Blog Pricing Downloads Docs Wiki Open Source on GitHub Web App Support
ENDE

Privacy Policy

Last Updated: January 27, 2026

TL;DR: Your chats are encrypted end-to-end on your device before being stored. We cannot read your messages. We collect minimal data necessary to provide the service.

1. Introduction

This Privacy Policy explains how chuk.chat (“we,” “us,” or “our”) collects, uses, and protects your information when you use our AI chat application and services.

We take your privacy seriously and have designed our service with privacy as a core principle.

2. Information We Collect

2.1 Account Information

When you create an account, we collect:

Important: Your email and username are stored in standard database format (not encrypted) as this is necessary for authentication and email communication. Only your chat messages are encrypted.

2.2 Chat Data

All your chat messages and conversations are encrypted end-to-end using AES-256-GCM encryption on your device before being sent to Supabase. This means:

2.3 Usage Information

We collect the following usage data for billing and service operation:

This data is stored in Supabase to calculate your usage and billing. We do NOT store the actual message content in these logs - only the token counts and metadata.

We do NOT collect: Device information, operating system details, app version, platform type, error logs, crash reports, or analytics data.

2.4 Third-Party AI Services

When you use AI features, your data is processed by specialized third-party services:

Important: Your prompts and AI responses pass through our API but are not stored in plaintext in Supabase (encrypted only). We recommend not sharing sensitive personal information in AI conversations.

3. How We Use Your Information

We use collected information to:

We do not sell your personal information to third parties.

We process your personal data on the following legal bases:

5. Data Security

We implement industry-standard security measures to protect your data:

6. Data Retention

We retain your data as follows:

We do not retain error logs, crash reports, or access logs in Supabase.

7. Your Rights

You have the right to:

To exercise these rights, contact us at [email protected] or use the in-app account settings.

8. Cookies and Tracking

Our website uses minimal cookies for essential functionality:

We do not use advertising cookies or third-party tracking scripts.

9. Children’s Privacy

Our Service is not intended for children under the age of 16. We do not knowingly collect personal information from children under 16. If you believe we have collected information from a child under 16, please contact us immediately.

In accordance with GDPR Article 8, users must be at least 16 years old to use our Service in the European Union.

10. International Data Transfers

Your data may be stored and processed in Supabase infrastructure located in different countries. We ensure appropriate safeguards are in place to protect your data in accordance with this Privacy Policy.

11. Third-Party Services

We use the following third-party services:

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by email or through the app. Continued use of the Service after changes constitutes acceptance of the updated policy.

13. Contact Us

If you have questions or concerns about this Privacy Policy or our data practices, please contact us:

Email: [email protected] Support: [email protected]