Privacy Policy
Last updated: July 6, 2026
How Botchi collects, uses, and protects your information.
Botchi is an AI assistant that helps you chat, organize files, manage memories, create documents, schedule tasks, and connect to services you choose to use. This Privacy Policy explains what information we collect, how we use it, who we share it with, and the choices you have.
By using Botchi, including the mobile app, this website, and our backend services, you agree to the practices described in this policy. If you do not agree, please do not use the Service.
1. Who We Are
Botchi is operated by the team behind Botchi. For privacy questions or to exercise your rights, contact hello@botchi.ai.
2. Information We Collect
We collect information in three ways: information you provide, information generated as you use the Service, and information from third-party providers you choose to connect.
Account and identity. When you create or sign in to an account through WorkOS AuthKit, we receive your email address, a unique user identifier, session identifiers, email verification status, and any profile information made available by the sign-in method you use. We may also store your timezone, preferred language, invite or waitlist state, terms acceptance timestamp, and account or team membership information.
Chat content and attachments. Messages you send to Botchi, assistant responses, uploaded files, images, generated documents, generated images, voice recordings, contact cards, location attachments, reactions, tool results, and related metadata are stored on our backend so conversations can be resumed across devices, files can be opened later, and future replies can use relevant context.
Memory and personalization. Botchi can remember facts, preferences, communication style, account context, assistant profile settings, app settings, tool permissions, approvals, tasks, calendar items, and other context you share so it can be more useful over time.
Connected services. If you connect a third-party service, we store OAuth tokens, refresh tokens, account identifiers, email address or profile identifiers returned by that provider, selected scopes, and connection settings needed to call the service on your behalf. Tokens and custom credentials are encrypted at rest. We call connected services when you ask Botchi to do something, when you approve an action, or when you configure an automation that requires that provider.
Connected services can include productivity, communication, file, calendar, social, health, fitness, music, location, email, MCP, API, and custom workspace integrations. Depending on what you connect and ask Botchi to do, provider data may include emails, drafts, attachments, calendar events, tasks, contacts, files, spreadsheets, presentations, notes, health or fitness summaries, music library information, social media metadata, messages, comments, and place or routing information.
Subscription and billing. Subscriptions are processed by RevenueCat together with the Apple App Store and Google Play. We do not receive or store your payment card details. We receive subscription status, product identifiers, and the current billing period. If you buy business or web-based plans where available, Stripe may process the payment and provide customer, subscription, invoice, and checkout metadata.
Device and technical information. We collect basic device and app information needed to deliver the Service: app version, runtime version, operating system, device model, manufacturer or brand, language, timezone, network status, push notification tokens if you enable notifications, and approximate request metadata such as IP address, timestamps, headers, and backend request identifiers.
Usage analytics. We use PostHog to understand how the app is used and to monitor reliability and cost. Analytics events may include account identifiers, feature usage, onboarding and purchase events, tool connection events, tool approval events, message and attachment workflow events, performance metrics, and AI usage telemetry such as model name, input tokens, output tokens, total tokens, and estimated cost. We do not sell analytics data.
Waitlist, support, and feedback. If you join a waitlist, submit a feature request, contact support, or report a problem, we collect the details you submit, your account identifier, your email address if needed for a reply, and relevant technical context.
Device permissions. With your explicit permission, the mobile app may access photos, camera, microphone, speech recognition, location, contacts, notifications, and files/documents for the features you choose to use. You can revoke permissions from your device settings.
3. How We Use Your Information
- To provide, maintain, and improve the Service.
- To generate responses, run tools, and execute the actions you ask the assistant to perform.
- To personalize the assistant using stored memory, preferences, and connected services.
- To manage your account, subscriptions, and usage budget.
- To store and sync chats, files, memories, tasks, calendars, settings, connected tools, approvals, and generated artifacts across devices.
- To send transactional notifications.
- To process purchases, prevent fraud, enforce usage limits, and reconcile account billing.
- To monitor stability, prevent abuse, and protect the Service and its users.
- To comply with legal obligations and enforce our terms.
4. AI Processing
To generate responses and structured outputs, Botchi sends the relevant parts of your conversation, attachments, memory, profile, tool outputs, and connected-service context to AI infrastructure, including Vercel AI Gateway and underlying model providers such as Google, Anthropic, OpenAI, OpenRouter, and other providers configured for a given model. The data sent is limited to what is needed to complete your request or configured automation.
Do not submit sensitive personal information to AI features unless a specific feature or written agreement expressly allows it. This includes health information, financial account numbers, government-issued identifiers, identity documents, credentials, private keys, special-category data under GDPR, and similar regulated information.
We may also use AI or media services to transcribe audio, extract text from documents, search the web, generate images, render documents, summarize files, create memories, classify tasks, and evaluate tool results. Model providers process data to return the requested output and may temporarily retain prompts, outputs, or metadata for safety, abuse prevention, reliability, or legal reasons according to their own policies and our provider agreements. We log token usage and estimated cost so we can operate usage limits and billing.
For production AI Gateway traffic where supported, we use retention and provider controls such as zero data retention, prompt-training restrictions, provider allowlists, and log minimization. These controls reduce retention and training risk, but they do not mean every AI request is processed only inside the European Economic Area.
5. Service Providers and Sharing
We do not sell your personal information. We share information only with trusted providers who help us operate the Service, under agreements that limit their use of the data.
- WorkOS for authentication and identity management.
- Convex for database and file storage.
- Vercel for hosting, backend execution, observability, and AI Gateway routing.
- RevenueCat, Apple App Store, and Google Play for subscription processing.
- Stripe for business or web checkout, subscription, invoice, and payment processing where available.
- AI and media providers for model routing, generation, transcription, image generation, rendering, and related processing.
- Connected services that you choose to authorize.
- PostHog for product analytics and reliability events.
- Expo for app delivery, over-the-air updates, and push notification routing.
We may also disclose information when required by law, to protect rights and safety, or in connection with a corporate transaction, in which case we will notify you and ensure equivalent protection.
We do not sell connected-service data or use it for advertising. For Google user data specifically, our use and transfer of information received from Google APIs follows the Google API Services User Data Policy, including the Limited Use requirements. We use Google user data only to provide or improve user-facing Botchi features you request or configure; we do not use Google user data to train generalized AI or machine-learning models.
6. International Transfers
Botchi is a global service. Your information may be processed in countries other than your own, including the United States and the European Union, depending on the provider. Where required, transfers are protected by appropriate safeguards such as adequacy decisions, Standard Contractual Clauses, data processing agreements, and supplementary technical and organizational measures.
7. Data Retention
We keep your information for as long as your account is active or as needed to provide the Service. You can delete individual messages, files, memories, tasks, calendar records, and connected service links where the app provides those controls. Deleted files may remain in a recoverable trash or backup state for a limited period before permanent deletion.
When you delete your account, we revoke or delete stored OAuth tokens where possible, delete your WorkOS user, purge account data from our primary database and storage, and clear local app session state. Some information may be retained where required for legal, tax, accounting, dispute resolution, security, fraud prevention, or abuse-prevention reasons, such as transaction records, audit records, and limited server logs.
Aggregated and de-identified analytics may be retained indefinitely.
8. Security
We use practical technical and organizational measures to protect your information, including TLS in transit, access controls, encryption at rest for sensitive OAuth tokens and custom credentials, secure token storage on device, least-privilege service access, and monitoring for reliability and abuse. No method of transmission or storage is fully secure; we cannot guarantee absolute security, but we work to protect your data and respond quickly to incidents.
9. Your Rights
Depending on where you live, you may have rights regarding your personal data, including the right to access, correct, delete, export, object to, restrict, or withdraw consent for certain processing, and the right to lodge a complaint with your local data protection authority.
You can manage or delete much of your data directly inside the app, including account deletion from the Account screen. You can disconnect third-party services from settings, revoke permissions from your device settings, and use provider dashboards to revoke access externally. You can also reset your Botchi app data from the Account screen. To exercise other rights, write to hello@botchi.ai. We may need to verify your identity before acting on your request.
10. Children
Botchi is not directed to children under 13, or the minimum age required in your country to consent to the processing of personal data. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us so we can delete it.
11. Third-Party Links and Services
Botchi can interact with third-party services on your behalf. Those services have their own privacy policies and terms, which apply to the data they receive and to actions taken in their products. You are responsible for reviewing the policies of services you connect.
12. Changes to This Policy
We may update this policy from time to time. When we make material changes, we will update the "Last updated" date and, when appropriate, notify you in the app or by email.
13. Contact
For any privacy question or request, contact us at hello@botchi.ai.