Tokki - Privacy Policy

Effective Date: April 28, 2026

1. Introduction

Tokki ("we", "our", "the app") is an AI companion chat application. We are committed to protecting your privacy. This policy explains what data we collect, how we use it, and your rights. Korean users are also covered by our Korean-language privacy policy (privacy-policy.ko.html); in case of conflict, the Korean version prevails for Korean users.

2. Data We Collect

3. How We Use Your Data

4. Data Storage and Security

Your data is stored on Supabase servers (AWS ap-northeast-2, Seoul). All data is encrypted in transit (TLS) and at rest. Row-Level Security ensures that only you can access your own data. No other user can see your messages or profile.

5. Third-Party Services

6. Data Retention

Your data is retained as long as your account is active. You can delete your account and all associated data at any time by contacting us. Upon account deletion, all chat history, profile data, and stored memories are permanently removed within 30 days. Purchase records are retained for 5 years to comply with applicable Korean consumer protection laws.

7. Children's Privacy

Tokki is not intended for children under 13 (or under 14 for Korean users, per Korean law). We do not knowingly collect data from children under these ages. If you believe a child has provided us with personal data, please contact us.

8. Your Rights

9. Changes to This Policy

We may update this policy from time to time. We will notify you of significant changes through the app or via email.

10. Contact Us

For privacy-related questions or data requests:
Privacy Officer: Song Jaeseong
Email: privacy@bitterpill.chat
Website: www.bitterpill.chat