Mediator: Couples Therapy

Privacy Policy

Effective date: August 27, 2026

Overview

Mediator lets two partners talk privately with the same AI mediator. Each partner sees only their own messages and the mediator's replies to them. The AI can consider both perspectives, but one partner never receives the other partner's raw messages.

This policy explains what Mediator collects, how it is collected and used, which service providers receive it, how long it is kept, and the choices available to you.

Information Mediator Collects

  • Identity and relationship identifiers— an opaque iCloud user record identifier, couple identifier, pairing code, member slot, and related timestamps.
  • Relationship content— messages you send, AI replies, conversation history, session summaries, and private mediator notes derived from the conversation.
  • Optional voice data— a voice recording is collected only when you use transcription. The audio is sent for transcription and is not stored by Mediator after the request. The returned text stays in the message field unless you choose to send it.
  • Notification data— an Apple Push Notification service device token and whether each partner can currently receive notifications.
  • Subscription data— the shared couple identifier, product and entitlement status, purchase status, and related subscription information needed to unlock the app for both partners.
  • Analytics and diagnostics— app and device information, feature events, user, couple and conversation identifiers, error details, and AI request metadata such as model, latency, token counts, and estimated cost. Mediator does not send message bodies, voice recordings, AI replies, summaries, or mediator notes to its analytics provider, and session replay is disabled.

AI Processing and Your Permission

Mediator asks for your permission in the app before using third-party AI services. If you allow AI data sharing, the information sent for a text response can include what you write, relevant conversation history from both partners, session summaries, and mediator notes. When you request transcription, the voice recording you just made is sent for that purpose.

Mediator's Cloudflare-hosted service sends this data to OpenRouter, which routes it to OpenAI to transcribe audio and generate mediator replies, summaries, and notes. OpenRouter is configured not to allow model providers to use chat content for training or data collection. OpenRouter does not retain prompt and response content by default, and OpenAI does not use API inputs or outputs to train its models by default. Providers may retain limited data when required for security, abuse prevention, or law, under their applicable business and privacy terms.

If you choose Not Now, Mediator does not send your messages or recordings to OpenRouter or OpenAI and AI conversations remain unavailable. You can later allow sharing from the same screen, or turn it off again in Settings.

How Information Is Used

  • Pair partners and keep each person's message stream private.
  • Store, synchronize, and display conversations across sessions.
  • Generate AI replies, summaries, mediator notes, and transcriptions after permission is given.
  • Send conversation and relationship-state notification hints.
  • Manage shared subscription access, purchases, and restoration.
  • Operate, secure, troubleshoot, and improve Mediator.
  • Comply with legal obligations and respond to valid legal requests.

Mediator does not sell personal information and does not use relationship content for advertising.

Storage and Retention

Relationship data is stored in a Cloudflare Durable Object dedicated to the couple. A limited Cloudflare D1 directory stores routing and liveness information needed to locate that object. Data is encrypted in transit, and the hosting platform provides encryption at rest.

Messages, summaries, and mediator notes are kept while the couple uses Mediator so conversations can continue across sessions. Choosing Leave couple or Delete my dataremoves the couple's active relationship data, including both partners' messages and mediator notes. Operational security and diagnostic records may remain for a limited period, and service providers retain data according to their policies and legal obligations.

Service Providers

  • Cloudflare— hosts the API, relationship storage, routing directory, and network services.
  • OpenRouter and OpenAI— process the content described above for AI mediation and optional transcription after permission is given.
  • Apple— supplies the opaque iCloud identity, push notification delivery, App Store purchases, and subscription infrastructure.
  • RevenueCat— processes the shared couple identifier and App Store subscription state to provide shared access. It does not receive relationship messages or recordings.
  • PostHog— processes the analytics and diagnostic metadata described above. It does not receive relationship content from the current app and service.

These providers receive only the information needed for the stated purpose. Their applicable contracts, terms, and data-protection commitments require safeguards designed to provide the same or equivalent protection for personal information described in this policy.

Your Choices and Requests

  • Decline AI data sharing before using AI conversations.
  • Turn off AI data sharing later from Settings.
  • Choose whether to record audio and grant microphone access.
  • Control notifications in iOS Settings.
  • Manage the subscription through your Apple Account.
  • Delete the shared couple and its active relationship data in the app.

To request access, correction, or deletion, or to ask a privacy question, email ale@alepacheco.dev. Include enough information to identify the relevant account, but do not email relationship messages or other sensitive content.

Children's Privacy

Mediator is not directed to children under 13 or the higher minimum age required in their country. Mediator does not knowingly collect personal information from a child below that age. Contact us if you believe a child has provided information so it can be reviewed and deleted.

Security, Transfers, and Changes

Mediator and its providers use technical and organizational safeguards intended to protect personal information. No internet service can guarantee absolute security. Providers may process information in the United States and other countries where they operate, subject to their transfer safeguards and applicable law.

This policy may be updated as Mediator's practices or providers change. The current version and effective date will remain available at this URL.