Beyou

Privacy policy

In effect since 9 October 2026

The short version

  • Beyou is free. It carries no ads and no trackers, and nothing about you is sold.
  • Your account needs a name, an email address and a password. Nothing else is required.
  • Everything else stored about you is what you put into the app: habits, tasks, routines, goals, categories, the history of what you checked off, your diary, your study notebook and your focus sessions.
  • A few features send text to an external AI provider: the assistant, the guided setup, the notebook's study tools and the short summary in the daily briefing. Section 3 lists what each one sends. What you write in your diary is never sent.
  • You can delete your account from inside the app, and it is erased immediately. There is no waiting period and no way to undo it.

1. Who is responsible

Beyou is built and run by André Luiz, an individual developer resident in Portugal, acting as the data controller. There is no company behind it and no team with access to your account. On Google Play the same person publishes it under the developer name Beyou apps - André Luiz dev.

For anything in this policy, including requests about your data, write to beyouwebapp@gmail.com. Expect a reply within 30 days, which is the deadline the GDPR sets.

2. What is stored about you

Your account

If you sign in with Google, Google hands Beyou your email address, your name and the address of your Google profile picture. Beyou stores those and nothing more, and never receives your Google password, your contacts, your calendar or your Drive.

Beyou can also be configured to accept a second sign-in provider. When one is switched on, the same three things reach Beyou from it (your email address, your name and a picture address) and nothing else. Connecting such a provider is always something you start yourself, from an account you are already signed in to; a provider can never claim an account that already exists just because it says it knows the email address on it.

What you create in the app

The habits, tasks, routines, goals and categories you write, with their names, descriptions and any motivational text you add. Alongside them, the record of your activity: which items you checked or skipped on which day, the XP each one earned, and a daily snapshot of your routine so past days still read correctly after you change the routine itself.

These are free text fields. Whatever you type into them is stored as you typed it, so treat them the way you would treat a private notebook and avoid putting anything in there you would not want stored on a server.

Your diary

For each day you record, a mood from 1 to 5 and the note you wrote with it, if you wrote one. Days you do not record have no row at all.

How you feel can say something about your health, so the diary gets tighter handling than the rest of the app. It earns no XP and feeds no streak. It is left out of the copy of your data the web app keeps in your browser, and it never reaches the usage analytics. The words of your note never go to an AI provider. The mood itself, as a number, is read by the assistant when you ask it about your week and by the daily briefing, both described in section 3. You can clear any day, or delete its entry with the note, from the diary screen.

Your study notebook

The topics and pages you create and the notes you write on them, the roadmap you lay out, your flashcards and how each review went, the study goal you set, the conversations in the study room, and the quizzes and summaries it built for you. For each source you add, its title, its web address if it has one, and the text read out of it. A web page you add is fetched by Beyou's server, so the site sees that server and not you. A PDF is read for its text and the file itself is not kept.

Focus sessions and the daily briefing

For each focus session, when it started and ended, what kind of session it was, the routine item or notebook page it was for, and the small steps you wrote down for it. For each day you open the app, the short summary the daily briefing wrote for you, kept for 30 days.

Feedback and bug reports

When you send feedback from inside the app, Beyou stores your message, any images you attach, and a small technical context: the screen you were on, the app version, the platform, your language and your theme. On the web app it also attaches a picture of the screen you were on, so the problem can be seen. Replies to your feedback go to your email address, and those emails quote the original message.

Technical data

Beyou keeps error reports to find and fix crashes. They go to a self-hosted collector rather than a commercial analytics vendor, and they leave out your identity, your IP address, your cookies and the contents of your requests. What remains is the error itself and the technical state around it.

Server logs record which operations ran and how long they took. Some of those lines include the name of a habit, a goal or your display name, since that is what the operation was about. Rate limiting counts recent requests per account, and for the public profile picture address per IP, in memory only and never written to the database.

What is never collected

No date of birth, no gender, no phone number, no postal address, no national identity or tax number. No location of any kind. No advertising identifier, no device identifier, no contacts, no calendar, no microphone and no camera. No payment or card data, because there is nothing to pay for. Beyou contains no advertising SDK and no third-party tracker, on the web or on Android. The one analytics tool it does use, PostHog, is described in section 5, along with everything it receives.

3. The AI features

Beyou does not run its own AI model. Four features ask an external AI provider for words: the assistant, the guided setup, the notebook's study tools and the daily briefing. Each request goes through Beyou's server, which sends the provider what that feature needs and nothing else. They are described one by one below, because they do not send the same things.

None of them sends your email address, your password hash, your session tokens or the words you wrote in your diary.

The assistant

When you send a message, the request goes to Beyou's server, which passes it to the provider and streams the answer back. Beyou forwards:

The provider is either Mistral AI or Google Gemini. Beyou tries Mistral first and falls back to Gemini when it is unavailable, so a given message is handled by one of them rather than both. They process your message to produce a reply, and their own terms govern what they do with it. Those terms are not written by Beyou.

The assistant also keeps notes about you between conversations, so it does not ask the same thing twice. It decides what is worth remembering and writes it in its own words. One note covers the whole account, and each conversation gets one of its own. Both go out with every message.

The assistant is optional. If you never open it, none of the above happens. You can delete a single conversation, and you can reset the assistant entirely, which deletes every conversation and erases the notes it kept about you. Both are in the app.

The guided setup

The guided setup that offers to build your first habits and categories sends what you type there, and the category names you picked, to the same providers. It only runs if you choose it.

The notebook's study tools

The study room's chat, the quizzes and summaries it builds, flashcards drafted from a page, a roadmap drafted from a subject you describe, and the explanation of a passage all go to the same providers. Each one sends what it needs to answer: the titles of the topic and the page, the notes you wrote on the pages it covers, passages from the sources you added, the study goal you set, and for the chat, your question and the earlier messages of that conversation. Nothing from your habits, routines or diary goes with it. These only run when you use them.

Two more services take part. When you add a source, its text is sent to Mistral AI in chunks to be turned into the lists of numbers that let the study room search by meaning, and each question you ask in the study room is sent there for the same reason. Mistral returns the numbers and Beyou keeps them next to the text. And when you ask the notebook to find sources, the titles of the topic and the page and the description you typed are sent to a web search service, Tavily, or to Google Gemini when Tavily is not set up. The pages it finds are opened by Beyou's server before you see them.

The daily briefing

The first time you open the app on a new day, a dialog shows how yesterday went and what today asks of you. The numbers in it come from Beyou's own database. The two short paragraphs above them are written by the same providers, once a day. To write them, Beyou sends:

It sends no display name and no email address. Unlike the other three, this one is not something you open: it runs for every account on the first visit of the day, and there is no switch for it in the app yet. If you would rather it did not run for your account, write to beyouwebapp@gmail.com. The paragraphs are kept for 30 days and then deleted.

4. Why it is stored, and on what legal basis

PurposeLegal basis under the GDPR
Running your account and showing you your own habits, routines, goals and historyPerformance of a contract, article 6(1)(b)
Sending account emails: confirmation, password reset, deletion codePerformance of a contract, article 6(1)(b)
Answering you through the AI assistant, an optional feature you choose to openPerformance of a contract, article 6(1)(b)
Answering you in the notebook's study tools, and writing the daily briefing's summaryPerformance of a contract, article 6(1)(b)
Keeping the account safe: password hashing, session handling, rate limits, abuse preventionLegitimate interests, article 6(1)(f)
Finding and fixing crashes through error reportsLegitimate interests, article 6(1)(f)
Handling the feedback you chose to sendLegitimate interests, article 6(1)(f)
Sending you the occasional email about your own routine: a streak about to break, a day whose record is about to close. Never an advertisement, never anyone else's message. You can switch these off in the app or from a link in any one of them, and switching them off does not affect the account emails aboveLegitimate interests, article 6(1)(f)

Nothing here is used to profile you for advertising, and there is no automated decision-making that produces a legal effect for you. The XP and levels are a game mechanic, not a decision about you.

5. Who else sees it

Nothing about you is sold, rented or handed over for anyone else's marketing. The list below is complete.

WhoWhat reaches themWhy
Mistral AI and Google GeminiYour assistant messages and what the assistant reads to answer, plus your display name; what the notebook's study tools work from, which is your notes and passages from your sources; and the facts behind the daily briefing, which are item and goal names, completion rates, streaks and mood levels as numbers. Mistral AI also receives the text of the notebook sources you add and your study-room questions, to index them for searchWhen you use the assistant, the guided setup or the notebook's study tools, and once a day for the daily briefing. See section 3
TavilyThe titles of a notebook topic and page and the description you typedOnly when you ask the notebook to find sources. See section 3
GoogleThe fact that you signed in, if you use Google sign-in. Google also sees your IP address when your browser or phone loads your Google profile pictureSign-in and profile picture hosting
Any additional sign-in provider switched on for BeyouThe fact that you signed in, if you use it. It also sees your IP address while you are on its own sign-in pageSign-in, only for accounts that connected it
The email provider configured for BeyouYour email address and the contents of every email Beyou sends you: the account emails, including feedback confirmations that quote your message, and the routine emails described in section 4Delivering email
A self-hosted error collectorError reports, configured to exclude your identity, IP, cookies and request bodiesFixing crashes
PostHog (usage analytics, EU)How Beyou is used: pages and screens viewed, interface interactions, a short list of things you did in the app, and the current shape of your account. Both lists are spelled out under this table. Inside the app, the words on your screen are masked out before anything is sent, web addresses are stripped of tokens, and you are identified by an internal account id and your display name, never by your emailUnderstanding which features are used and which are not, to decide what to improve
CloudflareRequests to this website, and the analytics events above, which reach PostHog through a relay Beyou runs on CloudflareHosting this website and relaying analytics
Google PlayWhatever Google collects when you install or update the Android app, under Google's own policyDistributing the Android app
placehold.coYour IP address, only on the web profile screen, and only if your profile picture fails to loadDrawing a placeholder avatar

What the usage analytics record about what you did: that an item was checked or skipped, including whether you were filling in an earlier day and how much XP it earned; that a level was gained; that a streak reached a milestone; that an item was created, and whether it was a habit, task, goal, routine or category; that a goal was completed; that the tutorial was finished; that a message was sent to the assistant, its length only and never its text; and which step of the guided setup asked for suggestions.

Alongside those, the current shape of your account is attached to your profile there, and overwritten whenever it changes: your level and XP, your current and best streak, whether the run has gone quiet, whether the tutorial is done, whether you signed up with Google, your time zone and whether you chose it or the app detected it, your XP decay setting, your language, your theme, and the day the account was created.

What never reaches them: the names of your habits, tasks, goals, routines or categories, anything you wrote to the assistant, in your diary or in your notebook, and the text of any feedback you sent. The analytics record that something happened and what kind of thing it was, never the words you chose.

Data may also be disclosed where the law requires it, which has not happened to date.

6. Where it goes

Your data lives on Beyou's own server and database. Of the two AI providers, Mistral AI is in France, inside the European Economic Area. Google Gemini is in the United States, which the European Commission has covered by its adequacy decision for the EU-US Data Privacy Framework. The search that indexes your notebook sources also runs at Mistral AI. Tavily, the web search behind finding sources, is in the United States too, and it only ever receives the search itself.

Usage analytics are processed by PostHog on servers inside the European Union, and reach it through a relay Beyou operates on its own domain.

So if you use the assistant or the notebook's study tools, what you write may be processed in the United States under that framework, and so may the facts behind the daily briefing. It is not sent to a provider in a country the European Commission has not ruled on. Should a third provider ever be added, it will be one with a lawful route for the transfer, and this page will say so before the change takes effect.

7. Cookies and what sits on your device

This website sets one cookie of its own, and only after you click the language switch. It records whether you chose English or Portuguese, so the site stops guessing from your browser settings. It lasts a year and it is not used to track you.

The usage analytics described in section 5 also store a randomly generated identifier in your browser, on this site and in the web app, so that two visits can be counted as one visitor rather than two. It contains no name, no email and nothing typed by you, it is never used for advertising, and it is not shared with anyone beyond the analytics processing described above.

The web app sets a session cookie holding your refresh token. It is httpOnly, so no script can read it, marked Secure and restricted to Beyou's own site, and it lasts 15 days. It exists so you stay signed in. The short-lived access token that goes with it is kept in memory only and disappears when you close the tab.

The web app also keeps the analytics identifier described above, a copy of your habits, tasks, routines, goals and categories, and the state of a focus timer you have running, in your browser's local storage, so the interface can draw immediately on your next visit. Your profile, your diary and your notebook are kept out of that copy. Local storage is not encrypted, so on a shared computer, sign out when you are done. Signing out clears it.

The Android app keeps your refresh token in the operating system's encrypted store, backed by the Android Keystore. Alongside it are small interface preferences: which filters you picked, which sections you collapsed, how far you got in the tutorial. The Android app keeps no offline copy of your habits or history. It fetches them when it opens.

8. How long it is kept

9. Deleting your account and your data

You can delete your account yourself, from inside the app, without asking anyone and without reinstalling anything.

Beyou emails you a six-digit code, which is valid for 15 minutes, and asks you to type it back. This is there so that nobody who borrows your unlocked phone can wipe your account. Once you confirm, deletion happens immediately.

What is erased: your account record, your name, your email address, your password hash, your profile quote, your XP, levels and streaks, every category, habit, task, routine and goal, your entire check-in and XP history, your routine snapshots, your diary with every note in it, your whole study notebook with its sources, flashcards and study conversations, your focus sessions and their steps, your daily briefings, any sign-in provider you connected, every assistant conversation, the notes the assistant kept about you, your feedback and its attachments, and every active session and pending token. There is no grace period, and nothing is archived or recoverable.

The image file of a profile picture you uploaded is deleted along with the account. That one step happens on disk rather than in the database, so if the storage refuses it the failure is recorded and an operator finishes it by hand. Write to beyouwebapp@gmail.com if you want confirmation that nothing was left behind.

If you cannot reach your account for any reason, email beyouwebapp@gmail.com from the address the account uses and ask for deletion.

10. Your rights

Because Beyou is run from Portugal, the GDPR applies. If you are in Brazil, the LGPD gives you an equivalent set of rights. Either way you can ask for:

Requests go to beyouwebapp@gmail.com. None of these rights cost anything to exercise.

If you think your data has been mishandled, you can complain to a supervisory authority. In Portugal that is the Comissão Nacional de Proteção de Dados. In Brazil it is the Autoridade Nacional de Proteção de Dados. You may also complain to the authority where you live.

11. Security

Passwords are hashed with bcrypt at cost factor 12 and never stored in a readable form. Sessions use a short-lived token valid for 15 minutes, renewed by a refresh token that is itself stored hashed and rotated on every use, so a stolen one stops working once the real session refreshes. Traffic runs over HTTPS. Requests are rate limited per account. Deleting an account and resetting a password both require a code sent to the email address on the account.

A profile picture you uploaded is not open to the internet. Its address carries a signature that only your own signed-in session can produce, and that signature expires 12 hours after it is issued. So anyone you forward that address to can open the image without signing in until it expires, and signing out does not cut off an address that is already out. A picture that came from your Google account is a different case, because Google hosts it at a public address that Beyou does not control.

Beyou is maintained by one person. If you find a security problem, email beyouwebapp@gmail.com before publishing it, and it will be taken seriously.

12. Children

Beyou is not directed at children under 13 and does not knowingly hold data about them. It does not ask for your age, which means it cannot verify it. If you are a parent or guardian and believe your child created an account, write to beyouwebapp@gmail.com and it will be deleted.

13. Changes to this policy

When this text changes, the date at the top changes with it. Changes that affect what happens to your data, rather than the wording, will be announced in the app before they take effect. Past versions are visible in the public repository this site is built from, so you can see exactly what changed.

14. Contact

beyouwebapp@gmail.com, for questions about this policy, requests about your data, or anything else.