Privacy
How BYOME Handles Your Data
Your records and creations are private by default. This notice explains the data used to provide the service, how optional AI features process content, and how you can manage, export and delete data.
On this page
Your data and choices
Manage your choices
Manage responses & organization, export and deletion in Settings → Data & privacy in the app. Manage personal voice in Settings → Voice → My voice. Turning off responses & organization does not turn off every AI feature: speech transcription, photo responses, creation and personal voice follow their separate permissions.
What We Process
Content you leave: records, follow-up input retained from earlier versions, photos you take or images you upload, and archived Memory or Wish records created in earlier versions.
Generated content: record responses, world sessions, world reviews, record organization, stage observations, and created images, music, covers, lyrics, and creation backgrounds.
Your actions: feedback on whether a response is helpful, saves, shares, exports, and deletions, plus confirmations, corrections, and calibration input retained from earlier versions.
Account and service data: sign-in method, user ID, email, entitlement status, device and app version, necessary product interaction records, and security records.
Language and Existing Content
You can choose Simplified Chinese, Traditional Chinese, or English. Changing the app language updates interface text. New record responses and conversations default to the current app language; requests already in progress keep the language selected when they started.
Existing records, AI responses, organization results, conversations, and works stay in their original language. This version does not offer translations of existing content or send it for translation when you change languages. Your typed text, transcripts, lyrics, audio, and images remain unchanged.
Records and AI features
Voice records and original audio
When you record and agree to cloud transcription, the recording is uploaded to a third-party speech-recognition service and converted into text you can check and edit. Transcription and keeping original audio are separate: original audio is saved privately with a record only after you explicitly agree the first time. You can delete individual audio segments in the record details while keeping its text and response.
Original audio kept as a record attachment is not used by default for responses, long-term organization, model training, voice cloning, or sharing. Responses and organization process the record text and context needed for those features.
Responses & organization (Optional)
After you explicitly agree to “Responses & organization” in the app, record text needed for responses and organization is sent to third-party AI services. When automatic organization is available, BYOME processes eligible new records saved after you agree in the background, without asking again for each record. Inputs and generated outputs may be used to improve model services under the provider's applicable terms.
You can save records without agreeing. Earlier consent for AI responses alone is not automatically upgraded to include automatic organization, and records saved before your agreement are not automatically included. This agreement does not replace the separate choices for photo understanding, Standard Creation, or personal voice.
You can withdraw this permission in Settings → Data & Privacy. After withdrawal succeeds, no new response or automatic-organization processing is started and newly returned results are not saved; existing records and organization results remain available. Requests already sent to a third party cannot be recalled. Agreeing again allows only subsequently saved records into automatic organization.
Photo Understanding (Optional)
Only when photo understanding is available to your account and you tap “Get a Response” on the photo confirmation screen does BYOME send the display image with photo metadata removed to a third-party AI processing service in China for one photo-understanding request. Text you add is saved with the record and used by BYOME to organize the response, but is not sent to this photo-understanding service.
Under that service's current public terms, submitted inputs and generated outputs may be used to improve model services. Its applicable rules govern retention, and BYOME cannot currently promise immediate third-party deletion or a fixed third-party retention period.
Deleting the photo from BYOME removes the files and linked responses managed by BYOME, but cannot undo processing already completed by the third-party service. Not tapping “Get a Response” does not make this third-party photo-understanding request. Photo understanding is not used for face identification or sensitive-attribute inference, and generated content does not automatically become a fact about you.
World Topic Dialogue
When you choose to start a topic dialogue in World, the service sends the fixed question, the text you submit in that dialogue, and the dialogue context needed for the current turn to AI services that generate and review the response. This is used only to generate and review that response. The current version does not read your other records or treat AI responses as facts about you. Response text is sent to your enabled synthetic-voice feature only after you choose to play it.
Recent Record Revisits
To decide whether your recent records contain something worth revisiting within several hours to a day, BYOME may process the text of your latest 1–3 records again in the background, together with the minimum prior-response context needed to check whether the result adds anything new. Saving a record and its immediate response do not wait for this processing, and no revisit is created when nothing qualifies. Revisits are private to your account, show their sources, can be deleted individually, and are included in account export and deletion.
Creations and personal voice
Standard Creation (Optional)
When creation is available to your account and you select records and confirm creation, BYOME sends the necessary text from those records to third-party AI services to assess, plan, and review an image or music work. The music-generation service receives the music prompt and lyrics needed to generate audio, not your complete source records. Lyrics and images may still express private experiences. A music work can include a cover image. Saving a record or browsing existing works does not start this creation request.
Different stages use third-party services with different data rules. The text-planning service may use inputs and generated outputs to improve model services under its applicable terms. The image-generation service is accessed through and stores data at rest in Singapore; inference may run on international nodes excluding the Chinese mainland. Its model-data rules do not mean the entire creation process is excluded from model improvement. The music-generation API service's public privacy policy describes servers in the United States and possible cross-border processing. BYOME cannot currently promise immediate deletion by every third party or one shared retention period. Deleting content from BYOME cannot undo third-party processing that has already finished.
Completed works are private to your account by default and can be deleted individually. Deleting a source record removes its associated source text from works during the deletion process, but keeps completed works and does not automatically rewrite their images or lyrics. Delete the works separately if you also want them removed. Deleting a music work removes its audio, cover, lyrics, and creation background and disables related public shares. Deleting a work does not delete its source records. Account deletion covers the account's works and related media. Available creation counts are shown in the app, and deleting a work does not restore a used creation. A work is a generated expression, not a photo, psychological assessment, or prediction, and does not automatically become a fact about you.
Personal voice (Optional)
You can create a personal voice in Settings → Voice → My voice. Only after your separate agreement does BYOME record and upload a dedicated reading to create a synthetic voice for your account; it does not read other recordings on your device.
A third-party voice-processing service processes the recording, voice identity, and text to be read in Singapore, and returns generated audio to BYOME for private playback. The dedicated recording is not public or used to train general models. After creation is verified, BYOME deletes the temporary recording it stores under this feature's data lifecycle. Generated audio has a maximum retention period of 1 day and enters deletion after it expires. You can disable or delete the synthetic voice at any time. A deletion request covers related voice data, generated audio, and the voice held by the third-party service, and is complete only after the third-party service and object storage verify absence. De-identified deletion evidence in the online service is retained for no more than 30 days.
A synthetic response does not mean you said it. Deleting personal voice does not delete ordinary records, their text or everyday original audio.
Sharing and widgets
Music Share Links (Optional)
Your source records do not appear on public pages. BYOME creates a non-indexed listening link only when you expressly choose Share Full Audio for your own sound work. Anyone who knows the link can open the page, play that music, and see the finalized lyrics synchronized to playback. The link does not expose source records, a user ID, a private file address, generation prompts, or internal resource identifiers. You can stop sharing at any time, and deleting the music or your account also disables the link.
Home Screen widgets (Optional)
You can choose which content widgets may display automatically, or keep a particular item on display, and then add the widget to your Home Screen yourself. Widgets use existing content; displaying it does not generate new creations or start music automatically. Automatic display and keeping a chosen item on display are separate choices. Turning off automatic display does not remove items you chose to keep on display. Selected content appears on your device screen and may be seen by people who can view that screen; it is not published to the internet.
Storage, export and deletion
Export And Deletion
The export is a JSON file containing this account’s records, responses, works, conversations, saved items, settings and this device’s local World state. It excludes media files, sign-in credentials and local data on other devices.
You can export data in App settings, and you can delete account data. Exports include account records, responses, feedback, related feature data, and Standard Creation source and result information. An export also includes photo-asset metadata and the source summary bound to a photo response (asset ID, version, digest, format, and size), but not photo binaries or base64 from a model request. Standard Creation exports do not include image or audio files either.
Deleting a photo removes its private file; deleting a record removes its attached media and responses, while completed works are kept as described above. Account deletion covers the account's records, works, media, and public shares. Copies you download or share with others remain yours to manage; BYOME cannot recall them.
After account deletion, local copies on other devices cannot be erased remotely or uploaded back to the deleted account. The app signs out and clears those copies after the device next verifies the account online.
Earlier Standalone Image Responses
Standalone Image Responses created in earlier versions keep their original lifecycle: you can delete them individually, and deleting their source record or your account starts related-image deletion. This differs from the retention of completed Standard Creation works. The earlier single-image allowance does not describe your current available creations.
Deletion In Backups And Recovery
Database backups used for recovery have a 14-day recovery window, measured from the start of the backup snapshot. Backups enter cleanup when that window ends. Historical cloud-storage versions are retained for 1 day after becoming noncurrent and are then cleaned up asynchronously by the storage service. We therefore do not promise that every backup copy disappears immediately on day 14.
To prevent old backups from bringing back deleted data, we retain minimal matching markers solely to continue deletion after recovery. They contain no entry text, media, email addresses, or account identifiers in plain text. The markers are deleted after the related recoverable backups have been confirmed as cleaned up. Their purpose and retention scope differ from de-identified deletion evidence in the online service, which is retained for no more than 30 days. Historical copies of these markers follow the same 14-day backup window, measured from each copy's creation, and the asynchronous cleanup process above. Removing a marker from the current recovery list does not remove every historical copy immediately.
Backups are used only for recovery. Applicable deletion requirements are applied to recovered data before service resumes; recovery must not reactivate deleted accounts, voices, or public shares.
Usage measurement and website
Product usage measurement
When usage measurement is enabled, BYOME records fixed events after you sign in: opening the app, viewing capture and reflection screens, actively revisiting entries or organizations, viewing and using works, and viewing purchase screens or continuing an action after purchase. We use these events to understand usability and continued use and to improve the service. They are linked to your account and include time, app version, session identifiers, and internal content identifiers and versions. They do not contain entry text, transcripts, photos, audio, lyrics, generation prompts, or private links, and are not used for advertising tracking across apps.
Pending events remain on the device for up to 7 days and are cleared on sign-out or account deletion. Raw server events are retained for up to 90 days and are included in account export and deletion.
Once usage measurement is enabled, we create and retain daily, weekly, and monthly summaries to compare usage over time. These summaries contain reporting periods, versions, counts, rates, and data-quality notes, without account, session, or content identifiers, entry text, or individual activity details. Existing summaries remain available after raw events expire or an account is deleted; they are not recalculated for individual users.
Team operations emails use these summaries without private entries or conversations. The 7-day and 90-day limits above apply to pending events on the device and raw usage events on the server, respectively. They do not apply to your entries, support correspondence, or other security and diagnostic logs.
Website and launch updates
When you sign up for launch updates on the website, we save your email address, registration time, website source label and browser identifier to register your interest and send launch updates. This does not create an app account. To cancel your registration or request deletion of your email, contact support@byome.online.
The website remembers your light or dark theme choice in local storage in the current browser for future visits. You can clear this preference through your browser.
Contact us
This notice covers the BYOME app and website provided by Shanghai Guangyin Zhinian Technology Co., Ltd. Contact support@byome.online about data processing, consent, export or deletion.