Privacy Policy
Last Updated: July 22, 2026
This Privacy Policy explains how CoModel collects, uses, stores, and discloses information when you use this application, and how you can contact us regarding privacy-related requests.
CoModel is an application provided by Qi Yunjie, an individual developer. Unless otherwise stated, "we" or "us" in this Privacy Policy refers to the individual developer of CoModel.
1. Who We Are
- App Name: CoModel
- Developer / Data Controller: Qi Yunjie
- Location: China
- Contact Email: 843459929@qq.com
2. Information We Collect and Process
2.1 Locally Stored Data
By default, CoModel stores the following data locally on your device:
- Model configurations
- Third-party model API Keys that you configure
- Web search API Keys that you configure, such as a Tavily API Key
- Web search results, source links, and related records when you enable that feature
- Question-and-answer records
- Token and cost statistics
- Custom safety words
- Announcement read status
- App settings and language preferences
Unless you actively submit feedback, initiate a third-party model request, or enable web retrieval and send a query to a web retrieval service, we do not proactively upload the above local data to CoModel-owned servers. Except as necessary to send requests to your selected third-party model provider or enabled web retrieval service, we do not upload your API Keys to CoModel-owned servers or Supabase.
2.2 Apple Sign-in Information
When you use Sign in with Apple, Apple may return a user identifier to the app for login status and may return your email address and name when you authorize it and Apple provides them. CoModel uses this information to maintain the login state on this device and to generate a pseudonymous subscription reconciliation identifier for RevenueCat entitlement synchronization.
CoModel does not collect your Apple ID password, Apple payment information, or bank card information. The identifier synchronized to RevenueCat is a pseudonymous App User ID for subscription reconciliation, not your plaintext Apple account identifier.
This Privacy Policy may be shared by multiple CoModel app versions. It describes current and supported data practices. If a feature is not available in your installed version or you do not enable/use that feature, the related processing described here will not occur for that version.
2.3 Subscription and Purchase Information
CoModel uses the Apple App Store and RevenueCat to manage subscription status. To verify, restore, and synchronize subscription entitlements, RevenueCat may process:
- Product IDs
- Subscription status
- Purchase history
- App Store transaction-related information
- Pseudonymous user identifiers
Apple handles App Store payments, refunds, subscription cancellations, and transaction records. We do not receive or store your card number, payment card security code, or Apple ID password.
2.4 User Input and AI Model Requests
When you use the model Q&A feature, your questions, context, and necessary request parameters are sent directly to the third-party model service provider you choose or configure, such as OpenAI, Anthropic, Google Gemini, DeepSeek, Alibaba Cloud Bailian, or other services supported in the app or configured by you.
CoModel does not proxy model requests and does not use your content to train its own models. Third-party model services process your data under their own terms and privacy policies. Please avoid entering identity documents, bank cards, passwords, health information, minors’ information, or other sensitive personal information in prompts.
When you actively attach local files or images to a model request, CoModel reads the selected items only as needed to complete that request. The relevant file/image content, extracted text, previews, file name, file type, size, and necessary request parameters may be sent to the third-party AI model provider you choose or configure. The provider processes that data under its own terms and privacy policy.
Files and images remain stored locally by you. CoModel does not separately copy or store the original files/images on developer-owned servers, and does not use them to train CoModel-owned models. To support local history display, the app may save a local file path, reference, system-authorized access record, thumbnail, or minimal metadata on your device. If the original item is moved, deleted, or access permission is revoked, it may no longer be displayed or reused.
Please avoid attaching identity documents, bank cards, passwords, health information, minors’ information, trade secrets, confidential materials, or any other sensitive or unauthorized content unless you fully understand and accept the risks of sending that content to the model provider you selected.
2.5 Web Retrieval and Tavily
When you actively enable web retrieval and configure a Tavily API Key, CoModel sends your search question, retrieval method, result count, and other necessary parameters directly to the Tavily Search API to obtain web search results. Your Tavily API Key is stored only in this device’s system secure storage and is used to send requests to Tavily; CoModel does not upload that key to CoModel-owned servers.
Titles, snippets, and source links in web retrieval results may be sent as context for the current Q&A to the third-party AI model provider you choose, and may be stored locally on this device with the Q&A record. Tavily’s own Terms of Service and Privacy Policy apply to its processing of related request data.
2.6 Feedback Information
When you actively submit feedback through the feedback entry, we may collect information you enter through Tally, such as:
- Email address
- Feedback content
- Problem description
Please do not submit API Keys, passwords, identity documents, bank cards, health information, or other sensitive personal information in feedback forms. If you want to delete information submitted through a feedback form, you may contact us using the email address in this Privacy Policy.
2.7 In-App Announcements, Public Configuration, and Legal Links
We use Supabase, Cloudflare Pages, or other static hosting endpoints to read public privacy policy/terms links, in-app announcements, provider registries, model provider information, and operational configuration. Announcements are shown only inside the app, and we do not request system push notification permission. Announcement read status is stored locally on your device by default.
Supabase, Cloudflare, or static hosting services may process request-related information such as IP address, request time, device information, and network information for service security and logging. We do not use these services to send system push notifications or store your model API Keys, Tavily API Key, complete Q&A content, or custom safety words.
2.8 Technical and Diagnostic Data
To support app operation, security, abuse prevention, and troubleshooting, we or third-party service providers may process limited technical data, such as:
- Device type
- Operating system version
- App version
- Request time
- IP address
- Error information
- Diagnostic logs
We do not use advertising networks, conduct cross-app or cross-site tracking, or sell your personal data.
2.9 On-Device Semantic Search and Model Configuration Export
CoModel’s history search, FTS5 index, sqlite-vec vector store, semantic vectors, and on-device embedding results are generated and stored locally on your device. We do not upload search terms, history snippets, vectors, hits, or retrieval processes to CoModel-owned servers or send them to third-party model providers. This feature is used only for local retrieval and result lookup, not for advertising, profiling, or cross-app tracking.
When you use Export Model Configuration, the system generates the export file only on your device; we do not automatically upload, sync, or remotely store that file. Import reads content only after you actively select a local file.
3. How We Use Information
We use information for the following purposes:
- Providing and maintaining CoModel’s core features
- Saving your local settings and usage state
- Completing Apple Sign-in and subscription entitlement synchronization
- Displaying and restoring App Store subscriptions
- Sending model requests you choose to the corresponding third-party model providers
- Performing web retrieval that you actively enable and using retrieval results as context for model requests you initiate
- Displaying in-app announcements and operational configuration
- Processing feedback you actively submit
- Troubleshooting and improving stability and security
- Complying with applicable law, handling disputes, or protecting lawful rights and interests
4. Third-Party Services
We use the following third-party services to provide app functionality:
- Apple: for Sign in with Apple, App Store in-app purchases, subscription management, refunds, and payment processing.
- RevenueCat: for reading, verifying, and synchronizing subscription entitlements and purchase history.
- Tally: for feedback forms actively submitted by users.
- Supabase: for reading in-app announcements, legal links, or operational configuration; we do not use Supabase to store your model API Keys, complete Q&A content, or custom safety words.
- Tavily: only after you actively enable web retrieval and configure a Tavily API Key, to process your search requests.
- Third-party AI model providers: for processing model requests, context, and necessary parameters that you actively send.
- Cloudflare Pages / static hosting services: for displaying the Privacy Policy, Terms of Service, help documents, or reading public configuration files.
We do not request system push notification permission, track users through advertising networks, or sell personal data.
5. Data Retention
We retain relevant data only for the period necessary for the purposes described in this Privacy Policy:
- Local model configurations, model API Keys, Tavily API Key, Q&A records, web retrieval results and source links, token and cost statistics: stored on your device by default until you delete them in the app, clear local data, or uninstall the app.
- Apple login state and local account state: stored on your device until you log out, clear local data, or uninstall the app.
- Subscription entitlement records: retained by Apple and RevenueCat under their policies; we only read the necessary subscription state to unlock Pro entitlements.
- Feedback content: if you submit feedback through Tally, we retain it for the period needed to process the request, usually no longer than 24 months unless law, dispute handling, or security reasons require longer retention.
- Technical and diagnostic data: usually retained only as needed for security, troubleshooting, abuse prevention, and service improvement; third-party service logs are retained by the relevant providers under their policies.
When data is no longer needed, we delete, anonymize, or stop actively processing it. Some residual copies may remain for a limited time in backups or third-party service logs.
6. International Data Transfers
Your information may be processed by us or our third‑party service providers outside the country or region in which you are located, including China, the United States, Singapore, or other regions. Data protection laws may differ across regions.
We select service providers with reasonable security measures and privacy commitments, and require that third‑party services process only necessary data for providing their respective functions.
7. Your Choices and Rights
You can manage data in the following ways:
- Delete Q&A records, model configurations, or local data in the app
- Manage app permissions in system settings or app settings
- Cancel or manage subscriptions in Apple ID subscription management
- Contact us to request access, correction, or deletion of personal data you actively provided to us
- Contact us for feedback data, privacy requests, or other data-related questions
Please note that some information may be processed by Apple, RevenueCat, Tally, Supabase, Tavily, Cloudflare, or third-party model providers under their own policies. For data held by those services, you may need to contact the relevant provider directly.
8. Clearing Local Data and Logging Out
CoModel provides clear local data and logout functions. Clearing local data deletes model configurations, model API Keys, Tavily API Key, Q&A records, web retrieval records, statistics, and other local state on this device.
Clearing local data or logging out does not automatically cancel your App Store subscription. Subscription cancellation and refunds must be handled through Apple subscription management or Apple’s refund process.
9. Children’s Privacy
CoModel is not directed at children under the age of 16. We do not knowingly collect personal information from children under 16.
If you are a parent or guardian and believe that a child has provided personal data to us, please contact us. We will take reasonable steps to delete the relevant information after verification.
10. Data Security
We take data security seriously and take reasonable measures to protect your information. For example, sensitive configurations such as API Keys are stored locally in secure storage on your device by default.
However, please note that no method of transmission over the internet or electronic storage is 100% secure. You should also properly protect your own devices, system accounts, and third‑party model API Keys.
11. Links to Other Websites or Services
CoModel may contain links to third‑party websites or services, for example, this Privacy Policy, Terms of Service, feedback forms, or third‑party model service provider websites.
We have no control over the content, privacy policies, or practices of third‑party websites or services. We recommend that you read their privacy policies and terms of service before using third‑party services.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last Updated" date at the top of this page.
If changes materially affect your rights or how your data is processed, we will notify you within the app or through other reasonable means.
13. Contact Us
If you have any questions about this Privacy Policy or data processing, or if you wish to make a privacy‑related request, please contact us at:
Email: 843459929@qq.com