Legal

Privacy Policy

Last updated: June 4, 2026. This document explains, in plain language, what data Secretdesires AI App collects and what we do with it.

Secretdesires AI App (the "Service", "we", "us", "our") respects your privacy. The points below describe the categories of data we process, why we process them, how long we keep them, and which rights you have. By using the Service you agree to this Policy.

  1. Who we are. The Service is operated by the company behind Secretdesires AI App, reachable at support@ai-secretdesires.com.
  2. Scope. This Policy applies to the website at https://ai-secretdesires.com, all of its sub-pages, and any related apps or APIs we publish.
  3. Information you provide. When you create an account we collect your email address, a password hash and any optional profile data you choose to enter.
  4. Conversational content. Messages, voice notes and any media you exchange with your AI companion are stored on our servers in encrypted form so we can deliver them back to you across devices.
  5. Customisation data. Personality settings, look preferences and saved memories about your companion are stored against your account.
  6. Payment information. Card data is processed by our PCI-compliant payment providers; we never see or store full card numbers.
  7. Device and log data. We collect IP address, browser type, language, operating system, referrer URL and timestamps to operate the Service and detect abuse.
  8. Cookies and similar technologies. We use first-party cookies for authentication, session persistence and basic analytics. You can disable cookies in your browser; some features will not work.
  9. Analytics. We use privacy-respecting, IP-truncated analytics to understand aggregate behaviour. We do not build advertising profiles of you.
  10. Lawful bases (GDPR). We process your data based on contract performance, legitimate interest, your consent (where required), and legal obligations.
  11. Purposes of processing. Account creation; delivering chat features; safeguarding the Service; processing payments; customer support; legal compliance.
  12. No human review of chats. Our staff do not read your conversations. Automated systems may scan messages for serious abuse signals.
  13. Third-party processors. Hosting, payment, email and infrastructure providers act as data processors under contracts that mirror this Policy.
  14. International transfers. Where data leaves the EEA / UK / Switzerland, we rely on Standard Contractual Clauses and equivalent safeguards.
  15. Security. Chats are encrypted in transit (TLS 1.3) and at rest (AES-256). Access to production systems is restricted and audited.
  16. Data retention. Account data is kept for as long as your account is active. Conversations are kept until you delete them or your account.
  17. Account deletion. You can delete your account at any time from settings. Deletion is permanent and processed within 30 days from backups.
  18. Right of access. You can request a copy of the personal data we hold about you.
  19. Right of rectification. You can correct any inaccurate data we hold about you.
  20. Right of erasure. Also known as the right to be forgotten — request full deletion from our systems.
  21. Right to restrict processing. You can ask us to stop processing your data in specific circumstances.
  22. Right to data portability. You can request a machine-readable export of your data.
  23. Right to object. You can object to processing based on legitimate interest.
  24. Right to withdraw consent. Where processing is based on consent, you can withdraw it at any time.
  25. CCPA rights. California residents have additional rights to know, delete and opt out of any "sale" of personal information. We do not sell personal information.
  26. Children. The Service is strictly for adults aged 18 or over. We do not knowingly collect data from minors and will delete any such data immediately.
  27. Age verification. We may use third-party age-verification tools where required by law.
  28. Marketing communications. We only send marketing emails if you opt in. Every email contains an unsubscribe link.
  29. Push notifications. You can disable push notifications from your device settings at any time.
  30. Do Not Track. We honour browser-level Do Not Track signals where technically possible.
  31. Data breaches. We will notify you and the competent supervisory authority within 72 hours of becoming aware of any breach affecting your personal data.
  32. Automated decisions. We do not use your data to make decisions with legal or similarly significant effects on you.
  33. Profiling. Personality customisation is performed on your behalf and only used to improve your own experience.
  34. Subprocessor changes. We will update this Policy if we change our infrastructure or processor lineup in a meaningful way.
  35. Policy updates. Material changes will be communicated via in-app banner and email at least 14 days before they take effect.
  36. Complaints. You may complain to your local data protection authority at any time, although we would love to fix it first.
  37. How to contact us. For any privacy question, email support@ai-secretdesires.com. We respond within 30 days, usually faster.