
Who Can Read AI Chats? Map Five Access Routes
Separate device access, shared links, character creators, staff and model providers. Use an access worksheet before sharing a sensitive detail.
Read guide + get worksheet →Know who can read your chats, how long your data stays, and what deletion actually removes.
Six practical guides and private worksheets. Policy excerpts, not a security ranking. No account needed.


Original AI-generated characters · Illustrations only
Choose your next step
Six focused guides, each with a downloadable worksheet. Start with the question that brought you here.

Separate device access, shared links, character creators, staff and model providers. Use an access worksheet before sharing a sensitive detail.
Read guide + get worksheet →
Use a six-category data ledger to distinguish personalization, logs, archives and media. Learn what a visible deletion can—and cannot—demonstrate.
Read guide + get worksheet →
An exit plan covering export checks, separate billing, retention triggers and incomplete confirmations, with a request log you can download.
Read guide + get worksheet →
Compare what a nickname, private browsing and no-sign-up access actually address. Review device traces, payment links and account recovery trade-offs.
Read guide + get worksheet →
Map the endpoint and each optional component before calling a setup local. Includes a configuration worksheet and a limited offline check.
Read guide + get worksheet →
Separate oversharing, account compromise, public links and provider incidents. Keep a minimal incident log and use the matching official support route.
Read guide + get worksheet →01 / Choose with context
Different questions. Different answers. Start with four policy findings—not an overall verdict on any app.
| Service | What the policy describes | Important limit | Evidence |
|---|---|---|---|
| Replika | Third-party models can process chats to generate replies. Their own training is contractually prohibited. | Internal improvement is separate. The up-to-60-day period for messages starts at contract termination; other categories and exceptions differ. | DocumentedPolicy §§ 2, 3, 6 ↗ |
| Nomi | Account deletion is described as taking about 28 days after confirmation. | Training and communications archives, plus legal exceptions, are addressed separately. | DocumentedPolicy §§ 4, 6 ↗ |
| Candy.ai | Training-data preparation may include human review of de-identified or anonymized interactions. | The policy’s 30-day debugging-log period is not a general chat-deletion promise. | DocumentedPolicy § 2 ↗ |
| CHAI | Processing may continue during the account’s lifetime and for up to five years after deletion. | Longer periods may apply for specified legal reasons. Account deletion is subject to retention obligations. | DocumentedRetention & deletion policy ↗ |
Swipe the table horizontally to see every column. “Documented” means stated in a source—not independently confirmed in the underlying systems.
Compare the same question across services. These four excerpts concern different policy fields and cannot support a privacy ranking. Before choosing, complete the access map and data ledger for each candidate. Price alone does not establish privacy.
02 / Check your companion
A passport.
Not a score.
These excerpts are not complete privacy reviews. Other fields still need a scoped assessment.
Kindroid and Character.AI: further research is planned in the supplied report. No findings are asserted here.
Account deletion · Policy §§ 4 and 6
AI processing · Policy §§ 2 and 3
Training and human review · Policy § 2
Retention and account deletion
Eight original fictional adult characters illustrate the guide. These are not app listings, live users or brand-specific avatars.
FICTIONAL AI
FICTIONAL AI
FICTIONAL AI
FICTIONAL AI
FICTIONAL AI
FICTIONAL AI
FICTIONAL AI
FICTIONAL AI03 / Understand access
Start with a more useful question: private from whom? Check each audience separately in the app's documentation.
Can someone see a shared link, notification preview, public post or conversation on your device?
Check visibility and sharing.
Does the provider explain what a character’s creator can access? Keep this separate from employee access.
Check the creator’s actual role.
What do the rules say about support, moderation, contractors and other human access to content?
Check the conditions of access.
Ask what is protected, against whom, and at which stage. Do not replace a specific explanation of chat access with a single encryption badge.
Prepare questions for the providerLook for an explanation of which messages are included, who receives the report and how long that material is retained. A brand-specific answer needs a source for that workflow.
04 / Follow the data
Keep these three questions on separate lines in your privacy passport.
What conversations are stored? What happens to that category when you delete a visible chat?
What information is kept for personalization? Is there a separate control for reviewing or removing it?
Which uses are described for internal and third-party models? What does any opt-out actually cover?

A conversation, a remembered detail, a training example: ask about each one.
Anika · AI-generated illustration, not a service-specific avatarA useful retention answer needs
a data category + a starting event.
05 / Leave with a plan
Start with what you want to keep. Then define what you want removed. This is a planning checklist—not a tested instruction for every app.
Identify what you need to save. Check whether the export includes chats, media and memory.
Separate chat history, saved memory and account data. Check subscription cancellation separately.
Find the documented deletion control or verified request channel. Keep the request reference.
Record what was confirmed, which exceptions remain and when the stated period ends.

Keep what matters. Be specific about what you want removed.
Ren · AI-generated illustration
Fictional AI characterNo sign-up.
≠
No logs.
06 / Everyday privacy
“No sign-up” and “no logs” are different claims to investigate.
Use the review checklist07 / Look beyond the interface
A local interface does not by itself establish local processing. SillyTavern, for example, supports connections to local and cloud models.
For your setup, check the selected model endpoint and each enabled voice or image component. The diagram is a list of checkpoints, not a tested app configuration.
Read SillyTavern's API documentation
Map your configuration
08 / Know the scope of your rights
Your location and the business involved matter. A California-specific right is not automatically a right for every US user.
The CCPA provides specified rights for California residents in relation to covered businesses, with exceptions. Start with the official explanation.
California Attorney General: CCPA ↗This template does not determine legal eligibility or a statutory deadline. Ask the provider which process applies to your request.
Prepare a general information request09 / When something has already happened
Start with the situation you need to understand. You do not need to paste personal conversations into this site.
Clarify which data categories are involved and what the provider says about removal.
Draft scope questions →Find the app's official account-recovery and support process. A data request is not an account-recovery tool.
Find the provider's source →Check the product's shared-link controls and who may have received the conversation.
Review visibility questions →10 / Evidence, not a confidence trick
An answer and the strength of its evidence are different things. These labels describe evidence—not safety scores.
Stated in an official source. Not independently verified in the service’s infrastructure.
Observed in a defined test. The platform, date and limits still matter. No such tests are claimed here.
No clear answer found in the sources checked. This does not mean “definitely unsafe.”
The checked sources disagree. Show the disagreement rather than silently choosing an answer.
This edition: four documentary excerpts checked against official policies on . No in-app deletion tests, infrastructure audits, verified prices or overall privacy ratings. “Not assessed” means a field has not been reviewed; it is not the same as “Not disclosed.”
Record the claim, data category, exceptions, source URL, policy date, check date, platform and evidence status. When something changes, explain the change and its limits before updating the comparison.
source_url · policy_date · checked_at · platform · data_category · claim · exceptions · evidence_statusThis guide does not assign privacy scores or claim infrastructure tests. Policy findings are linked to official sources; practical scenarios are illustrative. Commercial links are separate from those findings. A changed policy sentence does not prove a technical change in the service.
All character portraits in this edition are AI-generated illustrations. Names and ages describe fictional adult characters; they do not represent live users, service endorsements or official app avatars.
11 / Turn a question into a next step
Prepare a plain-language draft. Review it, add account details through a verified channel, and send it yourself.

Missing a clear answer? Ask a clear question.
Clara · AI-generated illustration · The builder prepares text, not an automatic request.