Privacy Policy
Last updated: October 2, 2026
This privacy policy describes the personal data SiChatApp (sichatapp.com) handles when you use our SI chat — SI meaning super intelligence, formerly called AI — and the choices you have about it. The short version: you can chat without an account and nothing you type is kept on our servers, while signed-in users get saved chats that stay until they delete them. Everything below explains that in detail.
Guests and signed-in users
The privacy policy treats the two ways of using the chat differently, because the data involved is different.
- As a guest you need no account and get 10 free messages a day. Your conversation lives only in your browser tab. With each new message, the browser sends recent turns of the conversation so the model has context; we use them to produce the reply and then discard them. Guest messages are never written to our database.
- Signed in you get 40 free messages a day, premium models and a chat list. To make that list work, your conversations are stored on our servers until you delete them.
Personal data we collect
We collect only the categories of data described in this privacy policy, and most of them exist only once you create an account.
- Account details: your email address; with Google sign-in, also your name, profile picture and Google account ID. We record the country your connection came from when the account is created, plus sign-up and last-visit times.
- Saved chats (signed-in users only): each message you send and each reply, the model used, the number of tokens read and written, the credit cost and timestamps. A chat’s title is the first 60 characters of its opening message.
- Credits and purchases: your balance and every change to it — credits held and returned for premium replies, packs bought, bonuses and gifts — plus order records (pack, amount, date and Stripe payment reference). Card numbers go to Stripe and never reach us.
- Daily free-message counter: for guests, a counter keyed by a SHA-256 hash of our site ID and your IP address, never the raw address, together with the UTC date and a number. For signed-in users the same counter is keyed by account.
- Feedback and invites: the star rating and comment you send to claim the rating gift, your invite code, and which new accounts joined through it.
- Technical data: for each sign-in session, your IP address and browser user agent. IP addresses are also used briefly to limit how fast messages can be sent.
What happens to a message you send
- An automated moderation model, Llama Guard, running on Cloudflare, screens the text of your new message. Messages in blocked categories, such as sexual content involving minors, are refused and cost nothing. If the screening service is unavailable, the message is allowed through rather than lost.
- Your message and the recent conversation go to the model you selected. Every model runs on Cloudflare Workers AI; we use no third-party model API, so the companies whose model names appear in the menu do not receive your chats.
- The reply streams back to you. For signed-in users, the message and the finished reply are saved to that chat along with the model, token counts and cost. For guests, nothing is saved on our side.
How we use personal data
We use personal data only for the purposes described in this privacy policy:
- to provide the chat, keep your saved chats, and show you your balance and history;
- to sign you in and keep your account secure;
- to count free messages, bill premium replies, and process payments, refunds and support requests;
- to prevent abuse, enforce our terms of service and keep the service available for everyone;
- to see, in aggregate, which pages and features are used.
We never train any model on your chats, we do not sell personal data or share it for advertising, and we never publish your conversations.
Please keep secrets out of the chat
Treat the chat like a message to a helpful stranger. Do not paste passwords, API keys, private keys, full card numbers, government ID numbers, medical records, or personal details about other people who have not agreed to it. If you do share something by mistake while signed in, deleting the chat removes it from our database.
Cookies and browser storage
We use one cookie of our own, sid, which keeps you signed in. It is marked HTTP-only, so page scripts cannot read it, and it lasts up to 60 days. Google sets its own cookies if you choose Google sign-in, and Stripe does so on its checkout page. We use no advertising or cross-site tracking cookies.
Your browser also stores a few things on your device rather than with us: a guest’s current conversation (up to the last 30 messages) in session storage, which disappears when you close the tab or start a new chat; whether you dismissed the new-member offer during this visit; and, for up to 30 days, an invite code from a friend’s link so that the invite counts if you sign up.
Analytics without cookies
We run our own copy of Umami, an open-source analytics tool, behind our own domain. It records page views and a few product events, for example that a message was sent, which model was chosen and whether the sender was signed in. It never receives the text of a message. Your IP address is used only to work out the country and an anonymous visit identifier, and it is not stored. No analytics cookies are set.
Who processes data for us
- Cloudflare hosts the website and database, runs the chat models and the moderation model, and delivers sign-in emails.
- Stripe processes payments through our payment gateway.
- Google handles sign-in when you select “Continue with Google”.
These companies may process data in the United States and in other countries, under their own privacy and data transfer commitments. We share personal data only to the extent described in this privacy policy or when the law requires it.
How long we keep data
Each kind of data covered by this privacy policy has its own retention period:
- Saved chats: until you delete the chat. Deleting it erases the chat and all of its messages from our database at once.
- Guest chats: never stored on our servers.
- Free-message counters: a hashed key, a date and a number, with no message content.
- Sessions: up to 60 days after your last renewal. Email sign-in links expire after 20 minutes and are purged a day later.
- Account details and credit history: while your account exists.
- Purchase records: as long as tax and accounting rules require, even after account deletion.
Deleting chats and your account
Any chat can be deleted from the chat list at any moment, and deletion is permanent. To close your account, email us from your account’s address. Within 30 days we delete all of your saved chats, end every session and replace your email address and profile details with an anonymous placeholder; purchase and credit records are kept only in that anonymized form.
Security measures
The safeguards below protect all the data described in this privacy policy. All connections use HTTPS. Session tokens and email sign-in links are stored only as one-way hashes, so even a copy of our database would not let someone sign in as you. Access to production systems is limited to the people who run the service.
Legal bases (EEA and UK)
We process personal data to perform our contract with you (the chat, your account, credits and purchases), for our legitimate interests in security, abuse prevention and understanding usage, to meet legal duties such as accounting, and with your consent where the law asks for it, as described in this privacy policy.
Your rights under this privacy policy
You may ask for a copy of your personal data, ask us to correct it, or ask us to delete your account, by writing to support@sichatapp.com from the address on your account. Depending on where you live, for example the EU, the UK or California, you may also object to or restrict processing and complain to a data protection authority. We do not sell or share personal information, and exercising these rights never affects the service you get.
Children
The service is meant for adults aged 18 and over. We do not knowingly collect data from children; if you believe a child has used an account, tell us and we will delete it.
Changes to this privacy policy
When our practices change, we will update this privacy policy and the date at the top of the page. Significant changes will also be announced to signed-in users on the site or by email. For questions about this privacy policy, write to support@sichatapp.com. See also our refund policy, our SI chat pricing page, and the chat app itself, or return to the SiChatApp home page.
