Privacy Policy
Last updated: July 2026
Overview
LetsChat is built privacy-first. We don't require accounts, we don't sell data, and we don't use anyone's information for advertising. Conversations stay on the device. This policy explains exactly what we do and don't collect.
What We Don't Collect
- Your child's voice — LetsChat reads messages aloud, but never records or transmits audio of your child.
- Free-typed personal details — children communicate by tapping pictures, emoji, and suggested replies. There is no keyboard in a child's chat, so a child cannot type a real name, address, or phone number to the AI.
- Location data.
- Advertising identifiers, cross-app tracking, or behavioral profiles.
- Conversation content on our servers — chats are stored only on the device.
What We Collect, and How
- Screen name. Each user can pick a screen name (a nickname) — it's optional, and setup works without one. It is stored only on the device. For users 13 and older, it is sent with their AI chats along with their pronouns so the AI can respond naturally (see "AI Conversations"); if no screen name was entered, none is sent. For users under 13, the screen name is never sent to our AI providers.
- Parent or guardian email. During setup for a child under 13, we ask a parent to confirm permission; that acknowledgment is stored securely on the device (in the iOS Keychain). If a parent also opts in to product updates and TestFlight invites, we store their email on our servers (Firebase) until they ask us to delete it.
- Crash diagnostics. We use Firebase Crashlytics to collect crash and stability data so we can fix problems. It is used only to keep the app working — never to profile or track users.
- Anonymous security identifier. See "Firebase Anonymous Authentication" below.
On-Device Storage
All conversation history, user profiles, and settings are stored locally on the user's device using Core Data and UserDefaults, protected by iOS file protection (complete protection level). Consent records are stored in the iOS Keychain. This data is not accessible to LetsChat or any third party.
AI Conversations
When users chat with AI characters, the conversation is processed in real time by our AI provider (OpenAI) through a secure Firebase Cloud Function proxy. Here is exactly what is sent:
- The messages in the chat — the suggested replies, pictures, and emoji the user taps. There is no keyboard in chat, so messages are always chosen, not typed.
- Screen name and pronouns — so the AI can respond naturally. A child under 13's screen name is never sent, and if no screen name was entered none is sent.
- Reading level — so the AI can write at a level the user understands.
- The character and scenario for the chat — including any custom characters or scenarios a caregiver has created in the app.
For users under 13, these messages contain no information identifying the child. Nothing sent to the AI is stored by LetsChat on any server, and our providers never use it to train their models. The app explains this and asks for agreement during setup, before the first chat begins.
Text-to-Speech
When using premium voice features, the words in each message are sent to ElevenLabs through a secure Firebase Cloud Function proxy for speech synthesis. Audio is cached locally on the device for performance. LetsChat does not store any conversation content on its servers, and ElevenLabs never uses the text to train its models.
Firebase Anonymous Authentication
LetsChat uses Firebase Anonymous Authentication and App Check solely to secure communication between the app and our cloud functions and to prevent abuse. These create a temporary, anonymous identifier used only for these internal operations — it is not used to profile or track users, and no personal information is linked to it.
Crash Diagnostics
We use Firebase Crashlytics to collect crash reports and stability diagnostics so we can find and fix problems. This is used solely to keep the app working and is never used to profile, advertise to, or track users — including children.
Parent & Guardian Email
We collect a parent or guardian email only to record permission for a child under 13 and, if the parent opts in, to send product updates and TestFlight invites. We keep opted-in emails until you ask us to delete them, and we never share them for advertising. To review or delete this information, contact us (see below).
Therapist Early Access Signups
If a therapist provides their email address through our website signup form, that email and selected role are stored in Firebase Firestore for the sole purpose of early access communication. We never share this information with third parties.
Children's Privacy
LetsChat is designed for non-verbal and cognitively-impaired communicators, including children under 13, and we built it so that no information identifying your child ever leaves their device:
- We never record your child's voice.
- Your child communicates by tapping pictures, emoji, and suggested replies — there is no typing, so they can't share personal details.
- Your child's screen name stays on the device and is never sent to our AI or voice providers.
- Conversations are saved only on the device.
- Messages processed by our AI providers contain no information identifying the child, and are not used for training.
- The only technical data that leaves the device is an anonymous security identifier and crash diagnostics, used solely to keep the app secure and working — never to profile, advertise to, or track your child.
During setup for a child under 13, we show a notice to a parent or guardian and ask them to confirm permission. A parent or guardian should set up and operate the account. To review, delete, or withdraw any optional consent, contact us at the email below.
Data Security
All data transmitted between the app and our cloud functions is encrypted using HTTPS/TLS. API keys and secrets are stored server-side in Firebase Cloud Secrets and are never included in the app binary.
Changes to This Policy
We may update this privacy policy from time to time. Any changes will be posted on this page with an updated revision date.
Contact
If you have questions about this privacy policy, or to review or delete your information, please contact us at hello@letschataac.com.