Privacy policy

Last updated 14 August 2026

This explains what Chatxy stores, who else sees it, and how to get rid of it. It is written to be read, not to be survived.

What we store

  • Your account — email address, and your name and picture if you signed in with Google. Passwords are handled by Supabase Auth and hashed; we never see them.
  • Your conversations — the messages you send, the replies you get, and the model that produced each one.
  • Your files — anything you attach, and the text extracted from it so it doesn't have to be re-read on every turn. Files sit in private storage that only your account can read.
  • Your settings — theme, response length, custom instructions and the memory you write yourself.
  • Usage records — one row per request with the model, the token counts the provider reported and what it cost us. This is how allowances are counted.

Who else sees it

The message you send goes to the model provider you selected, and there is no way to run the service without that. Depending on your choice that is one of: Alibaba, Anthropic, DeepSeek, Google, Moonshot, OpenAI, Perplexity, xAI, or OpenRouter, which routes to them on our behalf. Each has its own privacy policy and its own retention period, and we have no control over either.

Beyond the model providers:

  • Supabase hosts the database, authentication and file storage.
  • Tavily receives your query — and nothing else — when you turn on web search and the selected model has no search of its own.

We don't sell your data, we don't use your conversations to train anything, and we don't run advertising or third-party analytics.

Who at Chatxy can see it

Every table is protected by row-level security, so the ordinary path through the app can only ever read your own rows. An administrator can see account-level information — email, plan, how many messages and images you have used, and what your usage cost us — and can read messages you send through the contact form. Administrators do not have a way to read your conversations through the app.

How long we keep it

Conversations and files stay until you delete them or delete your account. Usage records are kept while the account exists, because they are what your allowance is counted against. Deleting your account removes the account, its profile, chats, messages, attachments, projects, generated images and usage records, and the stored files behind them. It cannot be undone.

What you can do

  • Export everything — Settings → Account → Export everything gives you a JSON file with your chats, messages and projects.
  • Delete conversations — individually, or all at once from Settings → Account.
  • Delete the account — Settings → Account → Delete account.

If you are in a place with a right to correction, portability or objection, write to us through Settings → Contact and we'll deal with it.

Guests

Using the chat without signing up still creates an anonymous account behind the scenes, so your trial conversation can be saved and can follow you if you sign up. It holds no email address and nothing that identifies you.

Cookies

We set cookies for one purpose: keeping you signed in. There are no advertising or tracking cookies. Your theme choice is kept in your browser's local storage so the page doesn't flash the wrong colour while it loads.

Children

Chatxy is not for children under 13. If we learn that an account belongs to one, we delete it.

Changes

If this policy changes, the date at the top changes with it. A change that materially affects what we do with your data will be announced in the app before it takes effect.