Legal

Privacy Policy — Marea

Effective date
14 September 2026
Last updated
14 September 2026
App
Marea
Platform
iOS & Android
Developer
Nainnie Labs
Contact
hello@nainnielabs.com

This policy applies to the Marea app for iOS and Android, published by Nainnie Labs.

The short version

Marea keeps everything on your phone and nowhere else. It has no account, no analytics, no advertising, and no server that holds your data. We can't see what you enter, and we couldn't hand it over if asked, because we don't have it.

The rest of this page says the same thing in more detail.

1. What Marea stores, and where

Everything you enter — your exposure ladders, rungs, response-prevention rules, session timings, distress ratings, reflections, theme selections, and settings — is stored in a single encrypted database on your device. The encryption key is kept in your phone's secure storage (Keychain on iOS, Keystore on Android) and never leaves the device.

Marea does not store this data anywhere else. There is no cloud copy, no sync, and no account to attach it to.

2. What Marea sends over the network

Marea makes no network requests, with one exception: when you purchase or restore Marea Pro, the app communicates with Apple's App Store or Google Play to confirm the purchase. That exchange is between your device and Apple or Google, under their privacy policies. Marea does not send anything about you, your ladders, or your sessions as part of it.

Specifically, Marea does not send:

3. Backups

You can create a backup of your Marea data as a single .marea file, encrypted with a passphrase you choose. Where that file goes is up to you — you save it through your phone's own file or share sheet, and Marea does not keep a copy, does not know where you put it, and does not remember that you made one.

The passphrase is the only way to open a backup. Marea does not store it, and cannot recover a backup if the passphrase is lost.

Marea's data is excluded from your phone's automatic device backups (iCloud Backup and Android's device backup), so it is not copied to Apple or Google as part of those.

4. Clinician export

You can export a summary of one ladder as a PDF to share with a therapist or doctor. The file contains the ladder's tasks, response-prevention rules, session dates, durations, and distress ratings. It does not contain your theme selections, reflections, or anything you recorded as a script.

The export is created on your device and handed to your phone's share sheet. Marea does not send it anywhere or keep a copy.

5. Sharing an article

One piece in Marea's library, written for family members, can be sent as plain text through your phone's share sheet. It contains only the article and a line saying where it came from. It contains nothing about you.

6. Reminders

If you turn on reminders, they are local notifications scheduled on your device. No reminder is sent from a server, and Marea does not know whether you opened one.

7. App lock

If you turn on app lock, Marea asks your phone to verify you with Face ID, Touch ID, fingerprint, or your device passcode. That verification is performed by the operating system. Marea receives only a yes or no — it never receives biometric data.

8. Crisis resources

Marea includes crisis line numbers for the UK and US, stored in the app itself so they work offline. Choosing to call one is an action you take; Marea does not record it.

9. Deleting your data

You can delete everything Marea holds from Settings. This removes the database, its encryption key, and any export files still in the app's storage. It cannot be undone, and there is no copy anywhere to restore from — other than a backup you made yourself.

Uninstalling Marea has the same effect.

10. Children

Marea is not directed at children under 13 and does not knowingly collect information from them. Since Marea does not collect information from anyone, this is a statement about audience rather than data handling.

11. Your rights

Under UK GDPR, EU GDPR, the California Consumer Privacy Act and similar laws, you have rights to access, correct, delete, and port personal data that an organisation holds about you.

Marea holds none. Every right listed above is exercised directly on your device: you can read everything the app stores by opening it, correct it by editing it, delete it from Settings, and port it by making a backup or an export. There is nothing to request from us because there is nothing we have.

If you believe we hold data about you despite this, contact us at the address below and we will respond.

12. Third parties

Marea does not integrate any third-party analytics, advertising, crash-reporting, or tracking SDKs. The only third parties involved are Apple and Google, as the operators of the app stores and the payment systems, under their own policies.

13. Changes to this policy

If this policy changes, the new version will be published at this address with a new effective date. Because Marea does not collect contact details, we cannot notify you directly; the version in the app's Settings always links here.

14. Contact

Nainnie Labs
Email: hello@nainnielabs.com
Website: https://nainnielabs.com