Privacy Policy

Overview

LetsChat is built privacy-first. We don't require accounts, we don't sell data, and we don't use anyone's information for advertising. Conversations stay on the device. This policy explains exactly what we do and don't collect.

What We Don't Collect

What We Collect, and How

On-Device Storage

All conversation history, user profiles, and settings are stored locally on the user's device using Core Data and UserDefaults, protected by iOS file protection (complete protection level). Consent records are stored in the iOS Keychain. This data is not accessible to LetsChat or any third party.

AI Conversations

When users chat with AI characters, the conversation is processed in real time by our AI provider (OpenAI) through a secure Firebase Cloud Function proxy. Here is exactly what is sent:

For users under 13, these messages contain no information identifying the child. Nothing sent to the AI is stored by LetsChat on any server, and our providers never use it to train their models. The app explains this and asks for agreement during setup, before the first chat begins.

Text-to-Speech

When using premium voice features, the words in each message are sent to ElevenLabs through a secure Firebase Cloud Function proxy for speech synthesis. Audio is cached locally on the device for performance. LetsChat does not store any conversation content on its servers, and ElevenLabs never uses the text to train its models.

Firebase Anonymous Authentication

LetsChat uses Firebase Anonymous Authentication and App Check solely to secure communication between the app and our cloud functions and to prevent abuse. These create a temporary, anonymous identifier used only for these internal operations — it is not used to profile or track users, and no personal information is linked to it.

Crash Diagnostics

We use Firebase Crashlytics to collect crash reports and stability diagnostics so we can find and fix problems. This is used solely to keep the app working and is never used to profile, advertise to, or track users — including children.

Parent & Guardian Email

We collect a parent or guardian email only to record permission for a child under 13 and, if the parent opts in, to send product updates and TestFlight invites. We keep opted-in emails until you ask us to delete them, and we never share them for advertising. To review or delete this information, contact us (see below).

Therapist Early Access Signups

If a therapist provides their email address through our website signup form, that email and selected role are stored in Firebase Firestore for the sole purpose of early access communication. We never share this information with third parties.

Children's Privacy

LetsChat is designed for non-verbal and cognitively-impaired communicators, including children under 13, and we built it so that no information identifying your child ever leaves their device:

During setup for a child under 13, we show a notice to a parent or guardian and ask them to confirm permission. A parent or guardian should set up and operate the account. To review, delete, or withdraw any optional consent, contact us at the email below.

Data Security

All data transmitted between the app and our cloud functions is encrypted using HTTPS/TLS. API keys and secrets are stored server-side in Firebase Cloud Secrets and are never included in the app binary.

Changes to This Policy

We may update this privacy policy from time to time. Any changes will be posted on this page with an updated revision date.

Contact

If you have questions about this privacy policy, or to review or delete your information, please contact us at hello@letschataac.com.