As these things go, the privacy policy is excellent, and can be read in under a minute:
This is an intriguing idea as a concept but feels like it isn't a sufficient focus. The privacy page hasn't been updated in 18 months either, yet the release notes mention encryption at rest (with very little detail) being added in October 16.
For instance:
> Monica runs on Linode and I'm the only one, apart from Linode's employees, who has access to those servers.
This speaks to nothing about future use, which is what my question specifically asked.
> When you close your account, we will immediately destroy all your personal information and won't keep any backup.
I'd love to hear how you're purging users from your backups, and how long you keep backups.