Privacy Policy
Last updated: June 10, 2025
Introduction
Welcome to Ditto ("we", "our", or "us"). We are committed to protecting your privacy and personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI assistant service and website.
Ditto is actively developing enhanced privacy and security features. While we strive to protect your data, some advanced protections such as end-to-end encryption are planned for future releases and are not currently available.
Important Privacy Notice
Please note that Ditto currently does not support end-to-end encryption or private memory storage. Your data is stored securely on our servers but is accessible to authorized personnel and processed by third-party AI providers. We are actively working to enhance privacy protections in future updates.
Information We Collect
Personal Information
We may collect the following personal information:
- Account information (email address, username)
- Profile information you choose to provide
- Communication preferences
- Payment information (processed securely through third-party providers)
Sensitive Personal Content
Your conversations, journal entries, mood logs, and imported notes may contain sensitive personal information, including health-related details, relationship information, and other private data. We treat this information with the highest level of care and protection available.
Usage Information
We automatically collect certain information when you use our service:
- Conversation data and messages
- Device information and browser type
- IP address and location data
- Usage patterns and interaction data
- Technical logs, session metadata, and performance metrics
- Usage analytics that may be associated with your account
How We Use Your Information
We use your information to:
- Provide and improve our AI assistant service
- Personalize your experience and maintain conversation context
- Process payments and manage subscriptions
- Communicate with you about service updates
- Ensure security and prevent fraud
- Comply with legal obligations
- Conduct research and development to improve our AI capabilities
Third-Party AI Processing
To provide AI-powered features, your data may be processed by third-party AI service providers including OpenAI and Google AI. We require these providers to adhere to strict confidentiality and data protection standards, but your data may be temporarily processed on their systems to generate responses.
Data Security
We take data security seriously and implement industry-standard measures to protect your information. However, advanced features such as end-to-end encryption are currently under development and not yet available. We continuously evaluate and improve our security practices.
Our current security practices include:
- Encryption of data at rest using cloud provider defaults
- Secure data transmission (HTTPS/TLS)
- Access controls and authentication measures
- Secure data storage and processing infrastructure
- Regular security assessments and monitoring
Current limitations: Conversations are not end-to-end encrypted, and authorized personnel may access your data for service operations and support. Access controls are being continuously enhanced.
Data Sharing
We do not sell your personal information or share it for advertising purposes. We may share your data only in the following circumstances:
- With your explicit consent
- With AI service providers (such as OpenAI and Google AI) to enable Ditto's features, under strict confidentiality agreements
- With service providers who assist in our operations (under strict confidentiality agreements)
- To comply with legal requirements or protect our rights
- In connection with a business transfer or merger
Your Rights
You have the right to:
- Access your personal information
- Correct or update your data
- Delete your account and associated data
- Export your data
- Opt-out of certain data processing activities
- File a complaint with relevant authorities
To exercise these rights, please contact us at privacy@heyditto.ai. We will respond to your request within 30 days. Some data may be retained for a limited period to comply with legal requirements or maintain service integrity.
Data Retention
We retain your information only as long as necessary to provide our services and comply with legal obligations. You may request deletion of your data at any time; however, some data may be retained for a limited period to comply with legal requirements or to maintain service integrity.
Conversation data may be retained to maintain context and improve our AI capabilities, but you can request deletion at any time through your account settings or by contacting support.
International Transfers
Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your data during international transfers, including standard contractual clauses and other legal mechanisms as required.
Data Breach Notification
In the event of a data breach that may affect your personal information, we will notify affected users and relevant authorities as required by applicable law, typically within 72 hours of discovery.
Children's Privacy
Our service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.
Updates to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by email and by posting the new policy on our website with an updated "Last updated" date. Your continued use of our service after such changes constitutes acceptance of the updated policy.
Contact Us
If you have questions about this Privacy Policy or our privacy practices, please contact us at:
Email: privacy@heyditto.ai
Website: heyditto.ai