Privacy policy
Last updated: August 2026
Session content is protected with encryption, so we cannot read your chats or source. Account, billing, operational memories, and optional analytics are separate from session content.
What we store
- Encrypted content: messages and code blobs encrypted on the device. We cannot decrypt or read them.
- Account: identifiers needed to sign in (for example a Google account or device public key), and subscription state returned by the payment provider.
- Device metadata: anonymous device and session ids, timestamps; a push token if you turn on notifications.
- Operational memories: the app memory-search API stores summaries in plaintext. There is a separate end-to-end encrypted memory sync.
- Analytics: unless you turn it off in the app, the client sends anonymized events to PostHog. They do not include message bodies, code, or a matchable account.
What we do not collect
We do not sell personal data. The product is not medical care, legal advice, adult, or gambling. We do not read plaintext sessions.
Payments
Subscription billing goes through Dodo Payments. Some client platforms may also use RevenueCat for in-app purchases. We keep subscription state and payment references. We do not store full card numbers.
Retention
Encrypted sync data stays until you delete it in the app. Plaintext memories can be deleted in the app. Analytics can be turned off in app settings. You can ask to delete the account on the contact page. Contact