Ember

Privacy Policy

Last updated: 7 August 2026

Ember handles conversations between coaches and their clients, and some of what clients write is personal. That's exactly why this policy is short, plain, and honest — the same reasons the product exists. Questions: [email protected] (Handy Gunawan, sole trader, Indonesia — the operator of Ember).

The one-paragraph version

We store what the product needs to work and nothing more. We don't sell data, we don't run ad tracking, and we don't use your content to train AI. Coaches control their workspace and can delete it; a client's answers are visible to their coach — that's the product — and to nobody else.

What we store, and why

What we deliberately don't do

Who processes data for us

Clients: what your coach sees

If someone sent you a fill link: your answers go to the coach who sent it — no one else. You don't need an account, and we don't contact you. The link is private; anyone holding it can open that form, so treat it like a note meant for you. If you want your answers corrected or deleted, your coach can do it, or email us and we'll help.

Your rights

See it, export it, fix it, delete it — for anything we hold about you. Coaches can export from the app and delete their account (which deletes the workspace, including answers). For anything else, email [email protected] and it gets handled by a person, usually within a few days. If you're in the EU/UK, these map to your GDPR rights, including the right to complain to your local authority.

Security, plainly

Traffic is encrypted (HTTPS). Database access is locked per coach at the database layer, not just in the app. Client fill links use unguessable random ids, and the anonymous surface of our API can't list or browse anything. Payments never touch our servers. No system is unbreakable, but the defaults here were built cautious.

Changes

If this policy changes in a way that matters, we say so visibly (email or in-app), not silently. The date at the top is always current.