Privacy Policy

Last updated:

In short: the openheim app has no account, no analytics, no advertising and no tracking. Your conversations, settings and API keys are stored on your device. They are sent only to the AI model provider, openheim server or tools that you set up yourself. I don't receive them.

Who this policy is from

The openheim app (for Android, iOS, macOS, Windows and Linux) is published by Martin Petkov, Bulgaria. For privacy questions, write to [email protected].

This policy covers the openheim app, the update and download service at downloads.openheim.io, and this website, app.openheim.io.

What the app does with your data

openheim is a client for an AI agent. To work, it has to send your messages to an AI model. Which model, and where, is entirely your choice:

  • Model providers. If you add a provider (for example Anthropic, OpenAI, Google Gemini, DeepSeek, OpenRouter, or any other compatible endpoint) with your own API key, your messages, attached images, conversation history and the results of tools the agent runs are sent to that provider to generate replies.
  • Your own openheim server. If you connect the app to an openheim server, the same data is sent to that server, which you or your organisation run.
  • Tools and MCP servers. If you add MCP servers, the agent sends them the inputs for the tools it calls, and their results come back into the conversation.
  • Memory. If you configure an embedding provider for long-term memory, notes the agent saves are sent to that provider to be indexed. Without one, memory search runs locally.

I don't operate these services, and I don't see, store or control what you send to them. Each one handles your data under its own terms and privacy policy, so read the policies of the providers you use.

What is stored on your device

The app stores your conversations, files the agent creates, saved memory, skills, settings, and the API keys and access tokens you enter, in the app's own data folder on your device. On desktop, this is the same ~/.openheim folder the openheim command-line tool uses.

API keys and tokens are currently stored as plain text in that folder. On Android and iOS, the operating system keeps the folder private to the app. On desktop, it's readable by your user account, like other files you own.

You can delete any conversation in the app. Uninstalling the app (or deleting its data folder on desktop) removes everything. I have no copy and can't recover it.

What the agent can do on your device

The agent acts on your instructions. It can read and write files inside its working folder, and on desktop it can run shell commands. It asks for your permission before running tools, unless you have chosen to always allow them. Whatever a tool returns becomes part of the conversation and is sent to your model provider with your next message.

Updates and downloads (desktop only)

The desktop app checks downloads.openheim.io for new versions. Each check sends the app's current version, your operating system and your processor architecture. When you download the app or an update, the server counts downloads per file.

Like any web server, it receives your IP address with each request. It uses the IP address only to deliver the response and to keep the service secure. Server logs are deleted after at most 30 days. The legal basis is my legitimate interest in delivering updates and running the service securely (GDPR Art. 6(1)(f)).

The service is served through Cloudflare, which receives each request first to protect the server from abuse and deliver files faster. Cloudflare processes your IP address and request details on my behalf, under its data processing agreement and privacy policy. Cloudflare may process this data outside the EU; such transfers are covered by the EU-US Data Privacy Framework and standard contractual clauses.

The Android and iOS apps don't contact this service. Their updates come from Google Play or the App Store.

This website

app.openheim.io is also served through Cloudflare, as described above. In addition:

  • Visitor statistics. The website uses Cloudflare Web Analytics to count page views, referrers, and browser and country breakdowns. It doesn't use cookies, doesn't fingerprint your device, and doesn't track you across sites. I only see aggregated numbers. The app itself contains no analytics.
  • Bot protection. Cloudflare may set a cookie named __cf_bm to tell people from automated traffic. It's strictly necessary for protecting the site, expires after 30 minutes, and isn't used for tracking.
  • Latest release. The download page asks downloads.openheim.io for the newest version, so your browser makes the request described under "Updates and downloads".

The legal basis is my legitimate interest in running, protecting and understanding the use of the website (GDPR Art. 6(1)(f)).

App stores

If you install the app from Google Play or the App Store, Google or Apple process data about your installation under their own privacy policies. They may give me aggregated, non-identifying statistics such as install counts and crash reports, depending on your device settings.

What I don't do

  • No account or sign-in.
  • No analytics, advertising or tracking SDKs in the app.
  • No selling or sharing of personal data.
  • No access to your conversations, files, API keys or servers.

Children

The app is not directed at children under 16, and I don't knowingly process children's data.

Your rights

Under the GDPR, you have the right to access, correct or delete personal data about you, to restrict or object to its processing, and to data portability. In practice, the only personal data I could hold is the IP address in update server logs, kept for at most 30 days. To use any of these rights, write to [email protected].

You can also complain to a data protection authority. In Bulgaria, this is the Commission for Personal Data Protection (cpdp.bg).

Changes to this policy

If this policy changes, I'll update this page and the date at the top. If a change affects how your data is handled in a significant way, I'll mention it in the app's release notes.