Security & data
Your data is encrypted, never sold, and auto-purges on your schedule.
Sahiri is not a medical provider and does not claim HIPAA compliance. This page lists exactly what we do with your data in plain language — and what we do not do — so you can decide for yourself whether to trust us.
What we do, specifically
Encrypted in transit
Every request between your device and Sahiri travels over HTTPS (TLS). Session cookies are HttpOnly and Secure, so scripts on a page cannot read them.
Passwords and sign-in
Passwords are hashed with bcrypt and never stored in plain text. Sign-in is rate-limited to stop guessing. You can turn on two-factor authentication with any authenticator app (Google Authenticator, 1Password, Authy, Duo).
Auto-purge on your schedule
In Safety Settings you can set your data to delete itself automatically after 7, 30, or 90 days. Deleted accounts are fully removed within 30 days.
Anonymous mode
Turn it on and you appear everywhere under a randomly generated alias. You need an email to make an account; no legal name, phone number, or card is required.
Panic button
One click sends you to a neutral website you choose. Built for people who may be watched while they use Sahiri.
Who can see sensitive records
Only you see your assessment results, journey record, and provider reports. Sahiri staff can open a record to help you with a request or to investigate a safety report; we do not browse records. Rate limits and role-based admin access guard the endpoints that serve them.
Payments handled by Stripe
Card numbers go straight to Stripe. Sahiri never sees or stores them. Cancel any time; paid plans carry a 30-day money-back guarantee on your first payment, requestable from the Cancel screen.
What the AI can and cannot see
AI moderation checks messages posted in community rooms and Safe Connect for hate, threats, and harassment. It does not read your journal, mood entries, or reflections. Your conversations with Sahi are used only to reply to you and are stored so you can see your own history. The AI providers we use do not train on this data.
Export or delete everything
Profile > Account lets you download all your data as JSON or delete your account and all data outright — no request, no waiting on us.
Never sold, no advertising
We do not sell personal data, we do not run ads, and we do not send marketing email. We do not publish reviews we cannot stand behind, and the member count on our homepage is read live from our database, never inflated.
HIPAA, honestly
Is Sahiri HIPAA compliant?
Sahiri Amali is a self-discovery and community platform, not a healthcare provider or health plan, so it is not a HIPAA covered entity. We do not claim HIPAA certification (no such certification exists).
What we do commit to: encryption in transit, strict limits on who can open sensitive records, auto-purge and self-serve deletion, and no sale or advertising use of your data. We describe our practices in our own words rather than borrowing a legal standard that does not apply to us.
Licensed therapists who see clients through Sahiri practice under their own license and their own HIPAA obligations. The Clinical Journey Record you can share with a therapist is generated only when you ask for it, and you control who receives the link and when it expires.
How long we keep things
| Active accounts | Kept while your account is active, or less if you set auto-purge |
|---|---|
| Deleted accounts | All data permanently removed within 30 days |
| Chat messages | Kept 90 days for moderation, then removed |
| Safety logs | Kept 1 year for abuse prevention |
| Payment records | Kept 7 years (legal requirement; held by Stripe) |
Found a problem?
Use the contact form with the subject line “Security”. We read every report. Full legal text lives in our Privacy Policy; community rules and reporting are on Trust & Safety.
Last updated: June 2026