Our privacy commitments
Your data lives in your browser
All check-ins, journal entries, and protocol logs are stored in IndexedDB on this device. There is no backend database. Nothing is uploaded to any server.
AI inference runs locally
When you journal, ReCo calls Ollama running on your machine (localhost:11434). Your journal text never travels over the network. If Ollama isn't running, your entries are still saved locally without an AI reply.
No accounts, no tracking
ReCo has no login, no analytics, no cookies, no third-party scripts. We don't know who you are or that you exist.
Full transparency
You can export everything ReCo knows about you as a JSON file at any time. You can delete it all with one click. No remnants remain.
What’s stored on this device
0
Symptom check-ins
0
Journal entries
0
Cognitive observations
0
Anonymous safety checks
Local AI safety path
- 1 · Emergency screen
- 2 · Personal data removal
- 3 · Local model
- 4 · Response safety check
Safety logs store only the outcome and categories—not your journal text. Emergency content is stopped before model inference.
Plain-language privacy policy
What we collect: Nothing. ReCo has no server. The only data is what you enter, stored locally in your browser’s IndexedDB.
What we send anywhere: Nothing, with one exception — when you journal and a local Ollama instance is running, your journal text is sent to localhost:11434 on your own machine. It does not leave your device.
Third parties: None. No analytics, no ads, no telemetry, no CDN-tracked fonts (Geist is self-hosted by Next.js).
Your rights: Export your data anytime. Delete it anytime. No account to close because there is no account.
Responsible AI note: ReCo’s AI is a supportive companion, not a diagnostic tool. It will not diagnose, prescribe, or replace a clinician. It is instructed to direct users to emergency services (911) when red-flag symptoms appear. All AI inference runs on hardware you control.