#privacy #security #data-protection #encryption

By Rey

Privacy and Security in Reynote: Protecting Your Most Personal Conversations

Learn how Reynote safeguards your relationship data with advanced encryption, strict privacy boundaries, and thoughtful security measures.

When you share details about your relationship with Rey, you’re entrusting us with some of your most intimate thoughts and feelings. We take this responsibility seriously, implementing multiple layers of protection to ensure your privacy and security. This article explains the measures we’ve put in place to safeguard your data.

The Foundation: Privacy by Design

Reynote was built from the ground up with privacy as a core principle. Unlike social media platforms that profit from sharing your data, our business model is based on providing a valuable service directly to you—not on monetizing your personal information.

This privacy-first approach influences every aspect of our platform, from how we structure our database to how Rey processes your conversations. We’ve designed systems that maintain strict boundaries between partners, implement robust encryption, and limit data access even within our own organization.

Secure Data Storage: Encryption at Rest

All sensitive data in Reynote—including your journal entries, therapy session transcripts, and personal information—is encrypted using industry-standard AES-GCM (Advanced Encryption Standard in Galois/Counter Mode). This is the same encryption technology used by financial institutions and government agencies to protect critical information.

This means that even if someone were to gain unauthorized access to our database, they would only see encrypted data that’s unusable without the encryption keys, which are stored separately and securely.

Partner Privacy Boundaries: Technical Separation

One of Reynote’s most important features is maintaining complete privacy between partners while still enabling meaningful relationship coaching. This isn’t just a policy—it’s enforced by our technical architecture.

When Rey works with couples, it uses a specialized Partner Advocate system that maintains strict information boundaries:

  1. Curated Summaries Only: The Partner Advocate never has direct access to your raw journal entries or private conversations. Instead, it works with carefully sanitized summaries that contain relationship-relevant insights without private details.

  2. Multi-Step Processing: Information flows through multiple processing stages, each with its own privacy constraints, making it technically impossible to “prompt engineer” Rey into revealing your partner’s private thoughts.

  3. Separate Data Stores: Your personal data and your partner’s data are stored in separate database structures with different access controls, creating a technical firewall between your information.

This architecture ensures that even if you explicitly ask Rey to share your partner’s private thoughts, it simply cannot do so—the system is designed to make such breaches technically impossible.

AI Processing: Responsible Use of Advanced Models

Reynote uses advanced AI models from Anthropic and OpenAI to power Rey’s coaching capabilities. We’ve implemented several measures to ensure this processing respects your privacy:

  1. API-Based Processing: We use these providers’ APIs rather than sending data through their consumer applications, giving us greater control over data handling.

  2. Strict Data Policies: Both Anthropic and OpenAI maintain rigorous privacy policies for their API services, prohibiting the use of customer data for model training without explicit consent.

  3. Minimal Data Transfer: We only send the specific information needed for each interaction, rather than your entire history.

  4. Secure Transmission: All data sent to and from these services is encrypted in transit using TLS (Transport Layer Security).

We’re also exploring the possibility of offering hosted open-source models in the future for users with heightened privacy requirements. If this is something you’re interested in, please contact us at hello@reynote.com.

The Path to End-to-End Encryption

While our current encryption approach provides strong protection, we’re working toward implementing end-to-end encryption (E2EE) for Reynote. This would ensure that only you can decrypt your most sensitive data, using keys that exist solely on your devices.

The challenge with E2EE in a relationship coaching context is balancing complete privacy with the ability to provide meaningful insights across interactions. We’re developing an approach that will:

  1. Allow E2EE for your most private journal entries
  2. Maintain Rey’s ability to provide personalized coaching
  3. Preserve the strict privacy boundaries between partners

EU-Based Operations and GDPR Compliance

Reynote is based in the EU and all our servers are located in the European Union. We’re fully compliant with the General Data Protection Regulation (GDPR), which provides some of the strongest privacy protections in the world. This means you have rights regarding:

  1. Access to your data: You can request a copy of all your personal data.
  2. Data deletion: You can request that we delete your account and associated data.
  3. Data portability: You can request your data in a machine-readable format.

Our complete privacy policy is available at reynote.com/privacy.

Security Features in Development

We’re continuously working to enhance our security features. Currently in development:

  1. Two-Factor Authentication: For an additional layer of account security.
  2. Access Logs: To help you monitor where and when your account has been accessed.
  3. Enhanced Encryption: Further strengthening our already robust encryption systems.

Your Role in Security

While we implement robust protections on our end, security is a partnership. Here are some steps you can take to enhance the security of your Reynote experience:

  1. Use a Strong Password: Create a unique, complex password for your Reynote account.
  2. Be Mindful of Device Security: Ensure your devices are password-protected and updated regularly.
  3. Report Concerns: If you notice anything unusual, contact our support team immediately at hello@reynote.com.

Conclusion: Trust Through Transparency

At Reynote, we believe that effective relationship coaching requires a foundation of trust. By being transparent about our security measures and continuously improving our protections, we aim to earn and maintain your confidence as you work with Rey to strengthen your relationship.