TOSKAVersion 1.2 · Effective 18 September 2026

Toska Privacy Policy

1. We respect your privacy

(a) Toska Pty Ltd respects your right to privacy and is committed to safeguarding the privacy of our customers and software application users. We adhere to the Australian Privacy Principles established by the Privacy Act 1988 (Cth). This policy sets out how we collect and treat your personal information.

(b) Personal information means information we hold which is identifiable as being about you. Sensitive information includes information about your health, including your mental health. Much of what you write in Toska may be sensitive information, and we treat all of your journal content as if it were.

(c) The short version: we never sell your data. There are no advertising or analytics trackers in the application. Your entries are analysed only with your explicit consent. Entries you mark off the record before they are analysed are never sent to the AI. When you delete your account, your content and everything derived from it is purged immediately.

2. Collection of personal information

(a) Toska Pty Ltd will receive and store personal information you enter onto our software application Toska, provide to us directly or give to us in other forms.

(b) Journal content. Your entries are the heart of the service and may include information about your emotional and mental wellbeing. Voice dictation is transcribed on your device; no audio ever leaves your phone. A day you mark off the record is never sent to the AI.

(c) Account information. Your email address and sign-in identity, provided by the sign-in provider you choose (Google, or Apple where available) and handled by our authentication provider. We never see or store your password.

(d) Onboarding information. A name you choose, an age range, your country, how you found us, your device's timezone, your answers to a few preference questions, and your consent record: the version of this policy you agreed to and when. If you turn reminders on, the part of day you chose and a notification token for your device.

(e) Derived information. The observations, traits, connections and quotations the AI produces from your writing. We treat these as sensitively as the entries they came from.

(f) Operational records. Fair-use counters for AI features, a log of each analysis run (timing, success or failure and counts, never content), and your IP address, held briefly for rate limiting.

(g) We may also collect information you provide when you contact us for support.

(h) What we do not collect: your location, contacts, photos, audio, advertising identifiers or usage analytics, and no device identifier other than the notification token described in 2(d), which we hold only while reminders are on. There is no analytics, advertising or crash-reporting software in the application, and our website sets no cookies.

(i) Reminders. If you turn reminders on, the observer's daily question appears as a notification on your device. It is generated from your map, never from an entry's text, and it never leaves your phone.

3. How we collect your personal information

Toska Pty Ltd collects personal information from you when you use our software application, when you interact with us electronically and when we provide our services to you. We receive personal information from a third party only when you sign in through Google or Apple, which provides us with your email address and identity. If we receive personal information from a third party, we will protect it as set out in this Privacy Policy.

4. Use of your personal information

(a) Toska Pty Ltd uses personal information collected from you to provide our services: to store your journal, to analyse it with your consent, and to show the results back to you.

(b) We use your personal information to operate and improve our services, including improving our AI analysis. We will never retroactively repurpose content you have already written for a materially different use without new consent.

(c) We never use your personal information for advertising, never sell it, and never share it for marketing of any kind. We do not make automated decisions about you that have legal or similarly significant effects.

(d) Toska Pty Ltd may contact you by email, or by notification on your device if you turn reminders on, including to notify you of changes to this policy.

5. Your consent to the analysis of health-related information

(a) Journal entries about your emotional and mental wellbeing are sensitive information. We collect and analyse this content only with your explicit, separate consent, which you give during onboarding, unbundled from accepting our Terms, before any AI analysis happens. We record the version of this policy and the time of your consent.

(b) You can withdraw your consent at any time by deleting your account, which stops all AI analysis, or by emailing privacy@toska.com.au, in which case we will confirm with you and delete your account.

6. How the AI analysis works

(a) Toska's core feature is silent analysis of your own writing. The application sends your entries to enterprise AI infrastructure (currently the Amazon Web Services Bedrock service, running models by Anthropic), which returns pattern observations: the traits and connections you see in the application.

(b) We use this infrastructure under terms that do not permit your content to be stored by the AI service, do not permit it to be used to train any AI model, and do not permit it to be shared with the model's provider. All inputs and outputs pass through automated security filtering.

(c) If we change AI provider or model, we re-check those terms first. A material change to how your content is handled would mean a new version of this policy and fresh consent from you, never a silent change.

(d) The AI does not diagnose, treat or advise. Our automated filters keep the AI away from content that may indicate a crisis: that content is not analysed. The filters exist to stop the AI engaging, not to detect risk or monitor you. They never trigger a notification, and the application never contacts anyone else. Crisis resources are always available in the application (Profile, Get help) and at toska.com.au/crisis.

7. Disclosure of your personal information

(a) We may disclose your personal information to our officers, insurers, professional advisers, agents, suppliers or subcontractors insofar as reasonably necessary for the purposes set out in this Policy. Personal information is only supplied to a third party when it is required for the delivery of our services.

(b) The suppliers that process your personal information on our behalf are: Supabase (database hosting, Sydney, Australia); Amazon Web Services (AI analysis, United States); Vercel (application hosting, Sydney, Australia); Clerk (sign-in and authentication: your email and authentication metadata only); Upstash (rate-limit counters keyed by IP address); Apple (the App Store and, once subscriptions are available, payments); Google or Apple as the sign-in provider you choose; Expo (push notification delivery, United States: a device token and a content-free line, only if you turn reminders on); and our email provider, for messages you send to us. No other third party receives your personal information.

(c) We may disclose personal information to comply with a legal requirement, such as a law, regulation, court order, subpoena or warrant, in the course of a legal proceeding or in response to a lawful law enforcement request.

(d) We may use your personal information to protect the rights, property or safety of Toska Pty Ltd, its application, website and users, or of third parties, including to investigate abuse of the service.

(e) Information that we collect may be stored, processed in or transferred between parties located in countries outside of Australia. Your journal content is stored in Australia; when it is analysed it is processed in the United States and the results are returned to your account. This is a cross-border disclosure under Australian Privacy Principle 8. Your email address and authentication metadata are also held by our authentication provider in the United States. If you turn reminders on, your notification token is handled by our push delivery provider in the United States for as long as it takes to deliver a notification.

(f) If there is a change of control in our business or a sale or transfer of business assets, we may transfer, to the extent permissible at law, our user databases together with the personal information contained in them, to a successor who is bound by this Policy. We will notify you before any such transfer takes effect, and you may export your journal entries and delete your account first.

(g) Where we disclose your personal information to third parties, we require the third party to handle it consistently with this Policy.

8. Who can see your entries

(a) No one at Toska Pty Ltd reads your entries as a matter of course. A small number of operators can technically access stored data. Access is never casual, and occurs only to support you at your request, to investigate abuse of the service, or to meet a legal obligation.

(b) We do not claim that no human could ever access your data, because that would not be true. We limit who can, and why, and we disclose it here.

9. Security of your personal information

(a) Toska Pty Ltd is committed to ensuring that the information you provide to us is secure. Your data is encrypted in transit and at rest. Every request is authenticated and every query is scoped to your own account, enforced on our servers and verified by automated tests. Journal content is never written to server logs or error messages.

(b) Although we take measures to safeguard against unauthorised access and disclosure, no method of transmission or storage is perfectly secure, and we cannot guarantee the security of information you transmit to us or receive from us.

(c) If a data breach occurs that is likely to result in serious harm, we will notify affected users and the Office of the Australian Information Commissioner in accordance with the Notifiable Data Breaches scheme, promptly and without unreasonable delay.

10. Retention and deletion

(a) We keep your data for as long as you keep your account. Toska is longitudinal: your history is what the analysis is built from.

(b) You can delete your account at any time in the application (Profile, Delete account). Your journal entries, every derived analysis, your profile, your usage records and your sign-in identity are purged immediately and irreversibly. There is no grace period and no retained copy. You can also erase all of your content while keeping your account.

(c) We retain only records we are required by law to keep, such as transaction records once subscriptions exist. Payment records are held by Apple.

(d) Uninstalling the application does not delete your account or your data. Use the in-app deletion.

(e) If you decline consent during onboarding, we keep only your sign-in identity and email address until you complete onboarding, or ask us at privacy@toska.com.au to delete them.

11. Access to and correction of your personal information

(a) You can access and export your journal entries (as Markdown or PDF), correct your profile, and edit or delete any entry the AI has not yet read, at any time within the application, at no charge. Once the AI has read an entry it is kept as written, as our Terms and Conditions of Use explain; you can still erase all of your content or delete your account.

(b) You may also request details of the personal information we hold about you in accordance with the Privacy Act 1988 (Cth) by emailing privacy@toska.com.au. We will respond within 30 days. We may refuse access only in the circumstances set out in the Privacy Act, and we will tell you why.

12. Complaints about privacy

If you have a complaint about our privacy practices, please send details to privacy@toska.com.au or to L1 63-73 Ann Street, Surry Hills, Sydney NSW 2010. We will acknowledge your complaint, investigate it and respond within 30 days. If you are not satisfied with our response, you may complain to the Office of the Australian Information Commissioner (OAIC), or to your local privacy regulator.

13. Who this service is for

(a) Toska is for adults. You must be 18 or older to create an account. We do not knowingly collect information from anyone under 18; if we learn we have, we will delete it.

(b) Toska is available in Australia, the United States, Canada, New Zealand and most other countries, but not currently in the EU/EEA or the United Kingdom.

14. What Toska is not

(a) Toska is not a medical device and does not provide medical care, diagnosis, therapy or treatment. The AI's observations are not clinical advice. We are not a US healthcare provider and are not subject to HIPAA.

(b) If you are in crisis, please do not rely on this application. See the crisis resources in our Terms and Conditions of Use, or call your local emergency number.

15. Third-party links

The application and our website may link to services not owned or controlled by us, including crisis support services. Toska Pty Ltd is not responsible for the privacy practices of those services.

16. Changes to this Privacy Policy

(a) Each version of this Policy is numbered and dated. If we make a material change, meaning anything that changes how your content is handled, we will notify you in the application or by email and, where the change affects your consent, ask for it again before the change applies to you. Minor changes bump the version with notice.

(b) Version 1.1 re-issues this Policy under Toska Pty Ltd, which replaces the sole trader named in version 1.0 as the operator of the service.

(c) Version 1.2 adds optional reminders and names our push delivery provider. Nothing about how your journal content is handled changes.

17. Contact

Toska Pty Ltd (ACN 701 995 771)

L1 63-73 Ann Street, Surry Hills, Sydney NSW 2010

privacy@toska.com.au