CERESIS // CORE
PrivacyTermsRefundsSign in

Last updated September 14, 2026

Privacy Policy

Ceresis Core is a place to log your days. What you log is personal, so this page says plainly what we collect, what happens to it, and how you take it with you or erase it.

Who we are

Ceresis Core is operated by Brian Cruz, an individual running it as a sole proprietor (“we”, “us”). Questions about this policy or your data go to support@ceresiscore.com.

What we collect

Your account
Your email address, a display name, your timezone, your plan, and a password stored only as a hash by our authentication provider.
What you put in
Log entries and the text you typed to create them, trackers and targets, tasks, goals, an exam or deadline date if you set one, notes, journal entries, messages in the assistant thread, the shape of your goal map (its areas, what each one measures and which tracker it reads, including measures you have taken off it, which are kept so you can put them back), and your dashboard layouts and settings (including the assistant voice and theme you choose).
Health and wellness information
If you choose to log meals, sleep or workouts, that is health information. We use it only to show it back to you and, on Pro, to generate estimates and briefs for you. See “Health data” below.
Photos
On Pro you can photograph a meal to have it read. The photo is sent for that one reading and then discarded — we never store it. Only the entry it produced is kept.
Usage records
For Pro AI features, a count of each request and its cost (120 questions a month, and so on), so monthly allowances can be enforced. These records don’t contain what you asked.
Device and notifications
If you turn on notifications, your browser’s push subscription (an address our server sends notifications to). If you allow location for the weather widget, your approximate coordinates — see “Weather” below.
Calendar
If you connect a calendar, the private iCal address you paste. Our server reads that feed to show your upcoming events; the events themselves aren’t stored. Disconnecting deletes the address.
Bug reports
If you send one from Settings, what you write, the page you came from, your browser type and screen size. We use it only to fix the problem; it’s deleted with your account.
Corrections
When you correct a logged entry, we keep how it was first filed alongside it, so a wrong estimate can be traced. It’s deleted with the entry or with your account.
Product usage records
Dated records of a few actions: that you logged something on a day, finished setup, opened a brief, were shown a pace check, answered “did this change a decision today?”, opened checkout, or finished or skipped the welcome tour. They never include what you logged or what a brief said. They’re in your export and deleted with your account.
Abuse protection
Our host counts requests per network address for about a minute to stop floods of requests. Those counts aren’t tied to your account or kept.
Cookies
The cookies that keep you signed in, one that remembers your chosen theme on this device so pages open in it, and, if you open the full dashboard on a phone, one that keeps it open until you close the browser. No advertising or cross-site tracking cookies.

How we use it

  • To run the app: store what you log and show it back to you across your devices.
  • On Pro, to generate what you ask for: filing and estimates, photo reading, answers and briefs.
  • To enforce plan limits, prevent abuse, and keep the service secure.
  • To learn whether Ceresis Core actually helps — for example, whether people come back in their second week — from the product usage records above, never from the content of your logs.
  • To email you about your account — sign-in links, security and billing notices.

We don’t sell your data, we don’t share it with advertisers, and we don’t use your logs to train AI models.

Who processes it for us

We use a small number of service providers, each only for its part of running Ceresis Core:

Supabase
Database and sign-in. Your data is stored here, isolated per account.
Cloudflare
Hosting and delivery of the app.
Anthropic
AI processing, for Pro features only. The text or photo needed for a request is sent when you use a Pro feature. Under Anthropic’s commercial terms, it isn’t used to train their models.
MET Norway
Weather forecasts. Our server sends coordinates rounded to about a kilometre, with nothing that identifies you.
OpenStreetMap (Nominatim)
Finding a city you type for the weather widget. Only the text you search for is sent. The city you choose is saved to your account.
Your calendar provider
Google, Apple, Outlook or whoever hosts the calendar address you connect — we request that feed from them.
Your phone’s push service
If you turn on notifications, briefs are delivered through your browser’s push service (Apple, Google or Mozilla). The message is encrypted so only your device can read it.
Paddle
Payments for Pro. Paddle handles your card details; we never see or store them. We keep your Paddle customer and subscription IDs and your subscription status, so the app knows your plan.
beehiiv
The waitlist and product updates, if you sign up for them.

Health data

Some laws, including Washington’s My Health My Data Act, give health information extra protection. We collect it only when you choose to log it, use it only to provide the app to you, never sell it, and never share it except with the providers above as needed to run the features you use. You can delete any entry, or everything, at any time. We ask for your consent before you turn on health tracking, and you can withdraw it by removing those entries and categories.

Your data, your call

  • Export: Settings → Your data downloads everything as JSON or as a zip of CSV files, on any plan.
  • Correct or delete: edit or delete any entry, note or journal entry directly in the app.
  • Delete your account: Settings → Delete account removes your account and every row of your data immediately. Encrypted backups roll over and are gone within 30 days.
  • Other requests — access, restriction, objection, or a question about any of this — go tosupport@ceresiscore.com. We answer within 30 days.

Security

Every account’s data is isolated at the database level with row-level security, so one account can’t read another’s rows. Connections are encrypted in transit, data is encrypted at rest, and AI features are reachable only through a server-side gate. No system is perfectly secure; if a breach affects your data, we’ll notify you and the relevant authorities as the law requires.

Children

Ceresis Core isn’t for anyone under 16, and we don’t knowingly collect data from them.

Changes

If we change this policy in a way that affects how your data is used, we’ll tell you by email or in the app before the change takes effect.

© 2026 Ceresis CorePrivacyTermsRefunds