HAI

Privacy Policy

Last updated: August 2026

This policy covers HAI Messenger and H AI. It's written to describe exactly what this software actually does with your data — most of it, by design, is very little.

The short version

HAI Messenger is end-to-end encrypted: messages, photos, documents, and voice notes are encrypted on your device before they're sent, and the server only ever stores and relays ciphertext it cannot read. H AI runs on a language model hosted on this same server — nothing you say to H is sent to an outside AI company.

Account information

When you create an account, we store:

Your encryption keypair is generated in your browser at signup. The private key is never sent to the server.

Messages and media

Every message, photo, voice note, and document is encrypted on your device with a hybrid RSA-OAEP-2048 + AES-256-GCM scheme before it ever leaves your device. The server stores and forwards this ciphertext along with routing metadata it needs to deliver it — who it's for and when it arrived — but it does not hold the keys required to decrypt the content itself.

Nearby chat

Nearby is anonymous by design: no account identity is attached to a Nearby conversation, and the entire thread self-destructs and is deleted after 24 hours. Because it's anonymous, we have no way to verify who you're actually talking to — use it at your own discretion.

H AI

H currently runs on Google's Gemini API — the text of your messages to H is sent to Google for processing, subject to Google's own privacy practices. This is an interim setup; the plan is to move H back to a locally-hosted model so messages stay on this infrastructure and this page will be updated when that happens. Conversations with H are not stored server-side beyond the current session needed to hold a conversation. If you teach H a word or phrase it doesn't recognize, that's saved only in your own browser's local storage — never synced to a server or shared with other visitors.

Other data we process

Cookies

HAI Messenger uses a single essential session cookie to keep you signed in. It's httpOnly (not readable by page scripts) and contains no tracking identifiers. There are no third-party advertising or analytics cookies.

Your rights

You can delete your account at any time from Settings. This removes your account record and associated data from the server. Because messages are end-to-end encrypted, you're also the only one who can decrypt your own message history in the first place — deleting your account or clearing your browser's local storage removes your local copy.

Children's privacy

This service isn't directed at children, and we don't knowingly collect information from anyone under the age required by local law to consent to data processing (13 in most jurisdictions, higher in some). If you believe a child has created an account, contact the operator so it can be removed.

Changes to this policy

If this policy changes in a meaningful way, the "last updated" date above will change along with it. Continued use of the service after an update means you accept the revised policy.

Contact

Questions about this policy or your data can be sent to the address listed on the site operator's contact page, or via the account settings screen.