Privacy Policy
Last Updated: September 6th, 2026
There is no account, no email address and no phone number. There is a key you generate on your own device, and a balance attached to its public half. That is the whole of what we hold about you.
Nymbot is an AI assistant, which means one thing is unavoidably different from a messenger: to answer your question, the service has to read it. We would rather say that plainly than bury it.
What the service processes
When you send a message, it is encrypted on your device and can only be opened by the Nymbot service, which opens it in order to generate a reply. The reply is encrypted back to you the same way. Relays and any network in between carry ciphertext only.
While generating a reply, your message and the recent turns of that conversation are passed to the model that answers it. Where that model is operated by a third party, your message text reaches that provider under their terms. Which model handles a message depends on the tier and the model you have selected — see the models documentation.
We do not use your messages to train models, and we do not sell them.
What we store
- A credit balance, keyed to your public key, and the ledger entries that move it.
- An ordered list of message ids per conversation, so a reply can be given the thread as context. The messages themselves are encrypted.
- Encrypted archived copies of the exchange, readable only by the keys involved.
- Short-lived operational records — rate limits, turn de-duplication keys, invoice claims — which exist to stop double charges and abuse.
We do not store your conversation titles: those are generated on your device and never sent. We do not store your private key, and we cannot recover it. We do not store the access token for a connected git repository; it is held on your device and passed with each request.
Chatting without your name on it
Because the balance and the thread are keyed to your public key, the service can tell that a particular key is using it. Anonymous mode exists for people who do not want that: it moves the conversation onto a throwaway key generated on your device, and moves credits across as blind vouchers we sign without being able to see, so our own records cannot link the two.
What that does not hide is set out honestly in the documentation. Most importantly, relays and our infrastructure still see the network connection your device makes. Use Tor or a VPN if your IP address matters to you.
Payments
Credits are bought over the Bitcoin Lightning Network. An invoice carries no identity, and we do not ask for a name, an address or a card. We keep the record needed to credit the payment once and not twice.
App stores
If you use Nymbot on Android or iOS, Google or Apple may record telemetry about the app through their operating systems — when it is opened and closed, how long it is used, crash logs, your device model — and may link that to your Google or Apple account. This is a limitation of mobile operating systems and applies to every app on your device. Read Apple's and Google's own policies if that matters to you, or use the web app instead.
The website
The Nymbot website does not attempt to link your visit to your identity or build a profile of you. We use Cloudflare to serve it, and Cloudflare keeps HTTP request logs for the Nymbot domains for up to 7 days.
Get in touch
If you would like more information, have suggestions about how Nymbot can better protect your privacy, or just want to say hello, please send an email to [email protected].