TheraMemory - Privacy Policy
Version: v1.1-2026-07-10
Effective date: 2026-07-10
Provider: AZURE SERENITY LLC d/b/a TheraMemory, 2125 Biscayne Blvd, Ste 204 #9119, Miami, Florida 33137, USA
Contact:
This Privacy Policy explains how TheraMemory ("Service", "we", "us") collects, uses, stores, shares, and protects data when therapists, coaches, consultants, and other professional users create an account or use the Service.
TheraMemory is a professional documentation and client-context tool. It is not a medical device, does not provide therapy, medical, or emergency services, and is not offered as HIPAA-compliant. Users are responsible for the data they enter and for obtaining any required client consents.
1. Data we collect
We collect only the data reasonably needed to provide, secure, support, and improve the Service:
- account data, such as email address, name, profile settings, language, time zone, and authentication status;
- Google Sign-In data, if you choose to sign in with Google, such as your Google Account identifier, email address, name, profile image, locale, and OAuth tokens or session data required to authenticate you;
- workspace and product data, such as client nicknames or pseudonyms, session notes, structured AI drafts, tags, reminders, and other content you choose to enter;
- configuration data, such as preferences, feature settings, and subscription status;
- billing data, such as subscription plan, payment status, invoices, and payment provider identifiers. Full payment card details are handled by the payment provider;
- technical and security data, such as IP address, user agent, device/browser information, login events, error logs, audit events, and rate-limit events;
- support communications, including messages you send to support and related troubleshooting details.
2. Google user data and OAuth scopes
If you use Google Sign-In, TheraMemory uses Google OAuth only to authenticate you, create or secure your account, and keep your session working. We request the minimum Google permissions needed for those user-facing account features, typically basic OpenID Connect profile and email scopes.
TheraMemory does not use Google Sign-In to access Gmail, Google Drive, Google Calendar, Google Contacts, Google Photos, or other Google product content unless a future feature clearly asks for that permission in context and you separately authorize it.
If our requested Google scopes ever change, we will update this policy and ask for consent before using Google user data for any new purpose.
3. How we use data
We use data to:
- create, authenticate, and manage your account;
- provide core product features, including notes, client context, search, reminders, AI-assisted drafts, and workspace settings;
- maintain security, prevent abuse, detect unauthorized access, and investigate incidents;
- provide customer support and respond to legal, privacy, or technical requests;
- process billing and manage subscriptions;
- monitor reliability, debug errors, and improve product performance;
- comply with applicable legal obligations.
We do not sell personal data. We do not use Google user data for advertising, retargeting, personalized ads, credit-worthiness, lending, or sale to data brokers.
4. Google API Services Limited Use
TheraMemory's use and transfer of information received from Google APIs complies with the Google API Services User Data Policy, including the Limited Use requirements.
In particular:
- we use Google user data only to provide or improve user-facing account, authentication, and security features in TheraMemory;
- we do not transfer Google user data except to service providers that help us provide those user-facing features, to protect security, to comply with law, or as part of a corporate transaction with required notice or consent;
- we do not allow humans to read Google user data except when you explicitly ask for support, when needed for security or abuse investigation, when required by law, or when the data is aggregated and used for internal operations;
- we do not sell, transfer, or use Google user data for advertising, retargeting, personalized advertising, credit-worthiness, or lending purposes.
5. AI features
AI features run only when you choose to use them. Content you submit to AI features may be sent to our AI subprocessors to generate drafts, summaries, questions, or other assistive outputs. AI outputs are drafts and must be reviewed by the professional user before use.
We do not intentionally send Google Account profile data to AI providers for AI generation. Do not enter PHI or directly identifying health information into the Service.
6. Sharing and subprocessors
We share data only as needed to operate the Service, support users, comply with law, or protect rights and security. Categories of subprocessors may include:
- hosting and deployment providers;
- database, storage, and infrastructure providers;
- authentication and security providers;
- AI service providers when AI features are used;
- payment processors;
- analytics, logging, email, and customer support tools.
Subprocessors may process data only for the purposes we authorize and under confidentiality and security obligations. We may also disclose data if required by law, legal process, or a valid governmental request, or to protect the Service, users, or the public from abuse or security threats.
7. Security
We use reasonable technical and organizational safeguards designed to protect data in transit and at rest, including access controls, encryption where appropriate, authentication controls, logging, backups, and least-privilege operational practices. No online service can guarantee absolute security.
8. Retention
We retain account and workspace data while your account is active. After account closure or deletion request, we delete or anonymize data within a reasonable period unless retention is required for security, fraud prevention, backups, disputes, accounting, or legal obligations.
Security logs, billing records, and backup copies may be retained for limited periods according to operational and legal requirements.
9. Your choices and rights
Depending on your location, you may have rights to access, correct, export, restrict, object to, or delete personal data. You can request account deletion, Google Sign-In disconnect, or data export by contacting .
You can also revoke TheraMemory's access to your Google Account from your Google Account permissions page. Revoking access may prevent Google Sign-In from working until you reconnect it.
10. International transfers
TheraMemory is operated by a U.S. provider and may process data in the United States and other countries where our subprocessors operate. Where required, we use appropriate safeguards for international transfers.
11. Children's data
TheraMemory is intended for professional users and is not directed to children. Users must not create accounts for children or use Google Sign-In in a child-directed context.
12. Changes to this policy
We may update this Privacy Policy from time to time. Material changes will be reflected by a new version and effective date. If we materially change how we use Google user data, we will notify users and request consent where required before using the data in the new way.
13. Contact
For privacy requests, deletion requests, Google user data questions, or legal notices, contact:
AZURE SERENITY LLC d/b/a TheraMemory
2125 Biscayne Blvd, Ste 204 #9119, Miami, Florida 33137, USA