Privacy Policy
This Privacy Policy explains how VISIONTAP LIMITED collects, uses, stores, and shares information when you use CherryTalk.
1. Who We Are
CherryTalk is operated by VISIONTAP LIMITED ("VISIONTAP", "we", "us", or "our"). This Privacy Policy explains how we collect, use, store, disclose, and protect information when you use the CherryTalk mobile application, website, and related services.
If you have questions, requests, or concerns about this Privacy Policy, contact us at [email protected].
2. Information We Collect
We collect information that you provide, information created when you use CherryTalk, and information processed by our service providers.
- Account and login information: email address, Apple ID or Google sign-in identifiers, authentication provider, and account identifiers managed through Supabase.
- Profile information: nickname, gender preference, liked tags, preferred language, avatar image, and avatar storage path.
- Chat and story content: messages you send, character replies, AI prompts and responses, relationship progress, dynamic event choices, event scripts, memories, and generated story records.
- Image generation and media information: prompts, generation status, generated event image metadata, stored media paths, and cache records needed to deliver event media.
- Purchases and virtual items: Apple App Store, Google Play, and Stripe product IDs, transaction, order, invoice, or checkout session IDs, Stripe customer identifiers, purchase token identifiers, purchase environment, subscription expiration, payment verification payloads, diamond balance, diamond transaction history, membership status, and related ledger metadata.
- Feedback: feedback text, optional reply email address, submission status, and timestamps.
- Device permissions and local data: photos you select for avatars, camera captures for avatars, generated images saved to your photo library, local preferences, local wallet snapshot, local chat or event caches, and temporary files required for sharing or saving images.
- Technical and diagnostic information: request timing, app instance identifiers, pseudonymous account identifiers, product interactions, model and token usage, crash details, performance timing, error messages, and service logs used to operate, debug, secure, analyze, and improve CherryTalk.
3. How We Use Information
We use information for the following purposes:
- to create, authenticate, and maintain your account;
- to provide AI chat, character stories, dynamic events, and image generation;
- to store your preferences, avatar, progress, memberships, and diamonds;
- to process, verify, restore, and support App Store, Google Play, and website (Stripe) purchases;
- to respond to feedback and support requests;
- to prevent abuse, fraud, security incidents, and policy violations;
- to debug, analyze, maintain, and improve CherryTalk; and
- to comply with legal, tax, accounting, audit, and platform requirements.
4. AI Features and Generated Content
CherryTalk uses third-party AI service providers to generate character replies, story events, memories, prompts, and images. To provide these features, we may send your relevant messages, choices, character context, prompts, and generated content to our AI providers. Generated content may be stored to maintain continuity, show chat history, unlock events, and improve service reliability.
You should avoid entering sensitive personal information into chats or prompts. AI-generated content may be fictional, inaccurate, unexpected, or unsuitable for some users.
5. Photos, Camera, and Photo Library
CherryTalk may request access to your photo library so you can select an avatar image. CherryTalk may request camera access so you can take an avatar photo. CherryTalk may request permission to add images to your photo library so you can save generated ending or event images.
You can manage these permissions in your device settings. If you disable a permission, the related feature may not work.
6. Third-Party Services
We use service providers to operate CherryTalk. These providers may process information only as needed to provide their services to us.
- Supabase: authentication, user sessions, and avatar storage.
- Apple: Sign in with Apple, App Store payments, subscriptions, refunds, and transaction verification.
- Google: Google sign-in, Google Play payments, subscriptions, refunds, and purchase verification.
- Stripe: website payments, subscriptions, invoices, refunds, tax calculation, and the customer portal. Stripe receives your payment details and billing address directly; we store only Stripe identifiers and payment status.
- LLM providers: AI chat, story, memory, prompt, and related text generation.
- Cloudflare R2: storage and delivery of generated event media.
- Google Firebase Analytics: app instance identifiers, a pseudonymous account ID after login, and selected product interaction events for usage analysis. We do not use this integration for advertising or ad personalization.
- Sentry: a pseudonymous account ID after login, crash details, error diagnostics, and sampled performance timing. Chat text, prompts, email addresses, authorization tokens, and purchase transaction identifiers are excluded.
7. Sharing and Disclosure
We do not sell your personal information. We may disclose information to service providers, platform operators, legal authorities, professional advisers, or successor entities when needed to operate CherryTalk, process purchases, protect users, comply with law, enforce our terms, or complete a merger, acquisition, financing, or sale of assets.
8. Data Retention
We retain information for as long as needed to provide CherryTalk, maintain account history and story continuity, process purchases, resolve disputes, enforce our terms, secure the service, and comply with legal, accounting, audit, and platform obligations.
Some records, such as App Store, Google Play, or Stripe transaction records, subscription records, payment verification data, security logs, and audit records, may be retained for longer where reasonably necessary.
Firebase user-level analytics event data is configured for a two-month retention period. Sentry diagnostic data is configured for up to 30 days. Our service providers may process this data outside your country or region.
9. Account Deletion
You may request deletion of your CherryTalk account in the CherryTalk app or by contacting us at [email protected]. After deletion, we will delete or anonymize personal data associated with your account, subject to limited retention for transaction, subscription, payment, security, audit, dispute, or legal compliance purposes.
For more details, see our Account Deletion page.
10. Your Choices and Rights
Depending on your location and applicable law, you may have rights to access, correct, delete, or receive a copy of personal information, object to or restrict certain processing, withdraw consent, or complain to a data protection authority.
You can manage device permissions in your device settings. You can contact us at [email protected] to exercise privacy rights or ask questions about your data.
11. Security
We use reasonable technical and organizational measures designed to protect information. No method of transmission, storage, or processing is completely secure, and we cannot guarantee absolute security.
12. Children
CherryTalk is intended for users who are at least 16 years old and meet any higher minimum age required by applicable law. If you believe someone below the applicable minimum age has provided personal information to us, contact us so we can take appropriate action.
13. International Processing
We and our service providers may process information in countries or regions other than where you live. Data protection laws in those locations may differ from the laws in your location.
14. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will take reasonable steps to notify you, such as updating the effective date, posting a notice, or providing an in-app notice.