Himmer AI logoHIMMER AISign in

Privacy Policy

Last updated: August 6, 2026

1. Who we are

Himmer AI is developed and operated by Webtrion. This policy explains what data we collect when you use Himmer AI and how it's handled.

2. What we collect

  • Account information: your email address, and a securely hashed password if you sign up with email/password. If you sign in with Google, we receive your name and email from Google.
  • Conversations: the messages you send and receive, including any images or documents you upload, are stored so you can access your chat history.
  • Basic technical data: standard server logs (e.g. timestamps, error logs) used for keeping the service running reliably.
  • Security data: failed login counts and temporary lockout timestamps, used only to protect your account from brute-force attacks.
  • Moderation logs: when a request is automatically blocked for violating our Acceptable Use Policy (see Terms of Service), we log the violation category and a timestamp only — never the message content itself — for abuse review.

3. How we use it

We use your data solely to operate Himmer AI: authenticating you, saving and displaying your conversation history, and processing your messages through our AI provider to generate responses. We do not sell your data or use it for advertising.

4. Third-party processing

Your messages are sent to Groq (our AI inference provider) to generate responses. If you sign in with Google, authentication is handled by Google. These providers process data under their own privacy policies.

5. Data retention & deletion

Your conversations remain stored until you delete them. Deleting a conversation from the sidebar permanently removes it from our database. You may request full account deletion by contacting us.

6. Security

Passwords are hashed with bcrypt and never stored in plain text. Data is transmitted over encrypted connections (HTTPS). We rate-limit sign-up and message requests, lock accounts temporarily after repeated failed logins, and automatically screen requests for content that violates our Acceptable Use Policy before it's processed.

7. Legal requests and safety reports

We may disclose account or usage information if required by law, or where necessary to investigate suspected illegal activity, protect the safety of any person, or comply with a valid legal process. Where content violates the law (for example, content sexualizing minors), we may report it to the relevant authority.

8. Contact

Questions about this policy or your data can be sent to webtrion.online@gmail.com.