Privacy Policy
Effective Date: February 24, 2026
Looking for the practical version? The privacy guide walks every feature: what it can see, where the data goes, and the switch that turns it off.
1. Our Approach
Aerenium is designed as a local-first desktop application. Your conversations, memory, and settings are stored on your own device. We collect the absolute minimum data necessary to provide licensing, subscriptions, and support.
2. What We Collect
- Account information: If you create an account, we store your email address and a hashed password (or OAuth identity).
- License data: Hardware ID, subscription tier, activation status, and credit balance for license enforcement.
- Payment data: Processed by Stripe. We do not store your full credit card number. For each purchase we retain the coarse billing country Stripe determines (for tax, fraud prevention, and understanding where our users are) — never your IP address or full address.
- Anonymous token: For token-based accounts, we store a randomly generated token to associate your subscription with your device.
3. What We Do NOT Collect
- Your conversation logs, prompts, or AI outputs.
- Your files, documents, or local data.
- Your browsing history or desktop activity.
- Biometric data or voice recordings.
4. Third-Party Services & LLM Routing
Aerenium can reach AI models two ways, with different data paths:
- Your own API key (BYOK) or a local model. When you configure your own provider key, your prompts go directly from your machine to that provider — we do not intermediate, see, or log them. With a local provider (Ollama, LM Studio) nothing leaves your machine at all.
- The Aerenium proxy (credits). If you choose to spend Aerenium credits, your requests are rerouted through our infrastructure to upstream providers (via OpenRouter). To meter credits and operate the service we log request metadata — model, token counts, timestamps, and status — but we do not sell your content or use it to train models.
In both cloud cases, the upstream model providers that actually run the model have their own privacy and data-retention policies. Some upstream providers may retain prompt and output data, outside Aerenium's control. For maximum privacy, use a local model or a provider you trust directly.
5. Cookies
Our website uses only essential session cookies for authentication. No tracking or advertising cookies.
6. Data Retention
We retain license and account data as long as necessary to provide the service. You may request deletion of your account and associated data by emailing support@aerethis.com.
7. Security
We use industry-standard encryption for data in transit (TLS) and at rest. License keys are signed with RSA. However, no system is completely secure.
8. Contact
For privacy-related questions or data deletion requests, email support@aerethis.com.