Legal

Privacy Policy

Effective July 29, 2026

Ossur Labs LLC, doing business as Be in the Field (“Field,” “we,” “us,” or “our”), provides the Be in the Field iOS application, the beinthefield.com website, and related services (together, the “Services”). This Privacy Policy explains what information we collect, why we use it, when we disclose it, and the choices available to you.

Field is designed around private, personal reflection. We do not sell your personal information or use it for cross-context behavioral advertising. The iOS app does not request permission to track you across apps or websites owned by other companies.

Information we collect

Information you provide

Depending on how you use the Services, you may provide:

  • Account and contact information, such as your email address, an Apple account identifier supplied through Sign in with Apple, and information included in a support request or website form. If you use Apple’s private email relay, we receive the relay address Apple provides.
  • Personalization and reflection content, such as what you are calling in, goals, desired feelings, values, challenges, intentions, preferences, body sensations, reflections, topics to avoid, and other context you choose to enter.
  • Scripts and related content, including generated ritual scripts, edits, approvals, Fields, feeling entries, and other content connected to your use of Field.
  • Audio recordings, including recordings you choose to make for your rituals. Candidate takes that you discard remain on your device. Kept takes and completed ritual recordings may be uploaded to our private storage so that the Services can save, restore, and play them.
  • Support communications, including the content of messages and any attachments you send us.
  • Website submissions, such as an email address or other information you submit to join a waitlist, request updates, or contact us.

You choose what personal reflection content to provide. Please do not include information about another person unless you have the right to do so.

Information collected when you use the Services

We may collect:

  • Account, device, and session identifiers, such as an internal member ID, installation or device ID, session ID, and security credentials stored in hashed form on our servers. The app stores certain credentials in the iOS Keychain.
  • Subscription and purchase information, such as product, transaction, subscription status, purchase and expiration dates, and other information needed to verify access. Apple processes your payment and provides us with transaction and subscription information; we do not receive your full payment-card number.
  • Service and security information, such as request route, response status, timing, error code, runtime environment, and other limited operational events used to operate, protect, and troubleshoot the Services.
  • Local app data, such as app state, downloaded audio, and recording files stored on your device. Some private audio is stored with iOS Data Protection, and downloaded audio caches are excluded from device backups.

Our routine server logs are designed to exclude reflection answers, scripts, audio, email addresses, authentication tokens, signed purchase data, storage object keys, and signed audio links. We do not create voiceprints, voice clones, or voice embeddings intended to identify you.

Information from others

We may receive information from:

  • Apple, when you use Sign in with Apple or make an in-app purchase, including an Apple account identifier, an email address if you elect to share one, and verified transaction and subscription information.
  • Service providers, when they help us host, secure, operate, or troubleshoot the Services.

How we use information

We use personal information to:

  • create and secure your account and keep you signed in;
  • provide, personalize, save, synchronize, restore, and play your Fields, scripts, and recordings;
  • generate ritual content from the personalization information you submit;
  • process and verify subscriptions, restore purchases, determine access, and prevent transaction fraud or misuse;
  • respond to support requests and service communications;
  • operate, maintain, protect, debug, and improve the reliability of the Services;
  • detect and prevent security incidents, abuse, and violations of our Terms; and
  • comply with law and protect our rights and the rights of others.

We do not use the content of your audio to identify you. We do not use sensitive reflection content in routine analytics, crash reports, or notification previews.

Artificial intelligence and personalized content

When you ask Field to create a ritual, the personalization information you provide for that request is sent through our backend to our artificial-intelligence service provider, currently Anthropic, to generate the requested content. Generated content is returned to Field and may be stored with the related Field and script history.

We instruct our systems to send only supported personalization fields needed for generation. Do not enter information you do not want processed for this purpose.

When we disclose information

We may disclose personal information:

  • To service providers that perform services for us, such as cloud application and database hosting, private object storage, AI-powered content generation, email delivery, and operational support. At the time this Policy was last updated, these include Anthropic for generation, Render for backend and database hosting, Amazon Web Services for private S3 audio storage, and Apple for authentication, app distribution, and subscriptions. Their handling of information is governed by their applicable agreements and privacy terms.
  • At your direction, or when needed to complete an action you request.
  • For legal and safety reasons, if we reasonably believe disclosure is necessary to comply with law or valid legal process; protect the rights, safety, and security of you, Field, or others; or investigate fraud, abuse, or security issues.
  • In a business transaction, such as a merger, financing, acquisition, reorganization, bankruptcy, or sale of assets, subject to appropriate confidentiality protections and applicable law.

We do not sell personal information. We do not share personal information for cross-context behavioral advertising.

Where information is processed

Field and its providers may process information in the United States and other countries where they operate. Those countries may have data-protection laws different from the laws where you live. Where required, we use an appropriate legal mechanism for international transfers.

How long we keep information

We keep personal information only as long as reasonably necessary for the purposes described in this Policy, including to provide the Services, maintain security, resolve disputes, satisfy legal and accounting requirements, and enforce our agreements.

In general:

  • account content is kept while your account is active and until you delete it;
  • local app data remains on your device until you remove it through the app, sign out where applicable, delete the app, delete your account, or erase the device;
  • support communications are kept as long as reasonably necessary to respond and maintain an appropriate record; and
  • subscription and security records may be kept after account deletion where reasonably necessary for fraud prevention, accounting, dispute resolution, and legal compliance.

When you delete your account, Field revokes its sessions and begins its process to delete first-party account identities, personalization, Fields, scripts, reflections, and related database content. Field starts deletion of uploaded private audio; because this step is processed asynchronously and retried if necessary, it may take additional time to complete. Limited copies may remain temporarily in backups or with providers according to their retention practices. Deleting your Field account does not cancel an Apple subscription.

We may retain a minimal account-deletion record and limited payment records, including Apple transaction and notification ledgers and a detached or tombstoned subscription binding, where needed for security, transaction integrity, accounting, disputes, or legal compliance. These records are not intended to retain your scripts, reflections, personalization, or audio.

Your choices and rights

Account and content controls

You can review and manage certain content in the app. You can request account deletion in the app at Settings → Delete account. Account deletion does not cancel subscriptions billed by Apple; manage or cancel those separately in your Apple account subscription settings.

You can also contact us to ask to access, correct, or delete your personal information. Depending on where you live, you may have additional rights, such as the right to:

  • receive a copy of certain personal information;
  • correct inaccurate personal information;
  • delete personal information;
  • restrict or object to certain processing;
  • withdraw consent where processing relies on consent;
  • appeal our decision about a privacy request; or
  • lodge a complaint with your local data-protection authority.

We will not discriminate against you for exercising applicable privacy rights. We may need to verify your identity before completing a request. Authorized agents may submit requests where permitted by law, but we may require proof of authorization and identity verification.

To submit a privacy request or appeal, email hello@ossurlabs.com with the subject “Privacy Request.” If we cannot fulfill a request, we will explain why, subject to applicable law.

Communications

You may opt out of non-essential marketing emails by using the unsubscribe link in the message or contacting us. We may still send necessary account, security, transactional, and service messages.

Device permissions

Field requests microphone access when you choose to record. You can change microphone permission in iOS Settings, but recording features will not work without it.

Security

We use administrative, technical, and physical safeguards designed to protect personal information. These include encrypted network transport, hashed server credentials, iOS Keychain storage for certain credentials, iOS Data Protection for local audio, private object storage, short-lived signed audio access links, access controls, and privacy-limited operational logging. No system is perfectly secure, so we cannot guarantee absolute security.

Children

The Services are not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided personal information, contact us at hello@ossurlabs.com so we can investigate and delete it as appropriate.

Third-party links and services

The Services may link to websites or services operated by others, including Apple’s subscription-management pages. Their privacy practices are governed by their own policies, not this one.

Changes to this Policy

We may update this Policy from time to time. We will post the updated version and change the “Last updated” date. If a change is material, we will provide additional notice where required by law.

Contact us

Questions or privacy requests may be sent to:

Ossur Labs LLC

Email: hello@ossurlabs.com