Privacy Policy
Last updated: February 5, 2026
At Julia AI, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our AI assistant service (“Service”). Please read this policy carefully.
Table of Contents
1. Information We Collect
We collect information you provide directly to us, information generated through your use of the Service, and information from third-party services you connect.
1.1 Account Information
When you create an account, we collect:
- Email address
- Name (optional)
- Language preference (locale)
- Timezone
- Marketing communication preferences
1.2 Messaging Platform Data
When you use Julia through WhatsApp or Telegram, we collect:
- Your messaging platform user identifier
- Display name on the platform
- Messages you send to and receive from Julia
- Media files you share (images, documents)
1.3 Task and Contact Data
To provide assistant functionality, we store:
- Tasks and to-do items you create
- Contact information for people you interact with (names, emails, phone numbers, companies)
- Relationship context and notes you provide
1.4 Memory and Context
Julia remembers information to provide personalized assistance:
- Your preferences and facts you share (stored as profile data)
- Important events and conversations (episodic memory)
- Vector embeddings of memories for semantic search
1.5 Connected Account Data
When you connect external services (Google, Microsoft), we access:
- Calendar events (to read and create appointments)
- Email messages (to read and send emails)
- Contacts (to sync your address book)
- OAuth tokens (securely stored to maintain access)
1.6 Payment Information
For paid subscriptions, we process payments through Stripe. We store:
- Stripe customer identifier
- Subscription status and plan details
- Payment history
Note: We do not store credit card numbers or full payment details. This information is handled directly by Stripe.
2. How We Use Your Information
We use the information we collect to:
- Provide the Service: Process your requests, manage your calendar, send emails, track tasks, and provide personalized AI assistance.
- Improve AI Responses: Use conversation context and memory to provide relevant, personalized responses to your queries.
- Maintain Security: Authenticate your identity, prevent fraud, and ensure the security of your account.
- Process Payments: Manage your subscription and process payments through our payment provider.
- Communicate with You: Send service-related notifications, including magic link emails, subscription confirmations, and important updates.
- Send Marketing Communications: Only if you have opted in, send information about new features and services.
3. Third-Party Services
We integrate with and share data with the following third-party services to provide our Service:
| Service | Purpose | Data Shared |
|---|---|---|
| OpenAI | AI language processing | Message content, context (with optional pseudonymization) |
| Meta (WhatsApp Business) | Messaging platform | Messages, user identifiers |
| Telegram | Messaging platform | Messages, user identifiers |
| Calendar, Gmail, Contacts | OAuth tokens, API requests | |
| Microsoft | Outlook Calendar & Email | OAuth tokens, API requests |
| Stripe | Payment processing | Customer ID, subscription data |
| MailerSend | Transactional emails | Email address, name |
| Brave Search | Web search functionality | Search queries |
Privacy Protection for AI Processing
Julia implements a Data Protection Layer that can pseudonymize your personal information before sending it to AI providers. This means your real names, emails, phone numbers, and other identifiers can be replaced with pseudonyms during AI processing, then restored in responses. This feature helps protect your privacy while maintaining assistant functionality.
4. Data Storage and Security
4.1 Storage Infrastructure
Your data is stored in:
- PostgreSQL Database: Primary storage for all user data, with pgvector extension for memory embeddings.
- Redis: Temporary storage for authentication tokens, rate limiting, and caching (data expires automatically).
4.2 Security Measures
We implement the following security measures:
- All data transmitted over HTTPS with TLS 1.3 encryption
- Secure, httpOnly cookies for authentication tokens
- OAuth tokens stored encrypted in the database
- User data isolation through scoped database queries
- Rate limiting to prevent abuse
- Webhook signature verification for messaging platforms
- Magic link authentication (no passwords to leak)
4.3 Data Isolation
Every database query is scoped to your user ID. It is technically impossible for one user to access another user's data through our application.
6. Your Rights
Depending on your location, you may have the following rights regarding your personal data:
6.1 Access and Portability
You can view and manage your data through the Julia user portal, including your tasks, contacts, and memory data.
6.2 Correction
You can update your profile information, edit contacts, and modify memory data at any time through the user portal or by messaging Julia directly.
6.3 Deletion
You can delete your account at any time. When you request deletion:
- Your account is immediately deactivated
- Your data is retained for 30 days (recovery period)
- After 30 days, all data is permanently deleted
- Deletion cascades to all related data (messages, contacts, tasks, memory, etc.)
6.4 Withdraw Consent
You can disconnect third-party integrations (Google, Microsoft) at any time through the account settings. You can also opt out of marketing communications.
6.5 GDPR Rights (EU/EEA Residents)
If you are in the European Union or European Economic Area, you have additional rights under the General Data Protection Regulation (GDPR), including the right to lodge a complaint with a supervisory authority.
6.6 CCPA Rights (California Residents)
California residents have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information is collected and the right to non-discrimination for exercising privacy rights.
7. Data Retention
We retain your data according to the following schedule:
| Data Type | Retention Period |
|---|---|
| User profile and preferences | Until account deletion |
| Messages and conversations | Until account deletion |
| Tasks and contacts | Until account deletion |
| Memory data | Until account deletion |
| OAuth tokens | Until you disconnect the integration |
| Audit logs | 90 days |
| Authentication tokens (Redis) | 1 hour (magic links), 7 days (refresh tokens) |
8. International Data Transfers
Your data may be transferred to and processed in countries other than your country of residence. Our third-party service providers (including OpenAI, Stripe, and cloud infrastructure providers) may process data in the United States and other jurisdictions.
When we transfer data internationally, we ensure appropriate safeguards are in place, including standard contractual clauses approved by relevant authorities.
9. Children's Privacy
Our Service is not intended for children under the age of 16 (or the applicable age of consent in your jurisdiction). We do not knowingly collect personal information from children. If you believe we have collected data from a child, please contact us immediately.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by:
- Posting the new Privacy Policy on this page
- Updating the “Last updated” date at the top of this policy
- Sending you an email notification for significant changes
Your continued use of the Service after changes become effective constitutes your acceptance of the updated policy.
11. Contact Us
If you have any questions about this Privacy Policy or our data practices, please contact us:
Email: privacy@julia-ai.com
For data deletion requests: You can delete your account directly through the account settings, or contact us at the email above.
Privacy Summary
- ✓We collect only what's necessary to provide the service
- ✓We don't sell your data or use it for advertising
- ✓We offer pseudonymization to protect your data from AI providers
- ✓You can delete your account and all data at any time
- ✓We use minimal cookies (authentication only)