Privacy
How BYOME Handles Your Data
BYOME processes the content you choose to leave, along with the data needed to provide recording, responses, review, organization, account access, and safety. You can contact us at support@byome.online.
What We Process
Content you leave: records, follow-up input retained from earlier versions, photos you take or images you upload, and archived Memory or Wish records created in earlier versions.
Generated content: record responses, world sessions, world reviews, record organization, stage observations, and calibration feedback.
Your actions: confirmations, corrections, exports, and deletions.
Account and service data: sign-in method, user ID, email, entitlement status, device and app version, necessary product interaction records, and security records.
Speech and Generation
Speech cleanup processes transcript text. When original-audio saving becomes available, a recording is stored as a private attachment to the current record only after you explicitly agree the first time. You can delete each recording from its detail page. Original audio is not used by default for responses, long-term organization, model training, voice cloning, or sharing. When generating responses, the service processes the text and context needed to complete the experience.
Photo Understanding (Optional)
Only when photo understanding is available to your account and you choose “Save and Get a Response” on the photo confirmation screen does BYOME send the display image with photo metadata removed, together with any text you added, to a third-party AI processing service in China for one understanding and response request. Under that service's current public terms, submitted inputs and generated outputs may be used to improve model services. Its applicable rules govern retention, and BYOME cannot currently promise immediate third-party deletion or a fixed third-party retention period. Deleting the photo from BYOME removes the files and linked responses managed by BYOME, but cannot undo processing already completed by the third-party service. Choosing “Save Only” does not send the photo or optional text to that service. Photo understanding is not used for face identification or sensitive-attribute inference, and generated content does not automatically become a fact about you.
Image Responses (Optional)
Only when Image Responses are available to your account and you choose “Create an Image” in World does BYOME send the minimum record content needed for that one image to a third-party image-generation service. The service is accessed through and stores data at rest in the Singapore region; inference may run on international nodes excluding the Chinese mainland. The generated result is then checked for display suitability by an independent AI review service using only the generated image and minimum non-identifying safety context. The current processing configuration does not allow record content to be used for model training or improvement unless you separately give explicit consent. Third-party result links are retained for up to 24 hours. Images downloaded by BYOME are private to your account and can be deleted individually; deleting the source record or account also starts deletion of related images. Deletion cannot undo third-party processing that has already finished. Closing the disclosure or choosing to keep browsing sends no request and does not affect records, text responses, or other World features. The current release includes one lifetime free image per account, and deleting an image does not restore that allowance. An Image Response is not a photo, psychological assessment, or prediction, and it does not automatically become a fact about you.
World Topic Dialogue
When you choose to start a topic dialogue in World, the service sends the fixed question, the text you submit in that dialogue, and the dialogue context needed for the current turn to AI services that generate and review the response. This is used only to generate and review that response. V0.1 does not read your other records or treat AI responses as facts about you. Response text is sent to your enabled synthetic-voice feature only after you choose to play it.
Voice Cloning (Optional)
When voice cloning is available to your account and you explicitly agree to use it, BYOME records and uploads a dedicated reading, links it to your account, and uses it to create a synthetic voice for your private use. A third-party voice-processing service processes the recording, voice identity, and text to be read in Singapore, and returns generated audio to BYOME for private playback. The dedicated recording is not public or used to train general models. After creation is verified, BYOME deletes the temporary recording it stores under this feature's data lifecycle. Generated audio has a maximum retention period of 1 day and enters deletion after it expires. You can disable or delete the synthetic voice at any time. A deletion request covers related voice data, generated audio, and the voice held by the third-party service, and is complete only after the third-party service and object storage verify absence. De-identified deletion evidence is retained for no more than 30 days.
Recent Record Revisits
To decide whether your recent records contain something worth revisiting within several hours to a day, BYOME may process the text of your latest 1–3 records again in the background, together with the minimum prior-response context needed to check whether the result adds anything new. Saving a record and its immediate response do not wait for this processing, and no revisit is created when nothing qualifies. Revisits are private to your account, show their sources, can be deleted individually, and are included in account export and deletion.
Public Content
Your records do not appear on public pages. If public content is added in a future release, we will explain in the privacy notice and product interface.
Export And Deletion
You can export data in App settings, and you can delete account data. An export includes photo-asset metadata and the source summary bound to a photo response (asset ID, version, digest, format, and size), but not photo binaries or base64 from a model request. Deleting a photo removes its private file; deleting a record or account removes its related photos and response data. Copies you download remain yours to manage.