Their words stay private, on their device, until they choose to share them with you.
Privacy is not a setting in Narrative Arc. It is the architecture. Here is exactly what that means.
Privacy Policy
Last updated: June 2026
The short version
Narrative Arc holds your life stories. Voice recordings of memories, the people you love, the moments that made you. That is the most personal content a person can create, and the privacy posture reflects that. The app runs on your device. Your stories never leave your phone or Mac unless you explicitly choose to share or export them.
What we collect
Your stories, voice, photos, relationships, and timeline are never collected, transmitted, or analyzed by Narrative Arc, and there is no cloud requirement for any core feature. We do not read, index, analyze, or train models on anything you record. We run no third-party analytics or crash-reporting services. The one advertising component we include is Meta’s SDK, used only to measure, in aggregate, whether one of our ads led to an app install or a subscription. It runs with cross-app tracking and the advertising identifier (IDFA) turned off, so you are not tracked across apps and no advertising profile is built about you. It never receives your stories, photos, voice, transcripts, or any content you create. We do keep a small amount of privacy-safe usage data, described below. It is counts only, and it never touches your content.
Usage data
To understand how Narrative Arc is used and where people get stuck, we collect a small amount of first-party usage data: simple counts and totals, such as how many stories are created, how often a feature is opened, how long recordings run in total, which sync option is chosen, and which sharing options are used. This is always aggregate. It is never the content of a story, a title, a transcript, a photo, a name, or anything derived from them. It is keyed to a first-party identifier for your installation, and to your account once you sign in, never to an advertising or cross-app tracking identifier, and it is never sold or shared. Because a bare count carries no personal content, this is standard usage measurement with no separate opt-out. On the App Store it appears as Usage Data that is not used to track you.
Voice and transcription
Speech recognition is on-device only, using Apple’s Speech framework. We enforce requiresOnDeviceRecognition = true at the code level. If on-device recognition is unavailable for your locale, recording surfaces a clear error rather than silently falling back to a cloud service. Your audio recordings are stored privately on your device. They never leave your machine.
Stories, photos, and people
All story text, attached photos, and tagged-people data live in a private database in the app’s sandboxed storage on your device. Photos you attach to stories are imported as resized copies into Narrative Arc’s private storage. Your originals in your photo library are never moved or modified.
Cross-device sync
By default, your stories back up to your own private iCloud, synced across your devices via your Apple account and never a Narrative Arc server. In Settings you can change where your stories live: keep the iCloud default, switch to your home Wi-Fi only (synced device to device, no cloud at all), or keep everything on this device alone. The choice is always yours to change.
Sharing and exports
When you export a memoir as a PDF, a video, or a web reader, you choose what gets shared. The output file goes wherever you direct it. Web-published readers are opt-in per memoir, with explicit access controls, and you can take a published memoir down at any time.
Account and Sign in with Apple
Publishing a memoir to the web or co-authoring a shared family memoir requires signing in with Apple. When you do, we store a minimal account record tied to your Apple sign-in: an anonymous Apple-provided identifier, your subscription status, and a small amount of setup state, namely whether you have completed first-time setup and which sync option is in use. This lets us recognize you when you sign in on another device, so your existing memoir is offered to you instead of starting over. This record contains no story text, photos, or voice, only account and setup metadata. If you never sign in, no account record exists.
Contacts and permissions
If you grant Contacts access to import a person, the imported fields (name, email, phone, birthday, profile photo) are stored locally on your device alongside the rest of your Narrative Arc data. We do not retain or transmit your contact list. Microphone, Speech Recognition, Camera, and Photo Library permissions are requested only when needed for a feature you initiate, and you can revoke them in system Settings at any time.
Family collaboration
Narrative Arc has two ways for family to take part in a memoir, both invitation-only and both off until you choose them.
Contributions. You can invite someone to add a single story to your memoir. They record on their device or in a web browser, and their contribution lands in your memoir, attributed to who told it. Contribution audio is held only until you accept it into your memoir, then deleted from our server.
Shared family memoir. If you and up to two other people choose to write one memoir together, that memoir is kept in sync between your devices. Because co-authors are different people on different devices, the in-progress memoir (story text, voice recordings, and photos) is relayed through a Narrative Arc server so each co-author’s device can receive the others’ work. This is the one feature where memoir content is stored on our server before you publish, and it happens only after you explicitly create or join a shared family memoir. We store only the current state of the shared memoir’s media, not its history. We never analyze this content, and it is never shared beyond the co-authors you invited.
Third parties
Narrative Arc integrates no third-party analytics or tracking platform. It includes Meta’s advertising SDK solely for the aggregate install-and-subscription measurement described above, running with cross-app tracking and the advertising identifier turned off. Otherwise the only third parties involved are Apple’s first-party frameworks (Speech, Vision, PhotoKit, Contacts) for the on-device features described above.
Children
Narrative Arc is designed for adults documenting their life stories. We do not knowingly collect data from children, and the product is not directed at children under 13.
Changes
If this policy changes, the updated version will be posted here with a revised “Last updated” date. Privacy-relevant changes will also be surfaced in the app.
Contact
Questions about this policy can be sent to support@narrativearc.app.