Skip to content
Manifestationby AGI Research Lab LLC

Updated 1 October 2026.

Manifestation privacy policy

Updated 1 October 2026 for version 1.0. Account recovery depends on service availability; guest use remains available.

Manifestation is published by AGI Research Lab LLC. For privacy questions, contact 683lab@gmail.com.

The short version

  • Your futures, daily progress, journal and recordings are stored on your iPhone. You can use the app as a guest. Manifestation does not automatically upload or sync this private journey to our servers. Signing in is not a backup. In-app photos and voice journal recordings are excluded from iCloud and computer backups; export and save an encrypted backup to preserve them.
  • Optional Apple or Google sign-in supports encrypted journey-file recovery. It does not automatically upload your journey or synchronize devices. Our separate recovery service stores account and app-verification information and protected recovery keys; it does not receive your journey file or its contents.
  • The optional Energy Pool receives the stories and moderation requests you choose to send. Its community identity is separate from your recovery account.
  • We do not sell personal information, use your journal for advertising, or include advertising or product-analytics SDKs in the iPhone app. Limited account-activity counts, service reliability and abuse-prevention records are described below.
  • Apple, Google, our hosting providers and destinations you choose to share with process information needed to provide their services under their own terms. Visiting this website is distinct from using the iPhone app.

Your private journey on the iPhone

Depending on the features you use, the app stores preferences, goals and their details, envisioned scenes, achievement dates and supporting photos, alarm settings, ritual and activity history, focus sessions, journal entries, practice answers, voice recordings and transcripts, tags and links to the answers where you use a recording, reading bookmarks and sound choices.

Imported images are copied through Apple's system picker. The app does not need access to your entire photo library and does not change your originals. Its private image copies are normalized and have source metadata such as location removed. Local image fingerprints can detect reuse; they do not identify faces or verify that an achievement happened.

Manifestation does not automatically upload or sync these records to our servers. Signing in does not publish your progress or give the account console access to your journey. You decide whether to submit an Energy Pool story or share an achievement, recording or export. Account requests, the Energy Pool and optional weather have the separate data handling described below. Cloud generation is not available in version 1.0.

Apple device backups are separate from our account service. Some app data, including the local progress database and certain preferences or drafts, may be included according to your device-backup settings. In-app photos and voice journal recordings use iOS file protection and are excluded from iCloud and computer backups. Do not assume reinstalling the app or signing in restores the complete journey. When protected export is available, save a protected journey file somewhere you control and keep access to its owning account.

You can keep recording and reviewing local progress without a connection or an account. Some speech and narration features first need language assets or a voice-pack download. Signing in, creating or reopening a protected export, fetching new lessons or weather, and submitting a story need an internet connection. An account-service outage does not erase or lock the journey already stored on the iPhone.

Local diagnostics use bounded event codes, counts and coarse time buckets rather than the content of your journal. They are not automatically uploaded by the app. Information you deliberately send with a support request is handled as support correspondence.

Optional account recovery

Signing in is optional. Opening the account screen as a guest does not itself contact the recovery service. Choosing a sign-in provider or checking the connection does. When you are signed in, the app may check the existing connection and renew its session.

Apple or Google verifies your identity. The app does not ask for your provider password. The configured native flows do not request your name, email address or contacts for the recovery account: the service uses the provider's stable account identifier and its own randomly generated account ID. The provider may show account information in its own sign-in screen. Provider identifiers are still personal information even when they are not an email address.

You may add or change an optional display name and choose a built-in account symbol in Settings. These are private account details, not a public profile or Energy Pool signature. They are saved to the account service, so they can appear when you sign in on another device. Authorized account operators can see these details for administration; do not use the field for sensitive journal information. You may clear the name at any time. We do not import your provider’s name or photo.

Our account service uses Cloudflare infrastructure. To provide and protect accounts and recovery it processes:

  • the provider identifier, the app's account ID and explicitly linked sign-in methods;
  • your optional chosen display name, built-in account-symbol selection, account creation date and profile revision/date;
  • one last-successful-account-activity timestamp, updated at most once per hour, for recent account-activity counts;
  • Apple App Attest app/device verification material, public verification keys, counters and enrollment records;
  • short-lived sign-in challenges and session records, including hashed access/refresh-token references and timestamps;
  • protected provider credentials where needed for authentication or revocation;
  • an identifier and encrypted recovery key for each protected export;
  • deletion and operational records needed to prevent removed accounts from being restored by old data or to finish provider revocation.

Ordinary requests expose connection information, including IP addresses, to the hosting provider. The account service uses a hash derived from the request IP for rate limiting. Optional service-health metrics contain aggregate route categories, result categories, hour buckets, request counts and elapsed times; they do not contain journal content, account identifiers, tokens or full request bodies.

Account credentials on the iPhone are kept in this device's Keychain and are not included in journey exports or iCloud Keychain synchronization. Linking another provider is an explicit action. We do not merge accounts just because two providers may use the same email address.

Encrypted export and recovery

In Settings → Account & backup, you can sign in and choose to create a protected journey file. Its contents are encrypted on the iPhone before the share sheet opens. “Backup prepared” means the file is ready to save, not that it has been saved outside the app. You choose where to save the file, such as Files or a storage provider you trust. The recovery service does not receive the file, photos, recordings or transcripts.

Reopening a protected file requires the account that owns it, a compatible verified Manifestation app, an internet connection and the service's surviving recovery key. Signing into another device alone does not transfer the file; you must bring the saved file with you. A different account cannot request its recovery key through the app.

This is account-recoverable encryption, not a claim that the service operator can never access a key. The service can release a recovery key after verification; someone with both the necessary service keys and a copy of an export could decrypt it. Protect exported files and your provider account accordingly.

Signing out preserves the journey already on your iPhone. Deleting the recovery account removes its recovery keys, so its protected exports can no longer be reopened through recovery. A previously restored local journey and copies you saved outside the app are not erased by account deletion. Older unencrypted exports remain unencrypted; importing one and creating a protected export does not change old copies.

Recent account activity means successful authenticated account operations, such as sign-in, session renewal or a profile check. It is not a count of daily app visits and does not include guest use or offline journal activity. We do not send recordings, goals, practice answers or a timeline of app events to produce these counts.

Voice recordings, transcription and local intelligence

The app uses the microphone with permission when you explicitly record a voice answer, journal entry, celebration or bedtime message. It saves your recording locally. Practice/journal recordings can be transcribed with Apple's on-device speech tools; language assets may need an optional download. The original recording remains available if transcription cannot finish. Recordings and transcripts are not sent to our account service or the Energy Pool.

The app’s Apple on-device intelligence features can help phrase an answer, prepare guidance or vary encouragement using relevant information in the app. Those features run on the iPhone and do not send that text to our AI service. Availability depends on the device, language and model readiness; prepared guidance remains available when they cannot run. Cloud tools in earlier or invited development versions are separate and are described below; they are not available in version 1.0.

The optional Kokoro voice pack is downloaded from Hugging Face (huggingface.co) when you choose to install it. Hugging Face and its download network receive ordinary connection information, such as your IP address, for that transfer; see Hugging Face’s privacy policy. After preparation, narration is generated locally from text on the iPhone; the voice-pack download does not send your journal or narration text to that host. Recorded guidance bundled with the app is separate from generated narration.

Version 1.0 and development-only cloud tools

Version 1.0 does not include cloud image generation or cloud coaching, and it does not promise a two-image allowance. It offers 88 ready-made scenes and local photo imports. The following disclosure applies only to enabled development versions, not to version 1.0. They are separate from guest use, account recovery and Apple’s on-device intelligence.

Choosing Create this vision in an enabled development version sends the selected scene category, scene details and target through our Cloudflare-hosted generation service to Google’s Gemini API. Details can include a goal title or target filled from your future; review them before generating. Turning on Add yourself to this scene also sends the one photo you choose. Google processes that photo for an adult-eligibility check and, if accepted, to compose the scene. The reference photo is not automatically added to your scene library; you separately choose whether to save the generated result.

Choosing New ideas in the development goal editor sends that future’s category, title, target summary and accumulated focus minutes to the same service and Google to suggest a mantra, next step and scene idea. It does not send the whole journal, individual focus photos or voice recordings.

These requests include a random installation identifier for service access and rate limiting, and hosts receive ordinary connection information. Our generation Worker does not intentionally save prompt, reference-photo or result files. That does not mean no provider retains them: Google’s API terms allow processing and retention under the applicable service terms. Paid and unpaid API services have different data-use terms. We do not promise zero retention or that no human can access submitted content. See Google’s Gemini API terms.

Current narration uses local speech generation or recorded guidance. Earlier test versions offered cloud narration that sent the requested script through our Worker to Google or ElevenLabs. The current app does not call those legacy speech services. Removing previous cloud narration in voice settings clears its local saved narration and consent; it does not itself erase a provider’s historical records. Contact us about an earlier submission.

Optional morning weather

New users cannot turn on morning weather in version 1.0. If it was already enabled on this iPhone, the app uses Apple Weather (WeatherKit) only, with your location permission, to request a forecast. It saves a location rounded to two decimal places on the iPhone as a hint for a later forecast, not a location trail. An existing user can turn it off in Settings → Morning ritual.

Turning morning weather off in the app stops its requests, cancels pending weather work and removes that saved location and forecast. Removing location permission has the same effect when the app receives the permission change; late results cannot restore the cleared data. If Apple Weather is unavailable, the weather stays hidden. There is no alternate weather provider in version 1.0.

Earlier test builds (2026.9.82 and before): if WeatherKit was unavailable, the app could request a forecast from Open-Meteo using coordinates rounded to two decimal places. Open-Meteo received those coordinates and ordinary connection information such as an IP address. Its published policy describes troubleshooting logs that may include coordinates and are deleted after 90 days; see Open-Meteo’s privacy policy. Those older builds could continue forecasting from a previously cached location after location permission was revoked. The new behavior does not erase information already received by a provider. Contact 683lab@gmail.com with questions about an earlier request.

Sleep, Apple Health and the Watch

The optional morning sleep story reads available sleep information from Apple Health on your iPhone with permission. It is a retrospective summary, not an input that diagnoses sleep stages or guarantees a Smart Wake time. Health records are not sent to our account or Pool services or used for advertising.

Smart Wake runs only for a night you explicitly start. With the iPhone source, microphone sound is reduced to activity features locally and raw analysis audio is discarded. Before a chosen listening-start time, the microphone is not opened. With Apple Watch sensing, movement is processed on the Watch; wake plans and session status pass between your paired devices. These estimates are not clinical sleep-stage measurements, and the normal alarm remains the latest-time backup.

The app keeps up to 14 past Smart Wake summaries and the current plan in protected local storage excluded from journey exports and device backup. Delete that history in Settings; stopping phone sensing can also request cancellation on the paired Watch. Some older engineering builds may have left legacy sleep records, which have a separate deletion control. Apple Health records remain under your Health controls.

Alarms, notifications and sharing

iOS receives the alarm schedules and labels needed to deliver your alarms. An alarm label can appear on the Lock Screen. Optional reminders and focus notifications use generic notification text. The widget reads its app data on the device and does not make its own network requests.

When you choose to share an achievement certificate, report, scene, recording or file, the destination receives that item. Review the preview and included content first. If you choose Save Image, iOS asks once whether Manifestation may add that image to Photos. This add-only access cannot see your library or change existing items. The saved copy follows your Photos and iCloud settings. Removing the app's copy does not remove copies at another destination. Opening a citation, support link or privacy page also contacts that website.

Energy Pool

Reading published lessons and stories does not require the recovery account. Ordinary service requests still expose connection information to the host. Offering a story sends the words and signature you choose, an optional goal category and an anonymous per-install token; the service stores a hash of that token. Your private goals, recordings, transcripts, images and journal do not accompany the submission.

Submissions are moderated before publication. When moderator email notifications are configured, Resend sends operational notices to 683lab@gmail.com: submission time, character count, story ID, queue counts and review links, or a report’s story ID, status and open-report count. These notices do not contain the story’s words, signature or topic, or the reporter’s identity, reason or words. The editor reads the content in the Pool console. Notices have a separate lifecycle from the public feed. If an edit is offered, you approve it before that version publishes. Reports send the story ID, selected reason and install-token hash. Blocking is a local preference. Withdrawing removes a story from the public feed, subject to short content-cache delays; a moderation record can remain. After withdrawing a story, use My stories → Ask to delete it completely, or email 683lab@gmail.com with the story ID. Withdrawal hides the story; it is not immediate deletion of the private moderation record.

Version 1.0 is free during launch, with no ads, no announced end date and no new purchases offered. Recovery-account deletion does not delete Pool posts, because the identities are separate. Remove posts in the Pool or contact support. If an existing Apple subscription is recognized or restored, Apple handles payment and the service processes the signed transaction and entitlement information needed to verify access; we do not receive your payment-card number. Restore and subscription management remain separate from journey recovery.

Retention and deletion

Local journey records remain until you remove them using an available app control or delete the app. Keychain credentials can survive reinstall; sign out or use account deletion as appropriate. External copies and storage-provider backups follow the destination's controls.

The recovery service retains active-account and export-key records to provide the recovery you requested. Account deletion removes the active account and dependent recovery records. A minimal account-deletion marker is retained to prevent accidental resurrection from older data. Encrypted provider-revocation work may remain until completed or expired. Hosting backups, security records and support correspondence have separate operational lifecycles; contact 683lab@gmail.com with a deletion request or question.

We use support correspondence to respond to your request. Do not send passwords, sign-in codes, recovery keys, sensitive recordings or journey files unless there is a specific, agreed reason to do so. We will not ask for your Apple or Google password.

Website and service providers

This policy page is hosted on agi-thinktank.com. The website has separate hosting, analytics and account features; those are distinct from the iPhone app. Website hosting, account-service hosting, identity verification (Apple and Google), optional weather (Apple), optional voice-pack downloads (Hugging Face), development-only generation services, moderation email (Resend), App Store delivery, TestFlight, operating-system permissions and destinations you select each involve their respective providers. See the website privacy page for the website's separate practices.

Adults, security and changes

Manifestation is intended for adults 18 and older. It is not a medical service. Use a device passcode and other protections appropriate for a private journal. No system can guarantee absolute security or permanent recovery; keep your chosen file copies and sign-in access safe.

We update this page when material data handling changes. The app's explanations and App Store disclosures should describe the same data handling. Contact us if you notice a difference or need clarification.

Questions and requests: 683lab@gmail.com · Manifestation support.

What changed on 1 October 2026

Clarified the version 1.0 scope, manual backups and device-backup exclusions, account-authorized recovery, Apple-only weather, the voice-pack host, add-only Photos saving, content-free Pool email notices and AGI Research Lab LLC as the publisher. These wording updates do not announce that account-service qualification or App Store release is complete.