1. Information We Collect
1.1 Account & authentication information
- Email address and password when you register or sign in with email.
- Guest accounts created using a device-linked identifier (see Section 1.2).
- Time zone offset sent at login to provide correct time-related features.
We do not currently offer sign-in with Google or Apple ID in the App. If we add such options in the future, we will update this policy before they become available.
1.2 Device identifiers (important)
To secure accounts, prevent abuse, and support guest login, the App generates and uses a pseudonymous device identifier (“Device ID” / deviceNo):
- A random installation-level UUID stored in secure storage on your device (Keychain on iOS, encrypted storage on Android).
- On iOS, Identifier for Vendor (IDFV) may be used only as a technical input when first creating the Device ID; we do not use IDFA or other advertising identifiers for login.
- On Android, we do not use IMEI, MAC address, or hardware serial numbers as your login identifier. System identifiers may be used only as technical inputs when first creating the Device ID.
The Device ID is sent to our servers when you log in (email or guest) and may be associated with your account for as long as your account exists.
Purpose: account creation and login, fraud prevention, session security, and guest account recovery on the same installation.
Legal basis (EEA/UK users): performance of our contract with you and legitimate interests in securing the App.
1.3 Payment & purchase information
- In-app purchase product identifiers, transaction references, and verification data processed through Apple App Store or Google Play.
- We receive purchase confirmation from our payment validation process; we do not store full payment card numbers.
When you complete an in-app purchase, we may send limited device and attribution identifiers to our servers together with your purchase receipt (for example Adjust device ID, and on Android Google advertising ID where available, and on iOS vendor identifier where available). We use this only to validate purchases, prevent fraud, and match conversions to our advertising measurement partners. We do not use chat content or your email for this purpose.
1.4 Chat & AI interaction data
- Messages and related metadata you send in AI chat sessions, used to provide and operate AI companion features, maintain conversation history, and improve reliability and safety of the service.
- We treat chat content as sensitive. Do not share information you do not want processed by our systems.
Unless we state otherwise in-product, chat content is used to deliver the service to you and for operational purposes (e.g., moderation, abuse prevention, debugging). Contact us if you have questions about model training or human review practices for your deployment.
1.5 Usage, analytics & diagnostics (optional)
If you agree to our Terms and Privacy Policy on the login screen (and where applicable, grant analytics consent), we may collect:
- App events (e.g., screens, feature usage) via Google Firebase Analytics and, where enabled, conversion events via Adjust.
- Crash and error reports via Google Firebase Crashlytics.
Adjust (mobile measurement & attribution)
If you accept our Terms and Privacy Policy, we may also use Adjust GmbH (“Adjust”) to measure whether the App was installed or used after viewing our ads, and to report aggregated conversion events (for example in-app actions such as sending messages or initiating a purchase). Adjust may receive:
- An Adjust-specific device identifier (ADID)
- On Android: Google advertising ID (GAID), where available and permitted
- On iOS: Identifier for Vendor (IDFV) for attribution support; we do not use IDFA or show the App Tracking Transparency prompt in the current App version
- App and transaction metadata needed for fraud prevention and purchase validation
Adjust is enabled only after you consent on first launch or on the login screen. Purchase revenue for advertising optimization is reported to Adjust by our servers after receipt validation (server-to-server), not from chat content.
Legal basis (EEA/UK): consent where required; otherwise legitimate interests in measuring and improving our advertising and product performance.
You can withdraw analytics/crash consent by contacting us or, where available in the App, through privacy settings. We configure analytics to be off by default until you accept the policy on login.
We do not sell your personal information. Analytics data is used for product improvement and stability.
1.6 Customer support
Information you provide when contacting support (email, feedback, issue descriptions).
1.7 Technical data
- Device type, OS version, app version, language, and general network information (e.g., IP address processed by our servers for security and delivery).
- App metadata (for example app version/build number) and local diagnostic metadata needed for reliability.
2. How We Use Information
- Provide AI chat and companion features.
- Authenticate users and maintain accounts (including guest accounts).
- Process in-app purchases and deliver virtual currency (“Candy”).
- Secure the App, detect fraud and abuse.
- Provide customer support.
- Measure and improve performance (with consent where required).
- Comply with legal obligations.
3. How We Share Information
We do not sell or rent your personal data. We may share information only with:
- Service providers under contract (cloud hosting, AI inference providers, payment validation, Google Firebase for analytics/crash diagnostics when enabled, Adjust GmbH for mobile attribution and aggregated advertising measurement (when you have consented), Meta Platforms (Facebook) for ad delivery and install attribution, in connection with Adjust and our advertising campaigns (see Meta’s Privacy Policy)).
- Legal authorities when required by applicable law, court order, or lawful government request.
- Business transfers in connection with merger, acquisition, or asset sale (with notice where required by law).
4. International transfers
Our servers and providers may be located outside your country. Where required, we implement appropriate safeguards for cross-border transfers (e.g., standard contractual clauses).
5. Retention
We retain information only as long as necessary for the purposes above, including:
- Account data: while your account is active and for a limited period after deletion for backup, fraud prevention, and legal compliance.
- Chat data: according to our operational and legal requirements; you may request deletion (see Section 7).
- Device ID: while linked to an active account or as needed for security logs.
- Analytics/crash data: per Google Firebase retention settings and our configuration.
6. Security
We use technical and organizational measures (encryption in transit, access controls, secure storage for tokens and Device ID on device). No method of transmission or storage is 100% secure.
7. Your rights & choices
Depending on your location, you may have the right to:
- Access or receive a copy of your personal data.
- Correct inaccurate data.
- Delete your account and associated data — in the App: Profile → Delete Account, or email us.
- Withdraw consent for optional analytics/crash collection.
- Object to or restrict certain processing (EEA/UK).
- Lodge a complaint with your local data protection authority (EEA/UK).
California (CPRA): We do not sell personal information. You may exercise know/delete/correct rights by contacting us.
We will respond within the timeframe required by applicable law (typically within 30 days).
8. Children’s privacy
The App is intended for users 18 years and older only. We do not knowingly collect personal information from anyone under 18. Contact us if you believe a minor has provided data.
9. Third-party services & links
The App uses third-party SDKs, platform services, and stores, including but not limited to:
- Apple App Store / Google Play (in-app purchases and billing flows)
- Google Firebase Analytics (optional analytics, consent-based)
- Google Firebase Crashlytics (optional crash diagnostics, consent-based)
- Adjust SDK (attribution and event measurement, consent-based): Adjust Privacy Policy
- Meta / Facebook (advertising and, on Android, install referrer data used for attribution when you interact with our ads): Meta Privacy Policy
- Platform and plugin capabilities for app metadata, secure local storage, URL opening, and embedded web content display.
Their practices are governed by their own policies. In-app purchases are subject to Apple/Google terms.
10. Changes to this policy
We may update this Privacy Policy at any time. We will publish the updated version at:
https://bondie.lingjf.top/privacy-policy/
and update the “Last updated” date. Material changes may be notified in the App where required by law. Continued use after the effective date constitutes acceptance where permitted by law.
11. Contact us
Hong Kong Broadvision Cultural Technology
Email: broadvisiono@outlook.com
Privacy Policy URL: https://bondie.lingjf.top/privacy-policy/
Terms of Use URL: https://bondie.lingjf.top/use-policy/