Ori Privacy Policy
Last updated: July 2026
About Ori
Ori (知几, "Zhi Ji") is a personal AI assistant app. It helps you with conversation, information lookup, and task automation through natural language. Ori operates in two modes:
- Ori Service mode — Ori's backend acts as a forwarding proxy, routing your requests to a third-party large language model (LLM) provider and managing your usage quota.
- BYOK mode (Bring Your Own Key) — You provide your own LLM provider API key. Requests go directly from your device to the LLM provider, bypassing Ori's backend entirely.
AI Data Sharing & Disclosure
Ori is powered by third-party artificial intelligence (AI) services. To generate responses and perform the actions you request, the app transmits certain data to these services. Before you first use any AI feature, Ori will display an in-app notice describing this sharing and will ask for your permission; if you decline, network-dependent AI features will be unavailable. The details below explain exactly what is shared, with whom, and why.
What data is sent
- Conversation content — The text you type, the images and voice input you provide, and the assistant's generated replies.
- Tool inputs — Device information needed to fulfill a request you make, such as approximate location and current date/time.
- Account & purchase data — An anonymous device identifier and, when you subscribe, your App Store / Google Play purchase receipt, sent to the Ori cloud to sync your account, restore purchases, and verify subscriptions.
Who receives it
- Your selected AI provider — Data is sent over an encrypted (HTTPS) connection to the LLM provider you choose (e.g., DeepSeek, Qwen/Tongyi Qianwen, GLM, Kimi, or Minimax). Each provider is an independent data controller and processes data under its own privacy policy.
- Ori cloud — Used only for account, quota, and subscription management. In Ori Service mode it also forwards requests to your chosen provider; it does not persist your conversation text. In BYOK mode the Ori cloud never sees your conversation content.
All uses of the data
- To generate the assistant's replies and execute the tool actions you request.
- To maintain your account, enforce usage quota, and verify/restore subscriptions.
- Your conversation history is stored only on your device and is never synced to or retained on our servers.
We do not sell your data, and we do not use your conversation content for advertising. Whether your content is used by an AI provider to train its models is governed by that provider's policy; we encourage you to review it.
Equal-protection commitment
We require that every third-party AI service we integrate with provides the same or an equivalent level of protection for the data it receives as described in this policy. Links to each provider's privacy policy are available in the app's provider settings.
Your choices
- Consent — You can withhold or withdraw consent at any time; AI features that require a network connection will then be unavailable.
- BYOK mode — Use your own API key so conversations are sent directly to your provider and never pass through the Ori cloud.
- Deletion — Delete conversations in-app at any time; see the "Data Deletion" section for full account erasure.
Conversation Data
Ori does not store your conversation content on its servers. In Ori Service mode, your messages are forwarded through the Ori backend to your chosen LLM provider via an encrypted (HTTPS) channel. The backend only counts usage for quota purposes and does not persist the conversation text.
In BYOK mode, your conversations are sent directly from your device to the LLM provider. Ori's backend never sees your conversation content.
Your conversation history is stored only on your device, in the app's local storage. You can delete it at any time by clearing or uninstalling the app.
Third-Party Services
Ori integrates with third-party LLM providers to generate responses. Depending on your selected provider, your conversation content is transmitted to and processed by:
- DeepSeek (Zhipu AI)
- Qwen / Tongyi Qianwen (Alibaba)
- GLM (Zhipu)
- Kimi (Moonshot AI)
- Minimax
Each provider handles data according to its own privacy policy and data retention practices (typically retained briefly for abuse monitoring, then deleted; API data is generally not used for training). We encourage you to review the privacy policy of the provider you choose.
Ori does not use advertising SDKs, analytics platforms, social login SDKs, or crash reporting services.
Information We Collect
Ori collects minimal information necessary to operate:
- Device identifier — A device ID is used to identify your device and account for anonymous login, usage quota, and subscriptions. It is linked to your device and account, but is not tied to personal identity information such as your name, email, or phone number.
- Usage quota count — The number of conversations used, for quota management.
Ori does not collect:
- Contacts or address book
- Usage analytics or behavioral tracking
- Crash reports
Permissions
Ori requests the following permissions, used only for the features described:
- Camera — For AI image recognition when you take a photo.
- Microphone — For voice input (speech-to-text).
- Photos / Media — To select images for AI recognition.
- Internet — To communicate with LLM providers and Ori's backend.
Data Stored on Your Device
The following data is stored locally on your device and never uploaded to Ori's servers (except as forwarded conversation content described above):
- Conversation history — Stored locally for your review. Deleted when you uninstall the app.
- App preferences — Your selected provider, model, and settings.
- Credentials — Your API keys (BYOK mode) and session token, stored securely in the device keystore.
- Knowledge files & skills — Files the assistant creates or you save, stored locally.
Data Retention
Ori does not retain conversation content on its servers. The only data retained server-side is your anonymous device ID and quota usage count, which are kept for as long as your account is active. See the "Data Deletion" section below for how to request deletion of your account and quota data.
Data Deletion
You can delete your data at any time. We provide two ways:
- In-app deletion (recommended, immediate) — Open the app, go to Settings > Delete Account, and confirm twice. This immediately erases all data on your device and deletes your server-side account record.
- Email request — Contact support@3vonline.com and we will process your request promptly.
What gets deleted:
- On your device: Conversation history, knowledge files, skills, API keys, session token, and app preferences.
- On our servers: Your anonymous device ID record and quota/subscription data.
What may be retained: Conversation content forwarded to third-party LLM providers (DeepSeek, Qwen, etc.) is subject to each provider's retention policy (typically kept briefly for abuse monitoring, then deleted). We do not control their retention practices.
There is no extra retention period on our side — once deletion is requested via either method, your server-side data is removed.
Children's Privacy
Ori is not directed at children under 13. We do not knowingly collect personal data from children. As Ori relies on third-party AI models, generated content may not always be appropriate for minors; parental discretion is advised.
Your Rights
- Delete local data — Uninstall the app or clear conversation history in settings.
- Delete account — Use Settings > Delete Account in the app, or contact us. See the "Data Deletion" section above for details.
- Use BYOK mode — To minimize data exposure, use BYOK mode so conversations never pass through Ori's backend.
Changes to This Policy
We may update this privacy policy from time to time. Any changes will be reflected in the "Last updated" date above. Your continued use of the app after changes constitutes acceptance of the updated policy.
Contact
If you have questions about this privacy policy, please contact us at:
support@3vonline.com