Privacy Policy - Hermes Agent App
Effective Date: August 18, 2026
Last Updated: August 18, 2026
1. Overview
This Privacy Policy outlines the privacy practices of [Hermes Agent App] ("we," "our," or "us") regarding our conversational AI application (the "Service"). We are built on a zero-retention, privacy-first architecture: we do not store your conversations on our servers, nor do we use your data to train AI models.
2. Core Privacy Principles
No Model Training: Your inputs, queries, uploaded files, and generated outputs are never used to train, retrain, fine-tune, or improve our base AI models or any third-party foundation models.
Zero Data Retention on Servers: We operate a stateless processing model. Prompts and outputs exist in memory only for the duration required to generate the response and are immediately discarded.
No Human Reviewers: Because conversations are not saved or logged on our infrastructure, human reviewers do not read, view, or annotate your prompts.
3. Information We Collect & Process
Transient Prompts & Inputs: Text, media, or files submitted during a session are processed in real time and wiped from server memory upon response delivery.
Local Device Storage: Your chat history is stored locally on your device (e.g., local storage, local SQLite database, or iCloud/Google Drive backup managed by your device). You maintain complete control over this data.
Technical Telemetry (Minimal & Anonymized): Crash logs, basic device diagnostics, and aggregate performance metrics. These logs contain no personal identifiable information (PII) or prompt text.
Account & Subscription Data (If Applicable): Email, account IDs, and transaction metadata managed by secure third-party payment processors (e.g., Apple In-App Purchases, Google Play, Stripe). We do not store raw payment card data.
4. How Information Is Processed
Generating Responses: Transmitting your prompt through secure, encrypted APIs strictly to generate immediate inference.
Safety & Abuse Prevention: Ephemeral, real-time automated screening to prevent severe platform abuse (e.g., malware delivery, illegal exploitation) without logging prompt contents to long-term storage.
5. Third-Party AI Processors & Infrastructure
To deliver AI responses, prompts are transmitted via encrypted connections (TLS 1.3) to enterprise-grade AI infrastructure providers bound by strict Zero Data Retention (ZDR) and Business Associate/Data Processing Agreements (DPAs). These upstream providers are contractually prohibited from retaining user prompts or using them for model training.
6. User Data Control & Deletion
Local Chat Deletion: Clearing your chat history or deleting the application immediately removes all conversational records from your local device.
Account Deletion: You can request complete account deletion at any time, which permanently removes your authentication record and subscription identifier from our systems.
7. Data Security
In-Transit Encryption: All API calls and model communications use modern cryptographic protocols (TLS 1.3 / HTTPS).
Stateless Operations: Sensitive data footprint is minimized by eliminating server-side prompt storage and databases.
8. Children’s Privacy
The Service is not intended for use by children under the age of 13 (or 16 in applicable jurisdictions). We do not knowingly collect personal data from minors.
9. Contact Us
For privacy questions, compliance inquiries, or rights verification:
Email: karmjeetofficial12@gmail.com