WillSignalWillSignal
English

WillSignal Privacy Policy

Effective date: 2026-07-31

WillSignal is an inactivity-based private message delivery service. This Privacy Policy explains what personal information we handle, why we handle it, how long we keep it, when we share or transfer it, and how you can exercise privacy rights.

The personal information controller / operator is WillSignal, operated by an individual developer. The privacy officer or responsible department is the WillSignal operator.

1. Summary

WillSignal lets you prepare private messages for selected recipients. You keep your signal active by checking in. If your signal goes out, messages may be made available to your selected recipients according to your settings.

Some messages may be locked with end-to-end encryption. Locked message bodies are designed so that WillSignal cannot read them after lock. WillSignal may still process account data, recipient data, metadata, logs, consent records, and other information needed to operate, secure, and support the service.

2. Information we collect

The exact information we collect depends on how you use WillSignal.

Account information

Recipient and designation information

Friends and social connections

Message content and message metadata

Locked-message encryption data

Signal and service settings

Technical, security, and consent evidence

Support communications

Abuse reports

Locked message bodies are end-to-end encrypted and WillSignal cannot read them. If you report a locked message and choose to include its content, you are voluntarily giving WillSignal content it could not otherwise read. WillSignal does not gain the ability to read your other locked messages by receiving a report — it receives only what the reporter chooses to send.

3. Required and optional information

Some information is required to provide WillSignal, including account information, recipient information, message and signal settings, technical logs, and consent records. If you do not provide required information, we may not be able to provide the service.

Some information is optional, such as display preferences and optional profile fields.

4. How we use information

We use personal information to:

We do not use technical consent-evidence records for advertising, and WillSignal does not use advertising or web/product analytics tools.

5. Locked and non-locked messages

Locked message bodies are designed so that WillSignal cannot read them after lock. If you lose both your passphrase and recovery code, locked message bodies cannot be recovered.

This protection applies to locked message bodies, not necessarily to metadata or other service records. WillSignal may still process account data, recipient data, message metadata, delivery status, notification data, logs, and consent records.

Non-locked messages are encrypted at rest using keys controlled by the service so that they can remain recoverable and deliverable according to your settings. This means WillSignal may have the technical ability to process non-locked message bodies where needed to provide the service.

6. Recipients and sender privacy

When you designate a recipient, we process the recipient information you provide, such as email address and related designation settings.

If you choose not to reveal your name to a recipient, we will try to follow that setting in the product experience. However, sender reveal settings do not prevent processing or disclosure where reasonably necessary for security, abuse prevention, legal compliance, dispute handling, support, or service operation.

Recipients may receive service messages about account verification, recipient designation, message availability, delivery, or related service activity. These are service-related messages, not marketing messages.

7. Service notices and marketing

We may send service-related notices, including account, security, check-in, signal, recipient, delivery, and policy notices. These are necessary to provide the service.

WillSignal does not currently send marketing messages. If we introduce them, we will send them only where permitted by law and your preferences, and you may opt out as required by law. Opting out of marketing will not stop essential service, security, or delivery-related notices.

8. Sharing and disclosure

We do not sell personal information. We may share or disclose personal information as follows:

We do not currently use advertising, analytics, or marketing processors. If that changes, we will update this Policy and obtain any consent required by law.

9. Overseas transfer

WillSignal stores and processes personal information using cloud infrastructure located in the United States, on Amazon Web Services in the us-east-1 (Northern Virginia) region.

Where required, we request separate consent for overseas transfer of personal information. The itemized details are provided in the separate "Consent to Overseas Transfer of Personal Information." WillSignal is the personal information controller. Amazon Web Services, Inc. provides the cloud infrastructure on which personal information is stored and processed, acting on WillSignal's behalf and under its instructions, and does not use that information for its own purposes.

10. Retention and deletion

We keep personal information only for as long as needed for the purposes described in this Privacy Policy, unless a longer retention period is required or permitted by law.

When you request account deletion, your account enters a recoverable deletion period of 30 days. During that period, you may cancel deletion.

After the recoverable deletion period ends, we delete or de-identify account data and related content, except where retention is needed for legal, security, fraud-prevention, backup, dispute, tax, accounting, or operational purposes. Information removed from live systems may persist in encrypted backups until those backups expire on their normal cycle.

Unless a longer retention period is required or permitted by law, WillSignal applies the following retention periods:

11. Destruction procedure and method

When personal information is no longer needed and is no longer required to be retained, we delete, de-identify, or otherwise destroy it using methods appropriate to the storage medium.

Methods include deleting database records, deleting or expiring stored objects, rotating or deleting encryption keys where applicable, and deleting or expiring logs and backups according to the applicable retention schedule.

12. Your privacy rights

Depending on applicable law, you may have rights to access, correct, delete, export, object to processing, restrict processing, or withdraw consent for your personal information.

You may exercise these rights in the app or by contacting admin.willsignal+privacy@gmail.com.

We may need to verify your identity before processing a request. Some requests may be limited where retention or processing is required or permitted by law, necessary for security, necessary for dispute handling, or technically limited by locked-message encryption.

Withdrawing consent may affect your ability to use WillSignal. For example, if you withdraw consent to processing or overseas transfer that is necessary to provide the service, we may not be able to continue providing the service.

13. Cookies, local storage, and SDKs

On the web, WillSignal uses browser local storage to keep you signed in and to store preferences. It does not use advertising cookies, advertising identifiers, or third-party tracking or analytics SDKs.

14. Security

We use technical and organizational measures designed to protect personal information, including encryption in transit, encryption at rest, access controls, and least-privilege practices. Locked message bodies are additionally protected by end-to-end encryption and are designed so that WillSignal cannot read them after lock.

Two limits on that design are worth stating plainly. Locking a message relies on WillSignal supplying the correct encryption key for each recipient, and WillSignal does not currently offer a way for you to verify a recipient's key independently. Locked messages also carry no cryptographic proof of who sent them. Messages you do not lock are encrypted using keys WillSignal manages, which means WillSignal has the technical ability to read them.

No service can guarantee perfect security. You are responsible for keeping your account credentials, passphrase, recovery code, and devices secure.

15. Minors

WillSignal is not intended for users below the minimum age for their region (19 in Korea, 18 elsewhere; see the Terms of Service). You may not create an account or use WillSignal if you do not meet the eligibility requirement.

If we learn that an ineligible user has created an account, we may suspend or delete the account. A parent, guardian, or user may contact us at admin.willsignal+privacy@gmail.com to report an underage account.

16. Changes to this Privacy Policy

We may update this Privacy Policy from time to time. When we make material changes, we will provide notice by reasonable means, such as in-app notice, email, or posting an updated version.

Where required by law, we will request separate consent for changes that require consent.

17. Contact

For privacy questions or requests, contact: