Privacy Policy
Tellama is built around local AI on Android. Prompts, responses, chat history, Memory items, API keys, and diagnostics are designed to stay on the user's device unless the user explicitly chooses otherwise.
Data We Store on Your Device
Tellama stores chat sessions, prompts, responses, user-approved Memory items, installed or imported model metadata and checksums, local API client records, failure records, diagnostics, user settings, and optional local profile details locally on your Android device.
Local API server client keys are stored as SHA-256 hashes; the raw key is shown only once. Keys you enter for external providers are stored in Tellama's encrypted local database (not hashed) so Tellama can authenticate to the provider you chose. Android backup is disabled for app data.
Optional Profile and Product Updates
Tellama does not require an account for local use. You may optionally add a local display name, contact email, and profile photo in Settings. These profile details stay on your device unless you choose to share them.
The optional profile (display name, contact email, and photo) and the "product updates" preference are stored only in Tellama's private on-device storage. Tellama does not transmit your profile or email address anywhere, and there is no Tellama account. The "product updates" toggle is a local preference only.
Voice Input
Tellama does not request the microphone permission. Voice input launches the Android system speech recognizer, which captures and processes the audio on its own and returns only recognized text. Tellama never records or stores raw audio. Recognized text is stored only if you send it as a chat message.
Network Use
Tellama does not require an account for local use. Network access is used for user-initiated model downloads, release checks and app updates from GitHub, external API models configured by the user, web research against user-selected public HTTPS pages, Android system speech recognition when the installed speech service uses a network, and optional local API serving.
The API server is off by default. Local Only mode binds to 127.0.0.1. LAN mode requires explicit user action and API key authentication. Local LAN API traffic is not TLS-encrypted, so enable LAN mode only on networks you trust.
Tellama does not send prompts, responses, chat history, Memory items, API keys, or voice transcripts to Tellama-controlled cloud servers. Tellama does not automatically upload your optional local profile or profile photo.
External API Models
If you add or select an OpenAI-compatible external API model, Tellama sends the prompt and context required for that request to the endpoint you configured. The external provider's privacy, retention, security, content, and billing terms apply. Tellama displays an in-app disclosure before external-model use. Remove the external model and its credentials to stop future use.
Web Research
Web research makes direct HTTPS requests to the public URL you provide. Tellama blocks unsupported schemes, local or private network targets, unsafe redirects, authentication paths, and oversized or unsupported responses. With a local model, fetched page text is processed on the device. With an external API model, the page text needed for summarization or comparison is sent to the configured provider after an in-app warning.
Model Downloads and App Updates
Model downloads connect to the selected third-party model host. The host receives ordinary request metadata such as your IP address and user-agent information. Tellama verifies supported model files before use.
Tellama may check the public GitHub release feed for a newer version. When you start an update, the APK is downloaded from GitHub and Tellama verifies its SHA-256 digest, package name, higher version, and signing certificate before opening Android's installer. GitHub's privacy terms apply to these requests.
Support Reports
Support reports are generated only when you choose to view or share them. Tellama redacts bearer tokens, API keys, and local filesystem paths before presenting support data.
Data Sharing
Tellama does not sell user data and does not share user data with advertising networks.
Data may leave the app when you explicitly use an external API model, run web research, download a model or app update, share a redacted support report, use an Android speech service that processes audio or text remotely, or enable local API serving and connect your own clients.
Retention
Local data remains on your device until you delete it, clear Tellama storage, or uninstall the app. Tellama does not control the retention practices of external API providers, GitHub, model hosts, website operators, email providers, or Android speech services; review the applicable provider's policy before using that feature.
Data Deletion
You can delete local Tellama data by clearing or editing your optional profile, resetting Memory in Tellama Settings, clearing Tellama storage in Android system settings, or uninstalling Tellama. Because Tellama does not require a Tellama account or run a Tellama cloud account service, there is no server-side account data to delete.
Children
Tellama is intended for developers, local AI users, and general productivity use. It is not directed to children.
Changes
If this policy changes, the updated version will be published at https://redpluglab.github.io/tellama/privacy/.
Contact
For privacy questions, contact challychoi@gmail.com.