1. Who we are
Remamour ("we", "us", "our") is a memory-preservation application. We operate the Remamour service, accessible at this website and through our mobile applications.
For privacy enquiries, you can reach us at [email protected].
2. Information we collect
We collect the minimum possible. Here is a complete list:
We do not collect your name, phone number, IP address, location, device identifiers, or any other personal information. We do not use any third-party analytics, advertising, or tracking services.
3. How we use your information
We use your email address solely to:
- Create and authenticate your account
- Send transactional messages you explicitly request, such as a password reset or account verification
- Notify you of material changes to this privacy policy or our terms of service
We use a recipient's email address solely to deliver memories that you have explicitly chosen to share with them.
We do not use any email address for marketing, profiling, or any purpose not listed here.
4. Encryption & zero-knowledge architecture
Remamour is built on a zero-knowledge architecture. This means:
- Your encryption key is derived from a passphrase that only you know. This passphrase is never transmitted to our servers.
- All memory content — text, photos, attachments — is encrypted on your device before it is uploaded. We receive only ciphertext.
- We hold no master key, no backdoor, and no mechanism to decrypt your memories. Even if we were compelled by law to produce your data, we could only provide unintelligible ciphertext.
This is a deliberate design decision, not a policy promise. The architecture enforces it — we cannot read your memories regardless of intent.
5. Sharing with third parties
We do not sell, rent, trade, or otherwise share your personal information with any third party, with the following narrow exceptions:
- Legal obligation. If we receive a valid legal order requiring disclosure, we will comply to the minimum extent required by law. Given our zero-knowledge architecture, we can only provide email addresses and encrypted content — we cannot provide readable memory content.
- Business transfer. If Remamour is acquired or merges with another entity, your information may transfer as part of that transaction. We will notify you by email before that occurs, and you will have the opportunity to delete your account first.
We do not use any third-party cloud providers, analytics platforms, advertising networks, or data processors. Our servers are self-hosted and we are the sole custodian of the data described in Section 2.
6. Cookies & local storage
We use cookies and browser local storage strictly to operate the service. Specifically:
- Session cookies — to keep you logged in during a browsing session. These expire when you close your browser or log out.
- Local storage — to hold your encryption key in memory on your device during an active session, so you do not need to re-enter your passphrase on every action. This data never leaves your device.
We do not use advertising cookies, tracking pixels, or any persistent cookies tied to your identity across other websites. You can clear cookies and local storage at any time through your browser settings; doing so will log you out of the app.
7. Data retention & deletion
We retain your information only for as long as your account is active.
When you delete your account:
- Your email address is permanently deleted from our systems
- All encrypted memory content is permanently deleted
- All recipient email addresses linked to your account are permanently deleted
- All session data and account metadata is permanently deleted
- No record that you were ever a user is retained
Deletion is immediate and irreversible. We maintain no backups of user data after account deletion. We have no ability to restore a deleted account.
To delete your account, use the account settings screen in the app. If you need assistance, contact us at [email protected].
8. Children under 13
Remamour is not directed to children under the age of 13 and we do not knowingly collect personal information from anyone under 13. By creating an account, you confirm that you are at least 13 years old.
If we become aware that we have inadvertently collected information from a child under 13, we will delete that information immediately. If you believe a child under 13 has created an account, please contact us at [email protected].
9. California privacy rights (CCPA)
If you are a California resident, the California Consumer Privacy Act (CCPA) gives you specific rights regarding your personal information.
Your rights
- Right to know. You have the right to request disclosure of the categories and specific pieces of personal information we have collected about you.
- Right to delete. You have the right to request that we delete your personal information. We will delete all data as described in Section 7 — including the fact that you registered.
- Right to opt out of sale. We do not sell personal information. There is nothing to opt out of.
- Right to non-discrimination. We will not discriminate against you for exercising any of these rights.
What we collect — CCPA summary
How to exercise your rights
To exercise any of your CCPA rights, contact us at [email protected]. We will respond within 45 days. We will not charge a fee for reasonable requests and will not require you to create an account to submit a request.
10. Security
We take the security of your data seriously. Our measures include:
- End-to-end encryption of all memory content before storage (see Section 4)
- Encrypted connections (HTTPS/TLS) for all data in transit
- Passwords stored using strong, salted hashing algorithms — we never store plaintext passwords
- Self-hosted infrastructure with restricted access
No method of electronic storage or transmission is 100% secure. However, because of our zero-knowledge architecture, a breach of our servers would expose only email addresses and encrypted ciphertext — not the content of any memory.
If you discover a security vulnerability, please disclose it responsibly by emailing [email protected].
11. Changes to this policy
We may update this policy from time to time. When we do, we will revise the "last updated" date at the top and notify you by email if the changes are material. Continued use of the service after a change constitutes acceptance of the updated policy.
We will never change this policy in a way that allows us to read your encrypted memories — that is an architectural constraint, not a policy one.
12. Contact
Questions, requests, or concerns about this privacy policy or your data should be directed to:
We aim to respond to all privacy enquiries within 5 business days.