the AI-powered extras — more writing analysis and deeper insights. Founding members — people who joined while we were new — never pay anything.

The seller is Omar Meriwani, trading as Weave (sole trader, United Kingdom). The price and what it includes are always shown before you pay. Payments are handled by a dedicated payment provider; your card details never touch our servers. Prices include VAT where it applies. The subscription renews yearly; we email you before each renewal, and you can cancel anytime — cancelling stops the next renewal, and you keep the paid features until the period you already paid for ends.

Refunds: within 14 days of any payment you can ask for a full refund, no questions asked — this honours your cooling-off right under the UK Consumer Contracts Regulations, even though paid features start immediately. After those 14 days, if something isn't right, contact us and we will be reasonable. If a renewal payment fails, your account simply returns to the free tier — nothing is ever deleted over money.

If a price ever changes, we tell you well before your next renewal and the change applies only from that renewal. If you subscribe through an app store rather than our website, that store's own billing and refund process governs those purchases.

Acceptable use

Don't use the site to harass others, to post illegal content, or to attempt to access another person's account or data. We may suspend accounts that do.

Your content

What you write is yours. We don't claim ownership of your journal entries; we only use them the way the privacy level you chose above describes. The method itself, the site's design, and its published theme library are ours.

Availability & changes

We do our best to keep the site available and to give notice before major changes, but we can't guarantee uninterrupted service, and features may change as the method develops.

Limitation of liability

The site is provided as-is, without warranty. To the extent the law allows, we aren't liable for indirect or consequential damages arising from your use of it.

Contact

Questions about either policy? Reach out any time.