Summary: We collect only what we need to provide the service. We never sell your data. Account chat saving is paused. Conversations are saved in your browser only. Signing in does not upload existing browser chats. Your messages and the context included with them are sent to our AI provider, Anthropic, to write replies and run safety checks.
1. Who we are
Health and Kind (“we”, “us”, “our”) is operated by KCF LLC, based in Newport Beach, California, United States. Kindness Community Foundation is currently operated by KCF LLC. Nonprofit registration is in progress. We are the data controller for personal data processed through this platform. You can contact us at contact@kindnesscommunityfoundation.com.
2. What data we collect, and where it lives
Some data stays in your browser, some is sent to write replies, and some is stored by our service providers. Account chat saving is paused; creating an account does not enable it. We do not store your conversations by default. Messages are processed by our AI provider to write replies, and text you choose to share as product feedback is kept.
Kept in your browser
- Device chats, journal entries, check-ins, goals, life alignment answers, Kind Cards, safety plans and learned memories are kept in your browser's local storage. Signing in does not upload them. Chats do not appear on another browser or device automatically. There is no fixed day-based expiry, but this browser keeps only up to 60 conversations and the latest 120 messages in each. Older entries can be replaced as you chat. Private browsing, clearing site data or browser storage removal can erase them; a transfer file you previously exported can restore the data it contains if you have its passphrase. Browser-only data belongs to this browser, not a signed-in account. Signing out does not erase it; clear it before letting someone else use the same browser profile.
- Previous account chat working copies and unsent drafts. Account saving is paused. If you used it previously, account-specific local working copies, drafts and pending saves may remain in this browser. The pause does not erase them, and unsent drafts are not synced. Account-chat controls are unavailable during the pause. For questions about previously saved account data, email contact@kindnesscommunityfoundation.com.
- Child profiles and timelines that you add on the Family and Child Care pages are saved in your browser's local storage.
- Settings such as your light or dark theme and your crisis-line country are saved in your browser's local storage. See our Cookie Policy for the full list.
What leaves your device
- Messages to Kind Mind. Your messages are sent to Anthropic to write replies and run safety checks. Device chats can also include learned memories and recent journal or wellness context from this browser. Message processing is separate from saving a chat: account saving is paused, while explicitly shared product feedback is stored as described below. Anthropic's retention is described next.
- What happens to a message at Anthropic. Anthropic needs each message to write the reply and run the safety check. Its published standard policy for the commercial API is to delete inputs and outputs within 30 days; a separate agreement or an eligible feature can change that schedule. It may keep content longer if that content is flagged as breaking its usage policy (its published limit is up to two years, with safety scores kept up to seven years), or where the law requires. We checked our production organization settings on 7 October 2026: the default retention is 30 days, and zero data retention is not enabled. You can read Anthropic's own statement.
- AI model training. Anthropic says it does not use commercial API inputs or outputs to train its models by default. It may use data when a customer explicitly allows it or submits feedback to Anthropic. Our organization's feedback setting is off, and it is not enrolled in its Development Partner Program. This is separate from the retention periods above. See Anthropic's training policy.
- Voice input. If you use voice input, your browser's own speech recognition turns your speech into text. Depending on the browser, that can happen on the browser maker's servers. The text then follows the same path as a typed message.
What our servers keep
- Account data. If you create an account, your name, email address, password (hashed) and the profile information you provide are stored with our database and sign-in provider, Supabase. You can use Kind Mind without an account.
- Account chat saving is paused. Chats cannot currently be saved to, imported into, opened from, exported from or deleted through an account's chat controls. Signing in does not change this. The pause does not itself delete any data saved before it. The previous optional feature stored Companion and Relationship Coach transcripts, titles and related metadata with Supabase, in readable storage without end-to-end encryption. Contact us about access or deletion of any previously saved account data.
- Usage cap. To keep the service free, we allow up to 400 typed turns and 150 voice-input turns per day for each verified account, or each browser when signed out. A voice-input turn is a dictated message, not a minute of audio. Signed-out chat uses a random, signed cookie that expires at midnight UTC; it contains no account or IP address. With Netlify, we store daily one-way codes derived from the account or browser identifier, a count and reset time, separately from chat text. Broader limits for a shared internet connection and for the whole site also apply to prevent abuse; their network codes are derived from the IP address, not stored as the address itself. These codes change each day. A request can count even if the AI provider fails to finish its reply. Counts reset at midnight UTC. Expired records are removed by an hourly cleanup job, normally within an hour after expiry. These are service limits, not a guarantee of availability.
- Anonymous reply feedback. If you tap “That helped” or “That did not help” on a reply, we add to daily counts by chat mode, helped or did not help, and whether the reply was on the crisis path. We do not record the message content, your IP address or any identifier. See our transparency page for the full detail.
- Exchanges you share as product feedback. Only if you choose “Share as product feedback” and confirm, we store the text you approved (which you can edit or redact first) so a human reviewer can assess and improve the service. This does not start a support conversation, and you will not receive a personal reply. We do not add your name, account or IP address to that review record. The text itself may identify you or someone else, so remove identifying details before sharing. The record is not linked to your account, so we cannot reliably locate it using your account alone. It expires 90 days after its first review or 180 days after it was sent, whichever comes first. Expired text is not available to reviewers; a daily cleanup job removes the stored record. Shares are limited by one daily total across everyone, without an address or device identifier in that count.
Hosting request logs. Our host, Netlify, may record request information such as IP address, URL and time separately from these application records. Removing an identifier from a shared exchange does not make the request anonymous. On 7 October 2026, our Netlify Pro dashboard allowed access to seven days of request history. This is the dashboard's history window, not a promise that every provider copy is erased after seven days. We have not verified a shorter retention control or the deletion schedule for all provider-held logs. The project's external log-drain feature is not enabled.
The code of this site loads no analytics or advertising script. Fonts are served from the site itself.
Health and Kind is free to use. We do not process payments and hold no payment or card data of any kind.
3. How we use your data
We use your data to:
- Provide the Health and Kind service, including writing Kind Mind's replies
- Recognize when a message may describe a crisis, so that crisis lines can be shown
- Keep the service free by limiting the number of messages per day
- Send the emails needed to run your account, such as confirming your email address or resetting your password
- Comply with legal obligations
We do not sell your data, use it for advertising, or share it with third parties except as described in section 5.
4. Legal basis for processing
- Contract performance: to provide you with the service you have signed up for
- Legitimate interests: to improve our service, prevent fraud, and ensure platform safety
- Consent: for optional choices, such as sharing an exchange for review
- Vital interests: in genuine crisis situations where safety is at risk
- Explicit consent: for processing special category health data
5. Who we share data with
We share data with these service providers, who process it on our behalf:
- Supabase: account/profile data and sign-in; account chat saving is paused
- Anthropic: our AI provider, which writes Kind Mind's replies
- Netlify: hosting, usage limits, anonymous feedback counts, shared exchanges and minimal account-chat deletion records
We may also disclose data where required by law, court order, or to protect safety in an emergency.
6. Data retention and deletion
Delete device chats and other browser data from Memory or by clearing this site's browser data. That does not delete any data previously saved with our service. Memory also offers an encrypted transfer file for browser data; it excludes account-chat working copies. We cannot recover a forgotten transfer-file passphrase. Downloaded files remain wherever you saved them. Account-chat controls are paused; email contact@kindnesscommunityfoundation.com for questions about access or deletion of previously saved account data.
Records from the previous account-saving feature. Pausing it does not itself erase saved data. Confirmed chat deletion removes its active title and messages. Minimal ownership, chat ID, mode, revision and timing records remain to stop an old offline copy recreating it. These records do not expire while the account remains; the service allows up to 4,096 chat identities per account. Save-retry records contain request hashes and acknowledgments, not chat text. Up to 10,000 are kept per account; their retry window is 30 days and expired records are cleaned on a later successful change. We also keep the account ID, deleted chat IDs and deletion times separately with Netlify so restoring a database backup does not make chats with confirmed deletions available again. These records contain no titles or messages and have no automatic expiry. Whole-account removal retains a minimal account-deletion marker for the same purpose. We checked our Supabase project on 7 October 2026: it has daily backups retained for seven days, with point-in-time recovery off. Deleted content may remain in those backups until they expire; we do not promise immediate removal from every backup. Deleting an account chat does not remove prior Anthropic processing, separate browser originals, exports or product feedback you explicitly shared.
Whole-account deletion is separate from deleting chats. There is no self-service whole-account deletion yet. To request removal of your account and its data, email contact@kindnesscommunityfoundation.com. We will confirm what has been removed and any information that must be retained by law.
7. Your rights
Depending on where you live, privacy laws such as state privacy laws (US) or the GDPR (UK/EU) may give you the right to:
- Access the personal data we hold about you
- Correct inaccurate data
- Request deletion of your data
- Object to or restrict certain processing
- Data portability: receive your data in a machine-readable format
- Withdraw consent at any time
To exercise any of these rights, email contact@kindnesscommunityfoundation.com. We will respond within 30 days.
8. Cookies
Reading public pages does not create a chat-usage cookie. Sending a chat message while signed out sets a short-lived cookie to keep separate daily allowances for browsers sharing one connection. Sign-up, sign-in and password reset also use cookies. See our Cookie Policy.
9. Children's data
Health and Kind is intended for users aged 16 and over. Child profiles are added by a parent or guardian.
10. Changes to this policy
We may update this Privacy Policy from time to time. We will notify you of material changes by email or by a notice on the platform. The date at the top of this page shows when it was last updated.
11. Contact and complaints
For privacy questions, contact us at contact@kindnesscommunityfoundation.com. US users can contact their state Attorney General's office or the Federal Trade Commission. UK and EU users also have the right to lodge a complaint with their local data protection authority, such as the UK's Information Commissioner's Office (ICO) at ico.org.uk.