Privacy Policy
Last updated: July 19, 2026
Secrypt is built for private conversation. This policy explains what we collect, what we don't, and how your data is handled when you use secrypt.space.
What we don't do
- No training on your chats. We do not use your conversation content to train AI models.
- No ad targeting. We do not sell your messages or use them for advertising profiles.
- No unnecessary profiling. We don't build behavioral dossiers from what you ask Secrypt.
Conversations
Messages you send are processed to generate replies. They are handled in isolated sessions tied to your browser or account - not mixed with other users' data for product analytics or model improvement.
Chat history is stored locally in your browser by default (secrypt-* keys). Clearing site data removes it from your device. If you sign in, we may retain minimal server-side session data needed to enforce plan limits and keep you logged in - not to mine your conversations.
What we can and cannot see
- We can process the prompt text you send in the moment so the model can answer (required for any hosted chat).
- We do not use that content to train models or build ad profiles.
- Local history stays in your browser. Optional client-side encryption locks the on-device backup with a key that never leaves your device.
- Ghost mode chats are not written to local history — close the tab and they are gone from this device.
- We cannot read an encrypted local history blob without your device key or restore passphrase. We also cannot offer true Signal-style E2EE for hosted model inference (the model must read the prompt to reply).
Shareable plain-language summary: Privacy Pledge (badge + embed).
Account data (if you sign in)
If you create an account, we store only what's needed to operate the service: for example, your email, subscription status, and authentication tokens. We do not require more profile information than necessary.
Technical logs
Like most web services, we may log basic technical information (IP address, request timestamps, error reports) for security, abuse prevention, and reliability. These logs are not used to read or reconstruct your chat content for marketing.
Analytics
We may use privacy-oriented analytics (e.g. Google Analytics) only after configuring a measurement ID. Analytics loads only when enabled and is intended for aggregate traffic insight - not to capture message text.
Third parties
Payment processing (e.g. Stripe) and authentication providers receive only the data required to complete checkout or sign-in. Their policies govern that data once shared.
When you enable web search or page fetch, queries or URLs are sent to external engines/sites (optionally via your configured proxy). Secrypt labels those moments in chat. See Open client honesty.
Your choices
- Use Secrypt without an account when the free tier allows.
- Delete local chat history via your browser settings or in-app controls.
- Request account deletion by contacting us (see below).
Contact
Questions about privacy: [email protected]