The Clique: Ask the Girls

Privacy Policy

This Privacy Policy explains how The Clique: Ask the Girls ("The Clique," the "app," or the "Service") collects, uses, stores, and shares information. The Clique is operated by the developer under the Avenor Digital name ("we," "us," or "our").

The short version is simple: we use your information to run and personalize the app, remember what you ask the girls to remember, keep the Service safe, and process purchases. We do not run advertising in the app, sell personal information, or use third-party advertising trackers.

1. Scope and controller

This policy applies to The Clique iOS app, its public legal and support pages, and the backend services used to provide chats, photos, voice notes, live calls, journaling, memories, purchases, and support.

For privacy questions and requests, contact support@avenor.digital.

2. Information we collect

2.1 Account and authentication information

  • Anonymous account: a randomly generated app user identifier and authentication token. The app can be used without supplying an email address.
  • Email account: email address, display name, and a salted password hash. We do not store your password in readable form.
  • Sign in with Apple: Apple's unique account identifier, and your name or relay email address when Apple supplies them.

2.2 Profile and onboarding information

If you complete onboarding, we collect the name you want the girls to use, your declared age bracket, what brought you to the app, selected struggles, relationship status when relevant, preferred group energy, communication style, first-bestie preference, preferred check-in time, and notification preference. These answers personalize the girls and help us understand aggregate onboarding completion and preferences.

2.3 Chats, photos, and generated replies

  • Messages you send, the conversation they belong to, reply references, timestamps, and replies generated by the girls.
  • Photos you choose from your library or take with the camera, your caption, and a structured description of visible details such as people, mood, clothing, setting, objects, and visible text.
  • Photo-derived memories. A memory learned from a photo sent privately to one bestie is scoped to that bestie; your own People tab can still show your complete memory vault.

The app sends each photo through one vision-analysis pass. Bestie replies use the stored description rather than repeatedly sending the image bytes to every responding character.

2.4 Voice notes and live calls

  • Voice-note audio, duration, transcription, and a short description of delivery or tone when available.
  • Live-call audio streamed in real time through our relay to the voice AI provider. Raw live-call audio is not retained after that real-time processing.
  • The user's side of a live-call transcript, when available, so the girls can recall names and durable details mentioned aloud. We do not represent this as a complete two-sided recording.
  • Call and voice usage measurements such as duration, input and output audio time, bytes, status, and error information.

Before the first call, the app explains this live transcription and waits for you to tap start. Every active call displays a live transcription indicator.

2.5 Memory vault, People, and journal

We store people and relationship details you provide, including names, relationships, pronouns, birthdays, notes, preferences, important dates, ongoing situations, and meaningful moments. We also store journal entries, moods, gratitude entries, and short mood moments that the memory system identifies from a genuine emotional statement in chat. Auto-journal entries are labeled in the app.

2.6 Purchases, subscriptions, and credits

Apple processes payment information. We do not receive your full payment-card details. We receive purchase and entitlement information needed to activate a subscription or credit pack, including product, tier, transaction or event identifiers, refunds, current credit balances, grants, and usage-ledger entries.

2.7 Service, safety, and cost telemetry

  • Provider, model, operation, status, token counts, audio duration, bytes, latency, estimated cost, conversation or bestie identifiers, and technical error details.
  • Device-supplied timezone, or an approximate timezone supplied by the network edge when needed for time-aware replies. We do not request precise GPS location.
  • If you opt in to notifications, the APNs device token associated with your current account, its sandbox or production environment, your preferred check-in time, and delivery status. The token is removed on device sign-out or account deletion and is never used for tracking.
  • IP address and request information processed by our infrastructure for authentication rate limits, abuse prevention, security, routing, and operational logs.
  • Reports you submit about a message or bestie, including reason, optional details, and the related message or bestie identifier.

2.8 Support communications

If you contact us, we receive your email address and the content and attachments you choose to send. Please do not email passwords, verification codes, or private chat content.

3. Where information comes from

  • From you: when you onboard, chat, upload media, call, journal, report content, purchase, or contact support.
  • From the app and our infrastructure: account identifiers, timestamps, usage measurements, timezone, network and error data.
  • From Apple: Sign in with Apple identity information and App Store purchase events.
  • From RevenueCat: subscription, entitlement, purchase, renewal, cancellation, and refund events.

4. How and why we use information

PurposeExamplesTypical basis
Provide the ServiceCreate accounts, deliver chats and voice, store history, sync data, and process purchases.Performing our contract with you
Personalize the girlsUse onboarding choices, memories, recent conversations, journal moods and notes, photos, and call transcripts to produce relevant replies.Contract and your AI-processing consent
Safety and securityModerate certain content, investigate reports, rate-limit abuse, prevent fraud, and protect accounts and systems.Legitimate interests and legal obligations
Operate and improveMeasure reliability, provider usage, cost, feature adoption, and aggregate onboarding or credit trends.Legitimate interests
Support and complianceAnswer requests, restore purchases, enforce terms, respond to lawful process, and establish or defend legal claims.Contract, legitimate interests, and legal obligations

Where consent is the applicable basis, you may withdraw it for future processing. Some core AI features cannot function without sending the content you submit to the providers described below.

5. AI processing and automated safety

The girls are fictional AI characters. To generate and safeguard their responses, relevant content may be processed by:

  • Google Gemini: primary chat replies, photo descriptions, generated speech, live voice calls, and voice transcription fallback.
  • OpenAI: automated text and image safety classification and backup replies if the primary reply provider is unavailable.
  • Groq: voice-note transcription when configured and available.

Depending on the feature, the provider may receive your prompt, recent conversation excerpts, relevant saved memories, onboarding profile, journal moods and notes, photo bytes, photo description, voice audio, or transcript. We minimize repeated sharing where practical—for example, bestie agents receive a stored photo description instead of separate copies of the image.

Automated safety systems may classify incoming text or images and generated output. A safety classification can prevent a message from reaching the girls or prevent generated output from being stored. These systems may make mistakes. Self-harm-related messages are routed toward supportive safety guidance rather than automatically silencing the user.

The girls are AI, may be inaccurate, and are not medical, mental-health, legal, financial, or emergency professionals. If you're in crisis or thinking about harming yourself, call or text 988 in the United States or contact your local emergency number.

6. How we disclose information

We disclose information only as needed to provide, secure, support, and legally operate the Service:

  • Cloudflare: API computing, private media storage, caching, rate limiting, and network protection.
  • Supabase: hosted PostgreSQL database infrastructure.
  • DigitalOcean: real-time voice relay, public legal-site hosting, and storage of our encrypted database backups.
  • Google, OpenAI, and Groq: the AI processing described above.
  • Apple and RevenueCat: authentication, purchases, subscriptions, entitlements, and refunds.
  • Professional advisors: lawyers, accountants, auditors, insurers, or security specialists when reasonably necessary.
  • Authorities or other parties: when required by law or reasonably necessary to protect rights, safety, users, or the Service.
  • Business transfers: as part of a merger, financing, acquisition, reorganization, bankruptcy, or sale of all or part of the Service, subject to appropriate confidentiality and legal requirements.

We do not sell or rent personal information. We do not share chats, photos, voice, journal entries, or generated replies for third-party advertising. The app contains no third-party ad network and does not use an advertising identifier for cross-app tracking.

7. Storage and international processing

Core account, conversation, journal, memory, purchase, and usage records are stored in PostgreSQL infrastructure provided by Supabase. Photos and voice-note files are stored privately in Cloudflare R2. Uploaded media requires an authenticated request and an ownership check before it is returned. Rate-limit and temporary onboarding-response data may be stored in Cloudflare KV. Live calls transit through DigitalOcean and Google's voice service.

We and our providers may process information in the United States and other countries where they operate. Those countries may have different privacy laws from your home country. Where required, transfers are made using legally recognized safeguards or provider contractual protections.

8. Retention and deletion

  • Account data, chats, media, memories, call transcripts, journals, credit records, reports, and associated usage records are generally kept while your account remains active so the Service can function.
  • Personalized onboarding-response caches expire after up to seven days. Short-lived authentication-rate-limit and relay credentials expire automatically.
  • Support correspondence is retained only as reasonably needed to respond, keep records, resolve disputes, and meet legal obligations.

You can permanently delete your account in the app from the Profile tab — scroll to the bottom and choose "delete account". This removes the active account record and associated database data and initiates deletion of uploaded photos and voice notes. You may also follow our account-deletion instructions or email support if you cannot access the app.

Deletion from the live database is immediate and permanent. We also keep our own encrypted off-site database backups — nightly snapshots stored in a private DigitalOcean storage space and retained on a fixed schedule of 14 daily, 8 weekly, and 12 monthly copies — so a snapshot that includes your earlier data ages out of every backup within at most 12 months. Backups are encrypted by us before they are uploaded, the decryption key is held separately, and backups exist only for disaster recovery — we never use them to re-serve deleted content. Security logs or fraud-prevention records may persist until a legal obligation ends, and we may retain limited information when legally necessary to complete transactions, prevent abuse, resolve disputes, or comply with law. When you delete your account, we also ask RevenueCat, our purchases processor, to delete the purchase-support profile it holds for you; Apple and RevenueCat may still retain limited transaction records where required for fraud prevention or financial compliance.

9. Security

We use safeguards designed to protect information, including encrypted network transport, bearer-token authentication, salted password hashing, rate limits, access controls, private media ownership checks, short-lived voice tickets, and restricted administrative endpoints. Payment-card details are handled by Apple rather than stored by us.

No service can guarantee absolute security. Protect your device and credentials, and contact us promptly if you believe your account or information has been compromised.

10. Your rights and choices

Depending on where you live, you may have rights to request access, correction, deletion, portability, restriction, or objection; withdraw consent; and learn how information has been collected, used, or disclosed. You may also have the right to appeal our response or complain to your local data-protection regulator.

  • Review and delete saved people or memories in the People tab.
  • Change notification permission in iOS Settings.
  • Manage or cancel subscriptions through Apple.
  • Delete your account and associated app data at the bottom of the Profile tab.
  • Email support@avenor.digital for another privacy request.

We may need information to verify your identity and authority before fulfilling a request. We will not discriminate against you for exercising an applicable privacy right. Some requests may be limited where necessary to protect another person, complete a transaction, secure the Service, or comply with law.

11. Device permissions

  • Microphone: used only when you record a voice note or start a live call.
  • Camera: used when you choose to take a photo for a chat.
  • Photo library: used to select an image you choose to share; the app does not upload your entire library.
  • Notifications: optional and controlled through iOS settings.

12. Age requirement and sensitive information

The Clique is rated 18+ and is not intended for anyone under 18. The onboarding age screen blocks users who declare that they are under 18, and the server rejects an under-18 profile. If we learn that an ineligible minor has provided personal information, contact us and we will take appropriate steps to delete it.

Conversations about relationships, mood, anxiety, health, sexuality, or other personal matters may be sensitive. Share only what you are comfortable having processed to provide the Service. Do not submit another person's private information or image without permission.

13. Changes to this policy

We may update this policy when the Service, providers, or legal requirements change. We will post the revised policy here and update the date above. If a change materially affects how we use information, we will provide additional notice when required.

14. Contact us

Questions, privacy requests, or concerns can be sent to support@avenor.digital.

Last updated August 2, 2026