Privacy Policy
What we store, who can read it, and what we do not do with it.
Last updated · not yet reviewed by a lawyer
Draft pending legal review. This document describes how the service currently works and has not yet been reviewed by a qualified lawyer.
Read this part first
Your conversations are not private from us. The people who write replies read your messages, because reading them is how a reply gets written. Our staff can read conversations when handling a report, a refund, a payment question, or a technical fault.
Message content is also sent to a third-party language-model provider to draft suggested replies.
We do not offer end-to-end encryption and this policy does not claim any. Data is protected in transit and at rest by our hosting provider, which is a normal and useful protection against outside interception — it is not a protection against us.
What we store
We hold the following about you:
- Your email address, display name, and account role.
- Your password, held by our authentication provider as a hash. We never see it.
- The full content of every message you send and receive, with its timestamp.
- Your purchases: package, amount, currency, status, and the reference given to us by the payment processor.
- Your message balance, how it was used, and when it expires.
- Which characters you have talked to and how much of your free allowance you have used.
- Your age confirmation status and, where a third party performs a check, the reference it returns.
- Reports made about a conversation, and the outcome of our review.
- A one-way hashed form of your IP address, used for rate limiting and abuse prevention. We do not store the address itself.
- A record of administrative actions taken on your account, for audit purposes.
What we do not store
We do not receive or hold your full card number, expiry date or security code. Payment details are entered with the payment processor and never reach our servers.
Where age assurance is performed by a third party, that check happens on the provider's own systems. We are not sent identity documents, images of documents, photographs of you, or biometric data, and our systems have nowhere to put them.
Who we share it with
We use third parties to run the service. Each receives only what it needs:
- Our hosting and database provider stores your account and conversations.
- Our payment processor handles purchases and refunds and holds your payment details.
- Our language-model provider receives conversation content in order to draft suggested replies.
- Our email provider sends confirmation, password reset and service emails.
- An age assurance provider, where an age check is performed.
What we do not do
We do not sell your data. We do not use your conversations for advertising and we do not send you marketing email. The only email we send is transactional: confirmation, password reset, and messages about your account.
How long we keep it
Account and conversation data is kept while your account exists. Records of payments, refunds and reports are kept after an account closes, because we need them for accounting, dispute resolution and to enforce a ban.
We have not yet set a fixed retention period for each category of data. That is being determined as part of the legal review of this policy.
Your choices
You can see and change your display name and preferences in your account. To ask what we hold about you, or to ask us to delete it, write to our support address. We will tell you what we can act on and what we are required to keep.
This policy does not yet describe rights under any particular data protection law, because which laws apply to us has not been determined.
Questions about this document: support@norelle.org