Four ways your diary stays yours alone.
Privacy isn't a setting you hunt for - it's how Inner Journal is built.
Local-first storage
Your diary is stored on your device first. Cloud sync is an optional Plus feature - without it, your journal never leaves your phone.
End-to-end encryption
Set a passphrase and your entries are encrypted on your device before they sync - with a key only you hold. We store blobs we cannot read.
Offline, on-device AI
Optional AI insights run entirely on your phone. Once the model is installed they work in airplane mode, and your entries are never sent away to be analysed.
No ads, no tracking
We don't sell or share your data, profile you, or run ads. The only person profiting from your thoughts is you.
How end-to-end encryption actually works.
Cloud sync is optional. When you set a passphrase, it is end-to-end encrypted with the exact same scheme on mobile and web.
AES-256-GCM + PBKDF2
Each payload is encrypted with AES-256-GCM (a fresh 12-byte nonce and 16-byte tag). Your passphrase is stretched into a 256-bit key with PBKDF2-HMAC-SHA-256 over 600,000 iterations.
Only you hold the key
We store encrypted blobs we cannot read. Lose the passphrase and the data cannot be recovered - not even by us.
What is and isn't encrypted
Encryption protects your synced entry text and media. A small set of metadata - dates, mood, tags, and sync identifiers - stays cleartext so deletions and backups work.
Privacy questions, answered.
The honest answers to what people ask before trusting Inner Journal with their diary.

