Privacy
Privacy Policy
This policy explains which data Verda processes in the app and on this website, why it is needed, and which choices you have.
1. Controller
hafencity.dev GmbH
Am Strandkai 8
20457 Hamburg
Germany
Email: moin@hafencity.dev
2. Use without a traditional user account
Verda can be used without an email address and password. To associate app data, the free allowance, and subscription status with an installation, the app creates a random identifier, stores it in the iOS Keychain, and sends only a pseudonymous value derived from it to the backend. It is not a real name, but it may still be personal data when combined with your app data.
3. Data processed by the app
Profile and settings
We process your chosen display name, language, appearance, onboarding choices, goals, model preferences, Memory setting, and other settings required to operate the app.
Chats, images, and files
We process your prompts, AI responses, chat titles, relevant chat history, and uploaded images and supported files. This includes file name, type, size, and any text extracted from a file. Generated images and their instructions are also processed and stored so that they can be displayed in the chat.
Dictation
Verda uses Apple's Speech and audio frameworks for dictation. Depending on the device, language, and Apple configuration, Apple may process audio on the device or through Apple services. Verda places the recognized text in the input field. It is sent to Verda's backend only when you submit the message; Verda does not store its own audio recording.
Memory
If you enable Memory, helpful preferences and information from your chats may be saved and considered for later requests. Memory is optional. You can review, add, and delete individual memories, or disable Memory entirely.
Usage, diagnostics, and analytics
Verda records pseudonymous events such as screen views, purchase starts and completions, restore attempts, messages sent, blocked requests, and model options used. These events may include a random session identifier, time, and technical status or error information. We do not use this data for personalized advertising.
Cost, budget, and impact data
We process the requested and used model, route, token usage, response status, provider request identifier, approximate provider cost in US dollars, and derived energy and water estimates. This supports service delivery, cost and budget controls, diagnostics, and the impact display.
Subscription and referral data
Apple processes purchases and payment details. Verda receives the product, transaction, and entitlement information needed to verify subscription status, but not your full card or bank details. If you use invitations, we process the referral code, the relationship between referring and referred installations, status, and any benefits granted.
4. Purposes and legal bases
- Providing chat, files, image generation, model routing, and subscription features: contract performance or pre-contractual steps under Article 6(1)(b) GDPR.
- Optional Memory: your consent under Article 6(1)(a) GDPR. You can withdraw it for the future at any time in Settings.
- Stability, diagnostics, security, abuse prevention, and cost control: our legitimate interests in a secure, economical, and reliable service under Article 6(1)(f) GDPR.
- Purchases, billing, and mandatory retention: contract performance and legal obligations under Article 6(1)(b) and (c) GDPR.
- Referral program: performance of the invitation feature you choose under Article 6(1)(b) GDPR and fraud prevention under Article 6(1)(f) GDPR.
5. Recipients and service providers
Convex
Verda uses Convex for backend functions, database services, and file storage. The profile, chat, file, usage, cost, and Memory data needed to operate the app is processed there.
OpenRouter and AI providers
When you submit a request, your prompt, relevant chat history, Memory content, and required attachments are sent through OpenRouter to the selected AI model. Image instructions and results are processed through the same gateway for image generation. OpenRouter connects Verda to different model providers; the specific provider may change based on your selection or Smart Mode. The OpenRouter key is stored only in the backend, not in the iOS app.
OpenRouter states that it does not itself use inputs and outputs for model training. Connected model providers, however, have different rules regarding retention, review, and training. Verda currently does not enforce a Zero Data Retention configuration for every route. Do not submit special-category personal data, trade secrets, or other confidential content unless it is necessary for your request and you are legally permitted to do so.
Mem0
Memory is stored in Verda's backend. When the external Memory integration is enabled, Memory content may additionally be processed by Mem0. Processing and possible use of content for model improvement depend in part on the plan and contractual settings used there. When you delete data, Verda also attempts to remove the corresponding external Memory entries.
Apple
Apple processes App Store purchases, subscription management, device permissions, and potentially dictation audio under Apple's privacy terms.
Authorized internal access
A limited group of authorized personnel may access messages, attachments, usage, and cost data through internal administration tools where required for support, diagnostics, security, billing, or abuse review.
6. Processing outside the EU/EEA
Some AI, platform, or Apple services may process data outside the EU or EEA. The specific location depends particularly on the selected model and its provider. Where required by the GDPR, we rely on an adequacy decision or appropriate safeguards such as EU Standard Contractual Clauses. The EU preference in Smart Mode affects model selection but does not guarantee that every participating process takes place exclusively in the EU.
7. Retention and deletion
Chats, messages, attachments, generated images, profile data, and Memory data are generally stored until you delete them in the app, disable the relevant feature, or they are no longer required to provide the service. Pseudonymous analytics events are deleted when you use Delete Data or once they are no longer needed for diagnostics and product improvement.
Delete Data removes chats, messages, files, local and external Memory entries, personal profile settings, impact events, and associated analytics. The pseudonymous installation remains with separate purchase, transaction, free-allowance, budget, cost, referral, and abuse-prevention records where needed for contract performance, billing, statutory retention, or prevention of repeated free use. Onboarding then starts again without the deleted personal content. Deleting data does not cancel an Apple subscription; it must be managed separately through Apple.
8. Your controls
- enable or disable Memory and delete individual memories
- delete chats, messages, and attachments
- delete personal app data in Settings
- send additional privacy requests by email
- manage your Apple subscription in iOS or App Store settings
9. Website
This website currently uses no first-party analytics or advertising cookies. When you access it, the hosting provider may process necessary server log data such as IP address, time, requested file, browser, and operating system to provide the website securely and reliably.
10. Your rights
Where the legal requirements are met, you have rights to access, correction, deletion, restriction, data portability, and objection. You may withdraw consent for the future at any time. You can also lodge a complaint with a data protection supervisory authority.
11. Security and updates
We use appropriate technical and organizational measures to protect data. This policy will be updated when features, providers, or legal requirements change. The current version will be published on this page.
12. Contact
Send privacy, access, or deletion requests to moin@hafencity.dev. Because Verda has no traditional user account, we may need additional information from your installation to associate a request with your data.