Moonlight – Privacy Policy

Effective Date: June 28, 2025

At Moonlight, we believe in being the light—and that includes being transparent about how we handle your personal information. This Privacy Policy explains how Moonlight Be the Light LLC ("we," "us," or "our") collects, uses, protects, and shares information when you use the Moonlight mobile application and related services (collectively, the "Services").

BY USING MOONLIGHT, YOU AGREE TO THE COLLECTION AND USE OF INFORMATION IN ACCORDANCE WITH THIS POLICY.

1. Information We Collect

Information You Provide Directly

  • Email Address: When you create an account or subscribe to premium features
  • Reflection Content: Journal entries, daily reflections, and personal notes you voluntarily enter
  • Account Preferences: Your chosen growth track (Strength, Positivity, Gratitude, Sobriety) and notification settings

Information We Collect Automatically

  • Device Information: Device model, operating system, app version, and unique device identifiers
  • Usage Analytics: How you interact with the app (reflection streaks, features used, screen views, button taps)
  • Technical Data: App performance, crash reports, and error logs to improve our Services

Information We DO NOT Collect

We do not collect:

  • Your full name or personal identification details
  • Location or GPS data
  • Biometric information
  • Sensitive health information or medical diagnoses
  • Contact lists or other app data from your device

2. How We Use Your Information

We use your information to:

Provide Core Services

  • Deliver personalized AI coaching and insights based on your reflections
  • Generate weekly transformation stories and progress tracking
  • Send daily wisdom quotes tailored to your chosen growth track
  • Sync your data across devices and provide backup functionality

Improve Our Services

  • Analyze usage patterns to enhance app features and user experience
  • Train and improve our AI models using anonymized, aggregated data
  • Identify and fix technical issues or bugs
  • Develop new features that support your growth journey

Communicate With You

  • Send push notifications for daily reflection reminders (with your permission)
  • Deliver inspirational content and app updates via email
  • Provide customer support and respond to your inquiries
  • Share important service announcements or policy changes

We will never spam you, and we will never sell your personal information.

3. How We Share Your Information

We Keep Your Reflections Private

Your personal reflections, journal entries, and individual insights are never shared with third parties and remain completely private to you.

Third-Party Service Providers

We work with trusted partners to provide our Services:

  • OpenAI: Processes your reflections to generate personalized AI insights and coaching
  • RevenueCat: Manages subscription payments and billing
  • Firebase (Google): Provides authentication, analytics, cloud storage, and push notifications
  • Email Service Provider: Sends marketing emails and app updates (we may use Mailchimp, ConvertKit, or Customer.io)

These partners are contractually required to protect your data and may only use it to provide services to Moonlight.

Anonymized, Aggregated Data

We may share anonymized, aggregated insights (such as "Users practicing gratitude show 15% higher reflection consistency") for:

  • Blog content and community insights
  • Research on personal growth and mindfulness
  • Marketing materials that inspire others on their journey

No personally identifiable information or individual reflections are ever included.

Legal Requirements

We may disclose information if required by law, court order, or to protect the rights, property, or safety of Moonlight, our users, or others.

4. Data Security

We take protecting your information seriously and implement appropriate security measures:

  • Encryption: Your data is encrypted in transit and at rest
  • Access Controls: Limited employee access on a need-to-know basis
  • Regular Security Reviews: We continuously monitor and improve our security practices
  • Incident Response: In the event of a data breach, we will notify affected users within 72 hours as required by law

However, no method of transmission over the internet is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security.

5. Data Retention

Active Accounts

We retain your information as long as your account is active and as necessary to provide our Services.

Account Deletion

When you delete your account:

  • Your data is removed from our active systems within 30 days
  • Backups containing your data are retained for up to 90 days for system reliability
  • After this period, your information is permanently deleted

Legal Obligations

We may retain certain information longer if required by law or to resolve disputes.

6. Your Privacy Rights

Depending on where you live, you may have certain rights regarding your personal information:

All Users

  • Access: Request information about what personal data we have about you
  • Correction: Update or correct inaccurate information
  • Deletion: Request deletion of your account and personal data
  • Export: Receive a copy of your reflections and data in a portable format
  • Opt-Out: Unsubscribe from marketing emails or disable push notifications

Additional Rights (EU, California, and Other Regions)

  • Portability: Receive your data in a machine-readable format
  • Restriction: Limit how we process your information
  • Objection: Object to certain types of data processing
  • Withdraw Consent: Withdraw consent for data processing where applicable

How to Exercise Your Rights

To exercise any of these rights, contact us at support@moonlightbethelight.com. We will respond to your request within 30 days.

You can also:

  • Update your email and preferences within the app
  • Disable push notifications through your device settings
  • Unsubscribe from marketing emails using the link in each message

7. Children's Privacy

Moonlight is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13.

If we learn that we have collected personal information from a child under 13, we will delete that information immediately. If you believe we have collected information from a child under 13, please contact us at support@moonlightbethelight.com.

8. International Data Transfers

Moonlight is based in the United States. If you are accessing our Services from outside the U.S., your information may be transferred to, stored, and processed in the United States where our servers are located.

For users in the European Union, we ensure appropriate safeguards are in place for international data transfers as required by GDPR.

9. Cookies and Tracking Technologies

Mobile App

Our mobile app does not use cookies but may use similar technologies (like device identifiers) for analytics and app functionality.

Website

If you visit our website, we may use cookies for:

  • Basic website analytics (via Google Analytics)
  • Improving website performance and user experience

We do not use cookies for:

  • Behavioral advertising or retargeting
  • Cross-device tracking or user profiling
  • Third-party advertising networks

You can control cookie preferences through your browser settings.

10. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act:

Categories of Information We Collect

  • Identifiers: Email addresses, device IDs
  • Commercial Information: Subscription and payment records
  • Internet Activity: App usage and analytics data
  • Personal Reflections: Content you voluntarily provide

Your California Rights

  • Right to Know: What personal information we collect, use, and share
  • Right to Delete: Request deletion of your personal information
  • Right to Opt-Out: We do not sell personal information, so no opt-out is necessary
  • Right to Non-Discrimination: We will not discriminate against you for exercising your rights

How to Exercise Your Rights

Contact us at support@moonlightbethelight.com or submit a request through the app. We may need to verify your identity before processing your request.

11. European Privacy Rights (GDPR)

If you are in the European Union, you have rights under the General Data Protection Regulation:

Legal Basis for Processing

We process your information based on:

  • Contract: To provide the Services you've requested
  • Legitimate Interest: To improve our Services and provide customer support
  • Consent: For marketing communications and optional features

Your GDPR Rights

  • Access, Rectification, Erasure: As described in Section 6
  • Data Portability: Receive your data in a portable format
  • Restrict Processing: Limit how we use your information
  • Object to Processing: Object to certain uses of your data
  • Withdraw Consent: For consent-based processing

Complaints

You have the right to lodge a complaint with your local data protection authority if you believe we have not handled your personal information properly.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices or for legal, operational, or regulatory reasons.

When we make changes:

  • We will notify you through the app or by email
  • We will update the "Effective Date" at the top of this policy
  • Continued use of our Services after changes become effective constitutes acceptance of the updated policy

For significant changes that affect how we use your personal information, we will provide prominent notice and may request your consent.

13. Third-Party Links and Services

Our Services may contain links to third-party websites, apps, or services. This Privacy Policy does not apply to those third parties. We encourage you to read the privacy policies of any third-party services you use.

14. Business Transfers

If Moonlight is involved in a merger, acquisition, or sale of assets, your personal information may be transferred as part of that transaction. We will notify you of any such change and the choices you may have regarding your personal information.

15. Contact Us

If you have questions about this Privacy Policy or how we handle your personal information, please contact us:

Moonlight Be the Light LLC
10 Cedar Springs Lane
Needham, MA 02492

📧 support@moonlightbethelight.com

For privacy-specific inquiries, please include "Privacy" in your subject line.

Summary: Your Privacy at a Glance

What We Collect: Email, reflections you share, device info, usage analytics
What We Don't Collect: Names, location, health records, biometric data
How We Use It: AI insights, app improvements, personalized experience
Who We Share With: Trusted service providers only (OpenAI, RevenueCat, Firebase)
Your Rights: Access, delete, export, correct your data anytime
Your Reflections: Always private, never shared with third parties

We believe in transparency, user control, and being the light in how we handle your personal information.

Last updated: June 28, 2025