Privacy policy
Short version: your chat stays on your device. No server ever receives chats or summaries. Accounts and usage stats are optional and off unless you turn them on.
What happens to your chat
When you choose, drop or share a chat export, your browser opens the file and Brightgist reads it in the page's memory. The summary is worked out on your device. The chat is not uploaded, sent, or saved to storage.
The chat is released from memory when you tap Another chat, open another chat, or close the tab.
On Android, when you share an export straight to Brightgist, the phone hands the file to Brightgist's offline component, which parks it in the browser's local storage for a moment so the page can open it. The page deletes it as soon as it has read it.
How this is enforced
Every Brightgist page carries a Content Security Policy that only allows connections back to Brightgist's own address and to Brightgist's sync server, and blocks every other destination. The code can load its own files, but it has no permission to send data to anyone else. The sync server is only contacted if you sign in or turn on usage stats (below), and it never receives chat text.
After your first visit, Brightgist's files are kept by your browser so it keeps working offline.
What Brightgist remembers
On your device, in your browser's local storage:
- The name you picked under You are, and any nicknames you typed, so Brightgist can find questions for you next time.
- The period you last chose (for example, Week).
- Whether you turned on usage stats, and the random id used for them.
To erase your name and nicknames, tap Forget my name on this device under People call you something else? in a summary, or clear this site's data in your browser settings.
Optional: keep your settings on your other devices
Under Settings you can sign in with your email to keep the settings above (name, nicknames and period) on your other phones and computers. Without an account, everything stays on this device, exactly as before.
- What is uploaded: only those settings, encrypted on your device with a key protected by your passphrase before they leave it. We store scrambled data and can't read it. Chats, summaries and shared files are never uploaded.
- Your email is used only to send you a sign-in code. It isn't linked to anything inside your encrypted data.
- What the sync server can still see: that you have an account (your email), how many encrypted records you have and how big they are, when they change, and which devices you've signed in on (a name like "Brightgist on Android" and when it was last used).
- On this device Brightgist keeps a sign-in token and your encryption key, itself locked with a key your browser won't let any page export, in the browser's storage for this site.
- There is no reset. If you forget your passphrase and lose your recovery key, the backup can't be recovered, by you or by us. The settings on your devices are unaffected.
- You can sign out any device, or delete the backup and your account, from Settings at any time. Deleting removes the encrypted copy and signs out every device; settings on your devices stay.
Optional: anonymous usage stats
Off unless you turn on Share anonymous usage stats in Settings. When on, Brightgist sends at most once a day a random install id made only for this, the app version and a count of errors since the last report. It's sent without your account or sign-in token, and the server stores the id only in hashed form and keeps no IP addresses. It never includes your chats, names or email.
What Brightgist does not do
- No sign-in unless you choose to sync your settings.
- No analytics beyond the optional stats above, and no tracking pixels, advertising or cookies.
- No third-party scripts or fonts. Everything is served from Brightgist's own address.
Hosting
Like any website, the company that hosts Brightgist's files may keep standard server logs of requests for those files (such as IP address, time and browser type). Those requests never include your chat. The sync server's own logs record only the kind of request, its result and how long it took, not your email, IP address or data.
Changes and contact
If this policy changes, the new version will be published on this page.
Owner review needed: add the operator's name, contact address, jurisdiction and hosting provider before publishing.