WITH ALIA

WITH ALIA

Privacy Policy

Effective 12 August 2026

This policy describes how the With Alia Android beta and this website handle information. With Alia is built around Алия, a digital AI personality. The beta is intended only for people aged 18 or older.

Information kept on your device

Your conversation history, relationship state, selected facts, memories and Алия’s user-influenced state are stored locally in the app’s private storage on your Android device. The conversation ledger is stored as plaintext inside that app-private area; With Alia does not describe it as encrypted local history. Android’s application sandbox and your device security settings provide the primary protection. Device backups or a compromised or unlocked device may affect that protection.

The app also stores device-level preferences, including your language, privacy-consent version and confirmation that you meet the 18+ beta requirement. It does not request or store your date of birth. The technical installation credential is kept using Android secure storage.

Information sent to create a reply

Local-only replies do not require the model service. Before the first model-backed request, the app asks for consent. When a model-backed reply is needed, the app sends your current message and the minimum context selected for that turn. Context may include recent messages, conversation state, and individual relevant facts or memories.

The request travels over HTTPS to the With Alia server and then to the OpenAI API. The With Alia server does not retain prompts, model replies or conversation context as conversation history. Operational logs are designed to contain technical metadata rather than message bodies.

OpenAI processing

The project has sharing of API inputs and outputs for model improvement disabled. OpenAI also states that API data is not used to train its models by default unless an organization opts in. This is not a Zero Data Retention service: under OpenAI’s current API data controls, inputs and outputs may be kept temporarily in abuse-monitoring logs, normally for up to 30 days, and potentially longer when legally required. OpenAI’s controls and policies may change.

Technical metadata

The server keeps a pseudonymous installation identifier, a salted one-way hash of the installation token, status and timestamps, request and character counters, authentication outcomes and temporary idempotency fingerprints. These records support authentication, reliability, quotas and abuse prevention. Pseudonymous does not mean anonymous.

Raw idempotency keys are not stored; their fingerprints are retained for about 24 hours. Daily unit-economics records contain only the UTC day, pseudonymous installation reference, model name, success/failure counts and provider-reported input/output token totals. They contain no conversation text and are retained for 180 days. Lifetime operational counters may remain while the installation record exists.

Reports

If you explicitly report an Алия response, the report contains only the selected response, your chosen reason and limited technical fields such as a report ID, optional source-event reference, app version, platform and review status. It does not automatically include the surrounding conversation or user messages. Reports are retained for up to 90 days for safety and quality review. Reporting does not remove the local message.

Network and website logs

HTTPS/TLS protects data in transit. Nginx access logs may contain technical request information such as an IP address, time, route, status and user agent, but not request bodies. Current server rotation is daily with 14 archived logs, so these logs are normally retained for approximately 14 days. This website uses no advertising trackers, analytics SDKs or cookies.

Forget and uninstall

The in-app Forget action physically replaces the current user’s local conversation data with a clean canonical baseline. It removes local history, relationship state, facts, emotional traces and shared memories for that user. Алия’s canonical identity remains.

Forget also preserves the device-level consent, 18+ acknowledgement and technical installation credential. It does not remove the server installation record, usage aggregates, reports already submitted, Nginx logs or data temporarily retained by OpenAI. Uninstalling the app normally removes its app-private local data, subject to Android and device-backup behaviour.

Your choices

Changes and contact

We may update this policy when the product or its data practices change. A material new privacy contract may require renewed in-app consent.

Email: support@withalia.com