Privacy Policy
How we collect, use, disclose and protect personal data when you use Individuation — including the dream text you submit for interpretation.
Updated — August 15, 2026
On this page
This Privacy Policy explains what happens to your data when you use Individuation: the website, the Reading Room, and the tools around them. It applies to everyone who uses the site, wherever you are.
We have tried to write it in plain language and to describe what the software actually does, rather than reserving every right a lawyer could imagine. Where a section involves a third party, we name them.
Individuation is an educational resource for reading dreams through depth psychology. It is not a medical service and it is not therapy — see the Terms of Use for what the service is and is not.
Personal Data We Collect
We collect three kinds of data, and it is worth separating them, because they are handled very differently.
Data you give us directly. The text of the dreams you submit for interpretation, along with any follow-up messages in the same conversation. If you write to us through the contact form: your name, your email address, the subject you choose, and your message. If you create an account: your email address and a password.
Data collected automatically. Standard web-server request logs — IP address, browser and device type, referring page, timestamps — generated by our hosting provider in the ordinary course of serving pages, and used for security, abuse prevention, and diagnosing faults. We run no analytics product, no advertising network and no tracking pixels; you will not find one in the source.
Data that stays on your device. Your language and theme preference, dreams saved locally, and a counter of free interpretations used. This is written to your browser's local storage and is not transmitted to us. See Cookies and Local Storage below.
We do not ask for, and have no use for, your real name, postal address, phone number or date of birth.
Dream Text and AI
This is the most important section of this policy, which is why it is near the top.
When you submit a dream for interpretation, the text you wrote is transmitted over an encrypted connection to Anthropic, which operates the AI model that produces the reading. The model generates an interpretation, which is returned to you. Anthropic processes this text as our service provider, for the sole purpose of generating your response.
Dream narratives can be intensely personal. Write freely — that is the point — but treat the box as you would any text you send to an online service: do not include information you would not want transmitted to a third-party processor, such as the full names of other people, medical record numbers, financial details or credentials.
Submissions are capped at roughly 8,000 characters per conversation. If you are signed in and choose to save a dream, the text and the resulting conversation are stored in our database under your account — see Retention. If you are not signed in, the conversation lives only in your browser's local storage and disappears when you clear your site data.
We do not read your dreams for our own purposes. We do not use your dream text to train models, we do not sell it, and we do not publish it.
How We Use Personal Data
We use personal data to:
- operate the service — generate interpretations, save and retrieve your dreams, keep you signed in;
- answer you when you write to us through the contact form;
- keep the service working and safe — diagnose errors, prevent abuse, enforce rate limits;
- comply with legal obligations.
Where the law requires us to name a legal basis for processing — as it does in the EEA, the UK and under Georgian data-protection law — we rely on: performance of our agreement with you, for everything needed to deliver the service you asked for; our legitimate interests, in keeping the service secure, working and free of abuse; your consent, where you have given it; and compliance with legal obligations.
We do not build advertising profiles, we do not perform cross-context behavioral advertising, and we do not make automated decisions that produce legal or similarly significant effects concerning you.
Service Providers
Individuation is a small site assembled from a handful of well-known services. Each of the following receives some data in order to do its job, and each is bound by its own privacy terms:
- Anthropic — receives the dream text you submit, in order to generate the interpretation.
- Supabase — hosts the database and the authentication system. If you create an account it stores your email address, your account record, and any dreams you save.
- Resend — delivers contact-form messages to us by email. Your message and the address you provide pass through it and arrive in an ordinary email inbox.
- Netlify — hosts and serves the site, and generates the server request logs described above.
- Google Fonts and Unsplash — serve the typefaces and photographs used on these pages. Because your browser loads those files directly from them, they receive your IP address and user-agent when a page loads. We do not control that, and we mention it because most sites do not.
We add providers rarely and reluctantly. If we add one that receives personal data, we will update this list.
Beyond them, we do not sell personal data, and we have never done so.
We disclose personal data only in these situations: to the service providers listed above, so that they can perform their function; where we are compelled by valid legal process; where disclosure is necessary to protect the rights, safety or property of users or the public; and to a successor entity in a merger, acquisition or sale of assets, in which case this policy continues to apply to the transferred data until it is replaced.
Cookies and Local Storage
Individuation sets no advertising cookies, no analytics cookies and no third-party tracking cookies. There is no cookie banner because there is nothing to consent to.
The site does use your browser's local storage — data kept on your own device that is never sent to our servers. The keys are prefixed somnia_, which is the name the project launched under before it was renamed to Individuation:
- somnia_lang — your chosen interface language;
- somnia_theme — your chosen theme, night or dawn;
- somnia_dreams — dreams saved locally while signed out, capped at the 200 most recent;
- somnia_free_used — a counter of free interpretations used;
- somnia_last_open_* — which conversation you had open last.
If you sign in, Supabase Auth additionally stores a session token in your browser so that you stay signed in. Clearing your browser's site data for this domain removes all of the above.
Retention
We keep personal data only as long as it serves a purpose:
- Saved dreams — retained until you delete them, or until you delete your account.
- Account records — retained while the account is open.
- Contact-form messages — retained in the inbox they were delivered to, as ordinary correspondence, until deleted.
- Server logs — retained by our hosting provider for a short period under its own retention schedule, then discarded.
- Local storage — kept on your device until you clear it, or until the 200-dream cap rolls the oldest entry off.
Your Controls and Rights
Most of what you would want to do, you can do yourself, without asking us:
- Delete a saved dream from the Reading Room at any time.
- Sign out to end the session on your device.
- Clear your browser's site data to erase everything stored locally, including saved conversations and preferences.
- Change your language and theme at any time from the header.
- Use the site signed out, in which case nothing is stored in our database at all.
To delete your account and everything associated with it, write to us through the contact page and we will do it.
Beyond those controls, and depending on where you live, you may have the right to access the personal data we hold about you, to correct it, to delete it, to receive a copy in a portable format, to object to or restrict certain processing, and to withdraw consent where consent is the basis for processing. Exercising any of these rights will never cause us to treat you differently or degrade the service.
To make a request, contact us through the contact page. We may need to verify that the request comes from you — usually by confirming control of the account email address — before we act on it. We respond within the period required by applicable law, and where a law gives you the right to appeal a refusal, we will tell you how.
Children
Individuation is not directed to children under 13, and we do not knowingly collect personal data from them. If you believe a child under 13 has provided us with personal data, contact us and we will delete it.
If you are under 18, please use the service with the knowledge and permission of a parent or guardian. Dream material can raise difficult feelings, and that is a conversation better had with someone you trust nearby.
Security
All traffic to and from the site is encrypted in transit. Passwords are handled by Supabase Auth; we never see, store, or have access to your password. Every saved dream is protected at the database level by row-level security policies that scope each record to the account that created it, so one user's rows are not readable by another.
No method of transmission or storage is completely secure, and we cannot guarantee absolute security. Use a password you do not reuse elsewhere, and sign out on shared devices.
U.S. State Disclosures
If you live in a U.S. state with a comprehensive privacy law, you have the rights described in Your Controls and Rights above (section 7), including the rights to know, access, correct, delete, obtain a portable copy, and appeal a decision on your request.
We do not sell personal information and we do not share it for cross-context behavioral advertising, as those terms are defined by those laws. We do not process sensitive personal information in order to infer characteristics about you, and we do not offer financial incentives in exchange for personal data.
Jurisdiction and Complaints
Individuation is operated from Georgia (Sakartvelo) — the country in the South Caucasus, not the U.S. state. The operator is the data controller for the personal data described in this policy, which means we are the ones who decide why and how it is processed.
Our service providers are based principally in the United States, so personal data is handled in both countries. The service is available worldwide, so wherever you use it from, you are transferring data to countries whose data-protection laws may differ from those of your own. Where required, we rely on the transfer mechanisms our providers make available, such as standard contractual clauses.
Because the service is available worldwide, more than one data-protection law may apply to you at the same time. Where they differ, we aim to meet whichever standard gives you more protection, not less.
If you think we have mishandled your personal data, please tell us first — see How to Contact Us — so that we have a chance to put it right. You also have the right to complain to a regulator: in Georgia, the Personal Data Protection Service; in the EEA or the UK, your national data-protection authority; in a U.S. state with a privacy law, your state attorney general.
Changes to This Policy
We may update this policy as the service changes. When we do, we will change the date at the top of this page, and if the change is significant we will make it visible in the interface rather than quietly. Continuing to use the service after an update means you accept the revised policy.
How to Contact Us
For any question about this policy, or to make a request about your data, use the contact page — it is the fastest route and it reaches us directly. You can also write to vakhtangishviligi@gmail.com.
Please include enough detail for us to understand and verify the request. We read everything.