● KelvinAI

Privacy Policy

Last updated:2026-09-16

What we collect

Account information: your username and a salted hash of your password (we never store plaintext passwords). Only when you choose Google sign-in or linking, we obtain your Google user id and email for identity verification. We retain the user id (sub) for login matching; the email is used temporarily during pending account linking.

Usage data: model-call metering (tokens, credit spend, which model) for billing and quota enforcement.

Payment information: purchases are processed by Stripe or by Apple In-App Purchase (on iOS); we never see or store your card number. Apple collects IAP payments — we only receive Apple-signed transaction records to credit your account.

Push credentials: if you enable new-message notifications on mobile, we store the system-assigned device push token (APNs/vendor channel) to deliver notifications; it contains no message content.

What we do NOT collect

Your conversations, code and files: KelvinAI is local-first — those stay on your device. The relay forwards session commands and returns only billing metadata (model, token counts); it never reads or stores content.

Your API keys: self-configured model keys never leave your device.

How data is used and shared

Usage data serves billing, abuse prevention and product improvement only, and is never sold.

Model requests are forwarded to the upstream provider you selected, limited to what the inference requires.

Your rights

Export or stop using the service at any time from your account page. To delete your account, contact us — usage records are purged after the minimum retention period required by law.