Memorion Privacy Policy

Effective Date: May 9, 2026

Last Updated: August 7, 2026

At Memorion, your privacy is our top priority. This Privacy Policy explains what information we collect, how we use it, and the choices you have. We designed Memorion with a privacy-first approach: your conversations are never sold, are never used to train AI models, and remain yours to delete at any time.

By using the Memorion app or the Memorion wearable device (collectively, the "Service"), you agree to the practices described in this Privacy Policy.

1. Who We Are

Memorion is operated by a one-person-company ("we", "us", or "our"). We design and build both the Memorion AI wearable device and the Memorion companion app for iOS and Android.

If you have any questions about this Privacy Policy or your data, please contact us at: team@memorion.me

2. What Data We Collect

We collect only the minimum data necessary to provide and improve the Service. The following categories of data may be collected:

2.1 Account Information

  • Email Addressused to create and authenticate your account, send important account-related notifications, and respond to support requests.
  • User IDa unique identifier we generate to associate your data (memories, settings, preferences) with your account. We may also receive a unique identifier from your sign-in provider (Apple ID, Google ID) when you choose Sign in with Apple or Sign in with Google.

2.2 Audio Data (Voice Recordings and Transcriptions)

  • Audio recordings captured through the Memorion wearable device or your phone's microphone, when you actively initiate a recording.
  • Transcriptions generated from your audio, including AI-generated summaries, action items, and structured memories.

To produce transcriptions, your audio is sent to one of the third-party speech-to-text providers listed in Section 5.3 (Soniox or Deepgram). To produce AI-generated summaries, action items, structured memories, and chat responses, the resulting transcribed text is sent to one of the third-party AI providers listed in Section 5.4 (OpenAI, Anthropic, or Google Gemini). Each of these providers is contractually prohibited from retaining your data after processing or using it to train their AI models.

Your audio recordings, transcriptions, and memories are stored in our cloud infrastructure (see Section 5.2) so that they are available on every device you sign in to and can be searched by the AI assistant. They are encrypted in transit (TLS) and at rest. End-to-end encryption — where the data would be encrypted with a key only you hold — is planned but not yet available.

We do not use your personal conversations to train AI models.

2.3 Diagnostic and Performance Data

  • App Diagnosticsthe Memorion app does not bundle a crash-reporting or product-analytics SDK, so we do not receive crash reports or usage analytics from your device.
  • Server Request Logsour servers record basic information about each API request — timestamp, endpoint, response time, response status, and your User ID — so we can diagnose errors and monitor performance. These logs do not contain the content of your conversations.

We collect no device-level analytics, and these server logs are never used to profile you or shared with advertisers.

2.4 Calendar Data (Optional)

Calendar access is optional and turned off by default. If you enable it, the app reads events from the calendars on your device within a rolling window of the past 7 days and the next 60 days, and syncs the following fields to your account so the AI assistant can answer questions about your schedule:

  • Event title.
  • Start and end time, including whether the event is all-day and its time zone.
  • Location, if you entered one.
  • The name of the calendar the event came from, and whether it is a recurring event.

This calendar data is stored in our cloud infrastructure (see Section 5.2) and sent to the AI providers listed in Section 5.4 when needed to answer your questions. Those providers are contractually prohibited from retaining it after processing or using it to train their AI models.

For calendar data specifically, Memorion never:

  • Reads event notes, descriptions, attendees, or meeting links.
  • Adds, edits, or deletes events in your calendar — access is read-only.
  • Reads events outside the rolling window described above.

You can turn the calendar toggle off at any time in the app's settings. Doing so permanently deletes all previously synced calendar events from our servers; deleting your account removes them as well.

3. How We Use Your Data

We use the data we collect for the following purposes:

PurposeData Used
Provide core functionality (transcription, summarization, memory management)Audio Data, User ID
Authenticate your account and protect against fraudEmail Address, User ID
Make your data available across your devicesAudio Data, User ID
Communicate important account or product updatesEmail Address
Diagnose errors and monitor service performanceServer Request Logs, User ID
Operate and secure our websiteAggregated, cookieless website analytics
Answer questions about your schedule (only if you enable Calendar)Calendar Data, User ID

We will never:

  • Sell your data to third parties.
  • Use your conversations to train AI models.
  • Share your audio recordings or transcriptions with advertisers.
  • Read your conversations for any purpose other than providing the features you asked for.

4. How We Store and Protect Your Data

4.1 Where Your Data Is Stored

Your audio recordings, transcriptions, and memories are stored in our cloud infrastructure (see Section 5.2) so that they are available on every device you sign in to and can be searched by the AI assistant. Audio captured by the Memorion wearable is streamed to your phone over Bluetooth and uploaded from there; the phone does not keep a long-term local copy.

4.2 Encryption

Your data is encrypted in transit using industry-standard TLS and encrypted at rest by our storage providers. End-to-end encryption — where your data would be encrypted on your device with a key only you hold, so that not even we could read it — is on our roadmap and is shown as "Planned" in the app. It is not available today, and you should not assume your content is technically inaccessible to us.

4.3 Security Measures

We implement appropriate technical and organizational measures to protect your data against unauthorized access, loss, or disclosure. However, no method of electronic storage is 100% secure. We encourage you to use a strong password and enable two-factor authentication on your sign-in provider account.

5. Third-Party Service Providers

To deliver the Service, we rely on a defined set of third-party service providers. These providers process limited data on our behalf, under strict confidentiality and data protection obligations. We list each provider by name below so you know exactly who receives your data and for what purpose. We require that every provider offers data protection equivalent to what is described in this Privacy Policy.

5.1 Authentication Providers

  • Apple (Sign in with Apple) — receives your email (or relay address) and Apple-issued user identifier.
  • Google (Sign in with Google) — receives your email and Google-issued user identifier.

5.2 Cloud Infrastructure

  • Google Firebase / Firestore (Google LLC) — stores your account profile, conversations, memories, and settings.
  • Google Cloud Storage (Google LLC) — stores your audio files and uploaded media in encrypted form.
  • Modal (Modal Labs, Inc.) — runs our scheduled background jobs and our speaker-recognition (voiceprint) service.
  • Amazon Web Services (Amazon Web Services, Inc.) — hosts our backend API servers (Amazon ECS) and our cache layer (Amazon ElastiCache for Redis), which holds session data and ephemeral state.
  • Pinecone (Pinecone Systems, Inc.) — stores vector embeddings of your transcriptions to power semantic search.
  • Vercel (Vercel Inc.) — hosts our website at memorion.me and provides aggregated, cookieless traffic analytics. It does not receive your recordings, transcriptions, or memories.

5.3 Speech-to-Text (STT) Providers

The Memorion app sends your audio recordings to one of the following STT providers for transcription. Audio sent to these providers is not retained by them after processing and is not used to train their models:

  • Soniox (Soniox, Inc.) — primary real-time and multilingual transcription provider.
  • Deepgram (Deepgram, Inc.) — secondary real-time transcription provider.

The specific provider used depends on the language of your recording and our server-side configuration.

5.4 AI / Large Language Model (LLM) Providers

After transcription, your transcribed text may be sent to one of the following LLM providers to generate summaries, structured memories, action items, and chat responses. Data sent to these providers is not used by them to train their models:

  • OpenAI (OpenAI, L.L.C.) — accessed via OpenRouter (OpenRouter, Inc.); used for summarization, memory extraction, and chat.
  • Anthropic (Anthropic, PBC) — accessed via Amazon Web Services Bedrock (Amazon Web Services, Inc.); used for summarization, memory generation, and chat.
  • Google Gemini (Google LLC) — accessed via Google Cloud Vertex AI; used for summarization, memory extraction, text embeddings for semantic search, and image generation for daily reports.

5.5 Diagnostics

  • The Memorion app does not include a crash-reporting or product-analytics SDK (such as Firebase Crashlytics, Sentry, or Mixpanel).
  • Diagnostic information is limited to the server-side request logs described in Section 2.3.

5.6 What We Do Not Do

We do not sell, rent, or share your personal data with third parties for their own marketing or commercial purposes. None of the providers above are authorized to use your data to train their AI models, build advertising profiles, or pursue any independent commercial use.

6. Your Rights and Choices

You have the following rights regarding your personal data:

  • Accessview the data we hold about you through the in-app settings.
  • Exportdownload your memories and transcriptions in a standard, machine-readable format.
  • Deletionpermanently delete individual memories, all your data, or your entire account at any time. Once deleted, your data is removed from our systems and we retain no hidden backups.
  • Withdraw Consentturn off calendar sync (which also deletes the synced events), revoke microphone or Bluetooth permissions, delete your data, or sign out at any time.
  • Contact Usreach out to team@memorion.me for any privacy-related request.

If you are located in the European Economic Area (EEA), the United Kingdom, California, or another jurisdiction with similar data protection laws, you may have additional rights under applicable law (such as GDPR or CCPA), including the right to lodge a complaint with a supervisory authority.

7. Children's Privacy

The Memorion Service is not directed to children under the age of 13 (or the equivalent minimum age in your jurisdiction). We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us at team@memorion.me and we will delete it promptly.

8. Permissions Used by the App

The Memorion app may request the following permissions on your device:

  • Microphoneto record audio when you actively initiate a recording.
  • Bluetoothto communicate with the Memorion wearable device.
  • Notificationsto deliver memory summaries and important account alerts.
  • Speech Recognitionto support on-device transcription where available.
  • Calendaroptional and off by default; read-only access used to answer questions about your schedule, as described in Section 2.4. Memorion never writes to your calendar.

You may grant or revoke any of these permissions at any time in your device's system settings. Some features may be unavailable if a required permission is denied.

The app does not collect or use your geographic location.

9. Cookies and Website

Our website (memorion.me) uses only essential cookies necessary for basic functionality. We do not use advertising or cross-site tracking cookies. The site is hosted on Vercel, which provides aggregated, cookieless traffic analytics (page views, referrers, country) that are not linked to your account or your memories.

10. Data Retention

  • Account data is retained for as long as your account is active.
  • Audio and transcription data is retained until you delete the corresponding memory or your account.
  • Server request logs are retained for a limited period for troubleshooting and security, and are not used for any other purpose.
  • Calendar data is retained only while the calendar feature is enabled. Each sync replaces the previously stored window, and turning the feature off deletes all of it immediately.

When you delete your account, all associated personal data is permanently removed within 30 days, except where retention is required by applicable law.

11. International Data Transfers

If you access the Service from outside the country where our servers are located, your data may be transferred to, stored in, or processed in another country. We take appropriate measures to ensure your data receives a level of protection consistent with this Privacy Policy and applicable laws.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or for other operational reasons. When we make material changes, we will:

  • Update the "Last Updated" date at the top of this page.
  • Notify you via email or an in-app notice for significant changes.

We encourage you to review this Privacy Policy periodically.

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:

Email: team@memorion.me

Website: https://memorion.me

This Privacy Policy is provided in English. Translations into other languages are for convenience only; the English version shall prevail in case of any conflict.