Privacy
Effective August 2026 · this page is the whole of it
There is no account, no server, and nothing to log into. What you make in HYPER stays on this phone.
The short version
Your sessions, missions, echoes, thoughts, projects, moods and settings are written to this phone’s own storage and stay there. There is no HYPER database with your name in it, because there is no HYPER server and no HYPER account. We cannot read your data, recover it, or sell it — we have never had it.
That is the whole design, and it has one honest cost: if this phone is lost, wiped or replaced, what is on it goes too. The backup file is the answer to that, and it is yours to make — see “Your copy is the only copy” in the terms.
What HYPER keeps on this phone
- Sessions — when one began, how long it ran, the mission, the interest, the moods you chose, and any words you wrote at the Echo.
- Projects and thoughts — what you named, what you left behind, what you marked finished.
- Settings — haptics, sound, hold-to-leave, keep-awake, your visualization, your music, and the playlist link you saved.
- Game progress — which tiers you have opened. No scores are kept, and nothing is ranked.
Deleting HYPER deletes all of it, immediately and everywhere, because there is nowhere else.
What guards it is your phone. HYPER does not put a second lock in front of your own writing — no passcode on the Vault, no encryption of its own — so the lock on your device is the lock on your sessions. The one exception is your Spotify token, which is held in the phone’s secure keystore.
What HYPER never collects
- No name, no email, no account, no password. There is nothing to sign into.
- No advertising identifier, no analytics SDK, no behavioural tracker of any kind. The one exception is a crash report, described below — and it is the only thing HYPER ever transmits on its own.
- No location, no contacts, no photos, no camera, no microphone.
- Nothing you write is transmitted anywhere by HYPER. Not for backup, not for improvement, not for training anything.
If HYPER crashes, it sends a crash report so the bug can be fixed. The report contains the technical stack trace, the phone model and OS version, the app version, and which screen was open. It never contains anything you wrote — no missions, no echoes, no thoughts — and file paths are stripped before sending so even your device’s folder names stay on the phone. Reports are processed by Sentry, a crash-reporting service, and are not linked to any identity because HYPER has none to link. Separately, if your phone shares diagnostics with Apple or Google, a crash can also appear in the store’s own console; that part is your phone’s setting.
The one connection you choose
HYPER can control your music. Only if you connect Spotify: you sign in on Spotify’s own page, HYPER never sees your password, and this phone keeps the resulting access token in its secure keystore. After that HYPER talks to Spotify for one purpose — to see what is playing and to press play, pause and skip.
What Spotify does with your listening is governed by Spotify, under their policy. Disconnecting removes the token from this phone.
The people in the deep
HYPER shows you nothing about other people, and tells other people nothing about you. There is no live count of who is working right now — producing one would mean your phone reporting in, and it never does. The app makes exactly one request in its life, once per launch: it asks hyperfocus.life for a small file listing how many times HYPER has been downloaded in each country, so the globe has something true to draw. That request sends nothing. It carries no name, no id, no session, nothing you have written — it is the same file every phone asks for, and the answer is the same for everyone.
If that ever becomes a live count of real people, it will still be a count and nothing more. No names, no profiles, no follows — that is a design law here, not a setting.
If you buy HYPER Deep
The App Store or Google Play takes the payment. They are the merchant: we never see your card, your billing address, or your store account. What comes back to the app is one fact — whether the deep end is open to you.
To check that, HYPER uses a purchase service (RevenueCat), which receives an anonymous identifier the app generates for this install and the store’s own receipt. It receives no name, no email, and nothing you have written in HYPER.
Your backup belongs to you
A backup is a plain copy of your data that HYPER writes when you ask for it. It does not travel to us — it goes wherever you send it. Everything you wrote is legible inside it, so keep it as private as you keep the work itself.
We cannot read your backup, and we cannot restore it for you if it is gone. There is no cloud copy to fall back on, because there is no cloud.
The one notification
If you leave the app while a session is still counting, your phone shows a quiet notice that it is running, so a session is never left going by accident. Your phone writes it. There is no push server, HYPER sends you nothing else, and it clears the moment you come back.
Children
HYPER is not built for children and is not directed at them. Since nothing is collected and nothing is transmitted, there is no child’s data here for anyone to hold — including us.
Your rights over your data
Rights like access, correction, portability and erasure exist to be used against whoever holds your data. Here that is you. Everything is on your phone: the backup is the export, and deleting the app is the erasure. There is nothing for us to hand over or delete on request, because we hold nothing.
If this ever changes
If a future version of HYPER ever sends anything off this phone, it will be explained here in plain language before it ships, and it will be something you switch on — never something already on when you find it.
Questions, or anything on this page that reads wrong to you: hello@hyperfocus.life.