Security & Privacy Architecture

How we protect your relationship data with the same standards used in financial services.

Data Anonymization

Before any AI analysis, all personally identifiable information (PII) is automatically stripped from your data.

Names → Generic Identifiers

Partner_A, Friend_B, Family_C

Phone Numbers → Removed

No contact information retained

Locations → Removed

Geographic data stripped before processing

Profile Photos → Not Used

Visual data never included in analysis

Encryption & Storage

At Rest

AES-256 Encryption

Banking-grade encryption for all stored data

In Transit

TLS 1.3

Military-grade encryption for data transmission

Location

Frankfurt Data Center

  • ✓ Located in Germany (EU jurisdiction)
  • ✓ GDPR compliant infrastructure
  • ✓ Daily encrypted backups
  • ✓ 30-day backup retention

Access Control

Row-Level Security

You only see your own data. Database level enforcement.

No Human Access

No team member reads your journal, messages, or events.

Limited Debug Access

Team access only for debugging technical issues, always encrypted.

Your GDPR Rights

You have complete control over your data:

Download Your Data

Export all data as JSON to analyze or backup

Delete Your Account

Permanently removed from servers and backups within 24 hours

Right to Rectification

Edit or delete any entry anytime

Data Portability

Transfer your data to another service

What We Don't Do

Sell your data to third parties

Train AI models on your personal data

Use your data for targeted advertising

Share with data brokers or marketers

Send data to third-party AI services unencrypted

Security Questions?

Found a security vulnerability? Report it responsibly:

Security Team

security@ourbase.app

Response time: 24 hours

Last Updated: December 5, 2025