Liloo — Privacy Policy
Last updated: 2026-06-15 Contact: privacy@liloosafespace.com
This Privacy Policy explains what data the Liloo mobile application
(application ID com.liloosafespace.app) and the website at
liloosafespace.com process, for what
purposes, on what legal basis, with whom the data is shared, and how you
can control it.
What Liloo is. Liloo is a communication-skills training app. You hold a conversation with AI characters that play the role of difficult interlocutors (for example, a conflict-prone relative or an aggressive colleague) so you can safely rehearse handling tense situations. The app also includes a "Training" mode and audio meditations. For an AI character to reply, the text of your message is sent to our servers and to a third-party language-model provider (see Section 4).
1. Who processes your data (data controller)
The data controller is FOP Rudenko Yevheniia Yevhenivna (an individual entrepreneur registered in Ukraine), the developer and operator of the Liloo app.
For any privacy question, to exercise your rights, or to request deletion, contact:
Email: privacy@liloosafespace.com
2. Data we collect
| Category | Details |
|---|---|
| Account identifiers | An anonymous user identifier or your email address, depending on how you sign in. Authentication is handled by Firebase Authentication and supports anonymous sign-in, email/password, Google Sign-In, and Apple Sign-In. When you sign in with Google or Apple, we receive your name and email address from that provider. |
| Profile and avatar data | Details you provide about yourself and your interlocutor to set up a dialogue (e.g. gender, age, your role in the situation, a short situation brief), plus the name and settings of the AI character (avatar). |
| Conversation content | The text of the messages you type in your dialogue with an AI character, and the AI's replies. This is stored linked to your account. |
| Voice recordings and their transcripts | If you send a voice message, the microphone recording is uploaded and converted to text (transcribed). The resulting text is then processed like an ordinary text message. |
| Photos (camera / gallery) | An image you capture with the camera or select from your gallery for an avatar. It is uploaded to cloud storage and associated with your avatar. |
| Device push tokens and timezone | If you allow push notifications, we store your device's Firebase Cloud Messaging push token (in the push_tokens field on your account) and your device timezone (used to respect notification quiet-hours) so we can deliver notifications. |
| Technical and moderation logs | Technical data needed to run the service (such as conversation and message identifiers), and records of safety-system triggers and reports you submit. |
We do not access your contacts and we do not collect your location or an advertising identifier. The app requests permissions for the camera (avatar photo), the microphone (voice messages), and notifications (push) — each used only for that feature.
3. Purposes and legal basis
We process your data to:
- Provide the core feature — generate the AI character's replies to your messages, the "Training" mode, and meditations.
- Transcribe voice — convert your voice messages to text so the AI can respond.
- Store your avatars, dialogues and history — so you can continue sessions and track progress.
- Manage subscriptions — process in-app purchases and your subscription entitlement.
- Keep the service safe — detect crisis situations (e.g. mentions of self-harm), harmful or prohibited content, and attempts to bypass a character's safeguards, and handle reports you submit about AI replies.
- Send notifications — deliver push notifications where you have consented.
Legal basis — your consent. Processing is based on the consent you give by using the app and granting the relevant permissions (camera, microphone, notifications). You can withdraw consent at any time (see Section 6 and Section 7). Some processing is also necessary to provide the service you request.
4. Sharing with third parties (processors)
To run the app we use third-party providers that process data on our behalf. Your conversation content leaves your device and is processed by these services:
| Provider | What it processes |
|---|---|
| Google Firebase (Google LLC) | Authentication (Firebase Auth), the database of dialogues and profiles (Firestore), storage of avatar photos (Storage), and push notifications (Cloud Messaging). |
| OpenAI | Processing of your conversation text by a language model to generate the AI character's replies, and transcription of your voice messages into text (Whisper). |
| Mailjet (Sinch) | Delivery of transactional email, such as the password-reset email. Processes your email address. |
| RevenueCat (RevenueCat, Inc.) | Subscription and in-app purchase management. Processes your user identifier (Firebase UID) and purchase data. |
| DigitalOcean (DigitalOcean, LLC) | Hosting of the backend (the API at api.liloosafespace.com and the PostgreSQL database) that stores conversations, profiles, and moderation records. |
We do not sell your personal data. Sharing is limited to the processors above and to cases required by law.
Where your data is hosted and international transfers
The backend application and the primary database are hosted on DigitalOcean in London, United Kingdom (LON1 region).
Some processors operate on their own infrastructure, which may be located in the United States. In particular, Firebase (Google) and OpenAI process data on Google's and OpenAI's own infrastructure, which may be located in the United States. Where data is transferred internationally, such transfers rely on those providers' standard contractual safeguards.
Website analytics and cookies
The website at liloosafespace.com uses Google Analytics 4 (Google LLC) to understand how visitors use the site. Analytics cookies and any related storage are disabled by default — they are loaded only after you accept them in the cookie banner shown on your first visit. We run Google Consent Mode with advertising signals always denied: Liloo runs no ad campaigns, and nothing is shared with advertisers. You can decline analytics in the banner, and you can clear or block cookies in your browser at any time. The mobile app does not contain analytics or advertising SDKs.
5. Data retention
We keep your data only for as long as needed for the purposes above. The schedule below sets out how long each category is retained:
- Account, profile, avatar and device-timezone data — kept while the account is active; erased within 30 days after you delete your account.
- Conversations and messages — kept while the account is active; erased within 30 days after account deletion.
- Voice recordings — deleted immediately after transcription; the resulting transcript follows the conversation lifecycle above.
- Push notification tokens — kept until you disable notifications or delete your account.
- Purchase and subscription records — retained for up to 3 years after the transaction to meet accounting and tax obligations, even after account deletion, then erased.
- Server logs and diagnostics — up to 90 days. Backups are purged within 30 days.
When you delete your account, your data is removed as described in Section 6, except minimal records we are required to keep by law or to prevent abuse.
6. Account and data deletion
You can delete your account directly in the app: Profile → Delete profile.
On confirmation, the app records the deletion request (a to_delete marker)
and deletes your Firebase Authentication user. This automatically triggers a
server-side cascade cleanup:
- your dialogues and messages are deleted;
- your avatars and their associated storage files (including photos) are deleted;
- associated backend data (PostgreSQL) is purged.
If you cannot use the in-app option or want to confirm deletion, email privacy@liloosafespace.com.
7. Your rights
Depending on your jurisdiction (including under the GDPR) you have the right to:
- access your data and obtain a copy;
- correct inaccurate data;
- delete your data (see Section 6);
- withdraw consent you previously gave (including by revoking camera, microphone, and notification permissions in your device settings);
- restrict or object to processing;
- lodge a complaint with a data protection supervisory authority.
To exercise these rights, contact privacy@liloosafespace.com.
8. Reporting AI content
Liloo deliberately simulates verbal conflict, so AI replies may contain sharp lines and mild profanity by design — that is part of the training scenario. If an AI reply seems genuinely offensive or inappropriate, you can report it directly from within the app. The report reaches us and is used for moderation and to improve our safety systems.
9. Children and eligibility
You must be at least 17 years old to use Liloo. The app is rated 17+ (mature content) and is not directed to children. It contains simulated conflict content with mature, mild-profanity dialogue and is intended for an adult audience. If you believe a person under 17 has provided us with their data, email privacy@liloosafespace.com and we will delete it.
10. Security
All network traffic between the app and our services is encrypted in transit using HTTPS/TLS. Firestore access is governed by per-user, owner-based security rules, and the backend API uses token-based authentication. Data at rest is protected by the underlying infrastructure of our processors (Google Firebase and DigitalOcean).
11. Changes to this policy
We may update this Policy. For material changes we will update the date at the top of this page and, where appropriate, notify you in the app.
FOP Rudenko Yevheniia Yevhenivna (individual entrepreneur, Ukraine) · privacy@liloosafespace.com · Last updated 2026-06-15
