PRIVACY POLICY

Your reflection belongs to you.

Effective July 25, 2026

Overview

Axiom is a local-first values-reflection and conversation-preparation app. This policy explains what Axiom stores, what leaves your device when you ask it to, and the choices you control.

Information stored on your device

Axiom may store interview choices, wished-for choices, attachment-tendency reflections, derived values-map data, stability snapshots, a display name, a profile photo you select, settings, onboarding state, comparison reports, and temporary cryptographic keys for pending invites. This information supports app functionality and is not sent to a developer-operated server.

iCloud profile lookup

If you choose “Fill name from iCloud,” Axiom asks Apple’s CloudKit service for the name and user-record identifier associated with the iCloud account signed in on that device. Axiom stores the returned name and identifier locally so it can fill your profile. The developer does not receive this lookup result. Axiom does not upload your interview answers or values map to a developer-controlled CloudKit database.

Invites and encrypted replies

Axiom shares nothing until you choose to create an invite or reply and select a delivery destination.

An invite link contains the inviter’s display name, selected relationship lens, whether an attachment-tendency prompt is requested, a random session identifier, creation and expiration dates, and a public encryption key. It does not contain the inviter’s answers, values map, profile photo, or private key.

A reply link contains the responder’s display name and selected answers inside authenticated ciphertext created with Apple CryptoKit. The reply can be opened only with the matching private key retained on the device that created the invite. Axiom removes wished-for or aspirational answer choices before building the reply.

The person you share with and the delivery service you choose may receive the link and ordinary delivery metadata. Encryption does not prevent a recipient from saving or forwarding information after they open it. Invite and reply links expire seven days after the original invite.

Developer collection, analytics, advertising, and tracking

Axiom does not require an Axiom account and does not use a developer-operated backend, advertising SDK, cross-app tracking, or third-party analytics SDK. The developer does not intentionally collect your reflection data through the app.

Retention and deletion

Locally stored data remains until you clear it, delete all local Axiom data in Settings, remove the app, or the system removes it. Expired pending invite keys are removed by Axiom. Because Axiom does not maintain a developer account or backend record for you, there is no developer-held Axiom account to delete.

Security

Axiom uses Apple CryptoKit for its encrypted reply flow. No security measure can eliminate every risk. Protect your device and share sensitive links only through destinations and with people you trust.

Children’s privacy

Axiom is not designed as a specialized children’s service, and the developer does not knowingly collect personal information from children through the app.

Changes to this policy

This policy may change when Axiom’s features, data practices, or legal obligations change. The effective date above identifies the current version.

Contact

For privacy questions, use the Axiom support page. Do not post interview answers, invite links, names of other people, or other sensitive information in the public support tracker.