Draft for review — not yet legally reviewed or approved. Highlighted items are missing business details.
Privacy Policy
This policy explains what 0l0l0 collects when you use the 0l0l0 web app and iOS app, where it is stored, who receives it, and the choices you have. We have tried to describe what the product actually does, including the parts that are less convenient to say.
Who we are
0l0l0 is operated by Sadralddin Azizitorkanpoor, an individual based in Dubai, United Arab Emirates Missing: full postal address, if required. Questions about this policy or your data: support@0l0l0.ai.
What we collect
Account information
- Your email address and name, from sign-up or from the Google or Apple account you sign in with (Apple may give us a private relay address). A profile picture address if your Google account provides one.
- Your password is handled by our authentication provider; we never see it in plain text.
- Your plan and subscription status, and the identifiers Apple sends us for your App Store purchases (we never receive your card details).
What you send to 0l0l0
- Messages, attachments (images, PDF and Word files), voice, and the instructions you give a workspace.
- Missions, deliverables, comments and files you create in the app, and notes you save to Memory.
- Data from accounts you choose to connect (see “Connected accounts”).
Usage and technical information
- Usage counts per feature (for example, how many messages or images you used) to apply your plan’s limits.
- Cost and accounting records for each request: which AI model or service was used, token, image or audio-second counts, time and outcome. These records do not contain your message text.
- Your device’s time zone, so answers about dates and times are correct.
- Limited diagnostics: Voice session timing and step records (never transcripts), and app launch timings with your device’s user-agent string.
What we do not collect: we do not use your device’s GPS or precise location (places come only from what you type), and we do not use advertising, tracking or third-party analytics tools.
Where your data is kept
On your device. Your conversation history and attachment previews are stored in your browser or app storage on the device you use, not on our servers. Each request sends the relevant part of the conversation to our servers so the AI can answer, and that text is passed on to the AI provider (see below). Signing out does not erase conversations already on that device; deleting a chat removes it from that device.
On our servers. Some information is stored on our servers because features depend on it:
- Memory: facts the assistant learns from your messages (such as your name, city, job or preferences) and things you ask it to remember or save. When you ask 0l0l0 to forget something, it is never used again, but the record is kept, marked as removed — memory text cannot currently be erased (see “Deleting your account”).
- Uploaded PDFs: the extracted text of your most recent PDFs (up to 8 files) so you can keep asking about them. PDFs attached in Secret Chat are not stored.
- Recent project tasks: the text of up to your 50 most recent “work” requests, so 0l0l0 can continue a task. Not stored in Secret Chat.
- Actions you ask for: when you ask 0l0l0 to act (for example create a file, or draft and send an email in a connected account), the request and the drafted content are kept with the queued action and its approval, so you can review and approve it. Our audit log records only that an action was requested and its outcome, not your words. Actions are not available in Secret Chat.
- Multi-Model answers: excerpts of the individual model answers and their comparison. Your prompt is not stored with them. Not stored in Secret Chat.
- Workspaces, missions, deliverables, comments and workspace files you create.
- Connected-account excerpts and encrypted access tokens (see “Connected accounts”).
- Usage counts, cost records and subscription records described above.
- Your choice about sharing with AI providers: whether you allowed or withdrew it, the version of the notice, and when.
Our database (Supabase) and our server functions (Vercel) run in Singapore.
How we use it
- To answer your requests and run the features you use, including choosing which AI model handles a request.
- To apply plan limits, prevent abuse, and protect the service from unusual cost or traffic.
- To process and restore purchases and manage your subscription.
- To provide support when you contact us, and to keep the service secure and working.
We do not sell your personal information, we do not use it for advertising, and we do not use your content to train AI models of our own.
Who receives your data
0l0l0 relies on other companies to work. They receive only what is needed for the feature you use:
Your permission comes first. Before 0l0l0 sends anything to an AI provider, the app shows a one-screen notice that lists what is sent, which providers receive it, why, and how long they say they keep it, with a link to this policy. Until you choose Allow, chat, Voice, dictation, read-aloud, attachments, image, video and document features send nothing to AI providers; the rest of the app (settings, your account, billing, help) keeps working. Your choice is saved with your account, together with the version of the notice and the time. When we add an AI provider or change what we share, we ask again. You can withdraw your permission at any time in Settings → Data Controls → Sharing with AI providers: from then on nothing more is sent until you allow it again, and data already sent stays with each provider under its own terms.
- AI model providers — OpenAI, Anthropic, Google (Gemini), Groq and DeepSeek — receive your message, the relevant conversation history, workspace instructions, relevant Memory, the text of attached documents and any search results needed to answer. Auto chooses a provider for each request, and Multi-Model sends the same request to several of them at once. Chat titles are written from your first messages by OpenAI, or by Groq if OpenAI is unavailable. Images you attach are sent to OpenAI, Anthropic or Google for analysis; image creation and editing use OpenAI. Videos you attach are not uploaded as a file: still frames sampled from the video (up to 90 still images) and its audio track pass through our servers, in memory only, to Google (Gemini) — and, for the frames, to OpenAI or Anthropic when you choose those models; if Gemini is unavailable, the audio is transcribed by OpenAI instead. We do not store the frames, the audio or the transcript; the provider processes them under its terms, as described below. This also applies in Secret Chat, where we keep no preview or history of the video. To confirm: the Gemini project is on the paid tier (Cloud Billing linked) — on the unpaid tier Google may use content to improve its products and humans may review it Voice conversations stream your audio directly from your device to OpenAI; dictation and read-aloud also use OpenAI. Under their published API terms (October 2026), OpenAI, Anthropic, Groq and paid-tier Google Gemini do not use API data to train their models by default, and may keep it for a limited time for abuse monitoring — for example up to 30 days (OpenAI, Anthropic, Groq) or 55 days (Google Gemini). DeepSeek processes data in China and does not publish a retention period. To confirm: account-specific settings — zero-data-retention status with each provider, Gemini paid tier (billing enabled), and whether DeepSeek stays in the launch routing
- Search and live data — Tavily, Brave Search and DuckDuckGo (web search), Google Maps Platform (places, place photos and maps), Open-Meteo (weather), and Finnhub, Alpha Vantage and CoinGecko (market data) — receive the search terms or place names needed to answer.
- Infrastructure — Supabase (accounts and database) and Vercel (hosting). Resend delivers our account emails, such as sign-up confirmation and password reset, and receives the email address they are sent to.
- Payments — Apple processes App Store purchases. To confirm: whether web purchases through Stripe are offered at launch
- Connected services — Google and GitHub, only when you connect them.
- Email — our support mailbox is hosted by Microsoft; sign-in and password emails are sent by our authentication provider.
We may also disclose information when the law requires it, or to protect our users or the service. To confirm: business-transfer clause and any other disclosures
Connected accounts
If you connect Google (Gmail, Calendar, Drive) or GitHub, you choose read access or read-and-write access on the provider’s consent screen. Read access lets 0l0l0 bring relevant items into your answers; write access lets it draft, send, create or change items when you ask, with an approval step for sensitive actions.
To answer from these accounts, 0l0l0 stores short excerpts on our servers: email subject, sender and a short snippet; contact names and email addresses; calendar event titles, times, locations and attendees; Drive file names; and GitHub repository, issue and pull-request titles. Access tokens are stored encrypted. Content read from these accounts is also sent to the AI providers when it is relevant to your request.
You can disconnect an account at any time; this deletes the stored access tokens. Excerpts already stored are not automatically removed. To confirm: Google API Services User Data Policy “Limited Use” statement once Google verification scope is final
Secret Chat
Secret Chat is not saved to your device’s history, does not use or add to Memory, and stores nothing on our servers: a PDF you attach is read for that session only and is not kept, and actions that would save or send something are not available. Your messages are still sent to the AI provider to be answered (under that provider’s terms), your workspace’s instructions still apply, and content-free usage, billing and security records are still kept.
How long we keep it
- Conversation history on your device: until you delete it or clear the app’s storage.
- Uploaded PDF text: your 8 most recent PDFs. Recent project tasks: your 50 most recent.
- Memory, action records, usage and cost records, and subscription records: for as long as your account exists. Some of these records are designed to be permanent audit records and are marked as removed rather than erased.
- After you delete your account: see “Deleting your account”. Missing: retention period for backups held by our providers, if any
Your choices and rights
- Delete a chat from your device, or use Secret Chat for conversations you do not want saved.
- Ask 0l0l0 to forget something, or manage Memory in Settings (forgotten items are never used again; they are marked as removed rather than erased).
- Allow or withdraw sharing with AI providers at any time: Settings → Data Controls → Sharing with AI providers. Withdrawing stops anything more from being sent; it does not recall data a provider already received.
- Disconnect connected accounts at any time.
- Delete your account in the app: Settings → Data Controls → Delete account. You can also ask us to access, correct or export your personal information by emailing support@0l0l0.ai. To confirm: response time you commit to for privacy requests
- Manage or cancel an App Store subscription in your Apple ID settings.
Depending on where you live, you may have additional rights, including the right to complain to a data-protection authority. To confirm: countries served and the rights statements they require (for example GDPR, UK GDPR, CCPA/CPRA)
Deleting your account
Settings → Data Controls → Delete account deletes your account. It asks you to confirm by typing DELETE, and it is only reported as done once every step has finished; if something fails, nothing is reported as deleted and you can try again.
- Deleted: your sign-in account (your email address is removed from it), your profile, connected accounts (we also ask Google or GitHub to revoke our access), connected-account excerpts, saved PDF text, recent project tasks, voice diagnostics, deliverables and comments, workspaces only you use, usage counts, your AI-sharing choice, the link to a web subscription, and the conversations and attachments stored on the device you delete from.
- Stopped: anything scheduled or queued for you is cancelled, pending approvals are withdrawn, and your memberships in other people’s workspaces end.
- Redacted: mission titles and descriptions, Multi-Model answer excerpts, and comments you left on other people’s missions.
- Erased: your missions and their history (plans, events, decisions, constraints and snapshots) are deleted, and the text of your memory records is erased; an empty record marked as removed remains, with no content.
- Kept, no longer linked to any account: cost records and audit records, which contain no message text, and records of how tasks were run (execution, agent, tool and Multi-Model run logs). To confirm: task-run records kept after deletion can contain task details (for example Multi-Model run summaries and tool targets) — decide whether to erase them at deletion or describe them here; verify before final
- Shared workspaces you own stay available to their other members.
- If you signed in with Apple, deletion also asks Apple to revoke 0l0l0’s access to your Apple ID.
- Deleting your account does not cancel an App Store or web subscription — cancel it in your App Store settings (or the web billing page) first if you don’t want to be charged again. An App Store subscription stays tied to the deleted account: it cannot be restored to a new 0l0l0 account, and once it has ended you can subscribe again from a new account. We keep Apple’s transaction identifiers (no name or email) so the subscription is never attached to another account.
- Conversations stored on other devices remain there until you delete them or sign out of 0l0l0 on those devices.
Security
Data is sent over encrypted connections (HTTPS), stored data is accessible only to the 0l0l0 service and the people who operate it, and connected-account tokens are encrypted at rest. No system is perfectly secure; please use a strong password and tell us about anything suspicious.
International transfers
Our servers are in Singapore and our providers operate in other countries, including the United States (and China, for DeepSeek). Your information may therefore be processed outside your country. To confirm: transfer safeguards to state
Children
0l0l0 is not intended for children. Missing: minimum age — note: Google’s Gemini API terms require users to be 18+ and forbid apps directed to or likely accessed by under-18s while Gemini is in the routing; the app does not currently check age
Changes and contact
We will update this policy when our practices change and show the date it was last updated. Contact: support@0l0l0.ai. Missing: postal address / data-protection contact if required
See also our Terms of Use.