The short version

  • Your conversations are private to your account. We do not sell them or share them for anyone else’s purposes.
  • There are no advertising or analytics SDKs in the app. We do not track you across other apps or websites.
  • Your voice is transcribed as it streams. We do not record or store audio.
  • The crisis-detection layer records that a concerning moment happened, never what you said.
  • You can read everything Meny remembers about you, erase it, or delete your account entirely, from inside the app.
  • Meny is for adults. It is not for anyone under 18.

The rest of this page is the same thing said carefully. It is written to be read, not to be survived.

1. Who we are

Meny is operated by [LEGAL ENTITY NAME], registered at [REGISTERED ADDRESS], India (“we”, “us”). For the purposes of India’s Digital Personal Data Protection Act, 2023, we are the Data Fiduciary for the personal data described here, and you are the Data Principal.

This policy covers the Meny mobile app and this website. It does not cover any third party’s own service that you reach from here, including Google’s sign-in.

2. Age

Meny is for people aged 18 and over. We do not knowingly collect personal data from anyone under 18. One of the companions, Zoya, is written as an adult romantic character, which is a large part of why the whole service is age-restricted rather than gated in one corner.

If a companion is told by the user that they are under 18, it stops any flirtatious behaviour immediately. If we learn that an account belongs to someone under 18, we will delete it and its data. If you believe a child is using Meny, write to us at privacy@meny.in and we will act on it.

Before you can use the app we ask for your date of birth once. We use it immediately to work out whether you are 18, and then we discard the day and the month. What we keep is the year you were born, the yes-or-no answer, and when you gave it — enough to hold the gate on your next sign-in without us holding your birthday. The check is made on our server rather than in the app, because a decision the app made for itself would be one anyone could change.

If the answer is no, the app stops there and no companion is reachable. We do not offer a reduced version for under-18s.

3. What we collect

3.1 Account and identity

Sign-in is handled by Firebase Authentication. On first launch the app creates a guest account, which is an anonymous account identifier and nothing else: no email, no name. If you later sign in with Google, we receive from Google and store: your account identifier, your email address and whether it is verified, your display name, your profile photo URL, and which provider you signed in with. Linking Google to an existing guest account keeps the same identifier, so your history carries over.

We also store two things you type into the app itself, once, before you start:

  • What you want to be called. A name of your choosing, used by the companions when they speak to you. It is separate from any Google display name, and you can change it later.
  • Your year of birth, together with whether you cleared the 18+ check and the date you answered. Not your full date of birth — see Age above for why only the year survives.

We never receive your Google password. The app does not store your sign-in token anywhere of its own; the Firebase SDK on your phone holds and refreshes it.

3.2 Your conversations

  • Text chats are stored in full, as one thread per companion, so the conversation is still there when you come back.
  • Voice calls are not recorded. Audio is streamed, transcribed as it arrives, and discarded. We keep no audio files. The same is true of the hold-to-talk button: the recording is sent for transcription, held in memory only, and never written to storage.
  • Transcripts of a voice call are kept as a rolling window of roughly the last twenty turns while the call is live, plus a written summary of the conversation afterwards. We do not keep the full verbatim transcript of a call.
  • Memory: a short list of things worth remembering, extracted from your conversations: details about you, your interests, people you mention, and standalone facts you have shared. This is the list you can read and erase in the app.

Some of what you say will be personal, and some of it may be sensitive: how you are feeling, your health, your relationships. We treat everything in a conversation as sensitive by default, which is why the safeguards below are written the way they are.

3.3 Settings that stay on your phone

Hold-to-talk, audio routing (speaker or earpiece), the name shown in the app, your theme and whether you have completed the intro are stored on your device only. They describe the room you are sitting in, not who you are, and they are never sent to us. Uninstalling the app removes them.

3.4 Operational records

  • Session records: which companion, when a session started and ended, how many turns it ran, and whether it was voice or text.
  • Timing measurements: how many milliseconds each stage of a call took. These contain no conversation content. Speed is the product here, and we cannot fix what we cannot measure.
  • Safety events: when the crisis-detection layer fires, we record the session identifier and the severity level, and deliberately not the words that triggered it. A database of people’s worst moments is a liability, not telemetry.
  • Server logs: ordinary application and error logs. Transcript logging exists as a developer switch and is off in production.
  • Usage counters: short-lived per-account counters that stop one account from overloading the service.

4. What we do not collect

  • No advertising identifiers, ad SDKs or third-party analytics SDKs. There are none in the app.
  • No contacts, photos, calendar, SMS or location. The app does not ask for these permissions.
  • No background listening. The microphone is used only during a call or while you are holding the talk button, and a call ends if you leave the app.
  • No payment details. Meny is free at present and takes no payments.
  • No tracking of you across other apps or websites, and no data broker relationships.

5. Why we use it

Purpose What it uses
Holding a conversation with you Your speech or messages, the current thread, your memory list
Remembering you between conversations Memory list, session summaries
Keeping your data yours Account identity, to verify every request
Detecting a crisis and offering real help Your transcript, checked before the AI sees it; only the outcome is recorded
Keeping the service fast and available Timing measurements, session records, logs, usage counters
Preventing abuse and enforcing the Terms Account identity, usage counters, logs
Meeting legal obligations Whatever a valid legal requirement obliges us to retain or produce

We rely on your consent, given when you start using Meny and refusable at any time by deleting your data or your account. We do not use your conversations to train or fine-tune AI models, ours or anyone else’s.

6. Who else handles it

Meny is assembled from specialist services. Each one below receives only what it needs to do its job, under contract, and none of them is permitted to use your data for their own purposes.

Service What it does What it sees
Google Firebase Authentication Sign-in and session Your account identity
Google Cloud Firestore Our database Account, threads, memory, session records
Google Cloud (Vertex AI, Gemini models) Generates most replies; writes memory summaries The conversation text sent for that turn
Google Cloud Text-to-Speech Speaks the reply aloud The reply text
Sarvam AI Speech recognition, including Hinglish Your speech audio, as it streams
OpenAI Generates replies for Arjun and Meera The conversation text sent for that turn
Daily Carries the live call audio Call audio in transit, in a private single-use room
Google Cloud Run / Compute Engine Runs our servers Everything, in transit and at rest, as our infrastructure

We will keep this list current. If we add or change a processor in a way that matters to you, we will say so under Changes.

7. Where it is processed

Most of Meny runs in Google Cloud’s Mumbai region (asia-south1), because being close to you is what makes a voice call feel like a call. Our database is hosted there too.

Some processing happens outside India. Two of the four companions, Arjun and Meera, are generated by OpenAI, and some Google endpoints we use are multi-region rather than India-only. Where personal data leaves India, it moves under the contractual protections those providers offer and only to countries not restricted by the Government of India. If you would rather your conversations stayed with the India-hosted models, use Naina or Zoya, whose replies are generated in Mumbai.

8. How long we keep it

What Kept
Voice audio Not kept. Transcribed in flight and discarded
Chat threads, memory, session summaries Until you erase them or delete your account
Full verbatim voice transcript Not kept beyond the live call window
Call setup records Deleted as soon as the call is connected or abandoned
Timing measurements and session records Until you erase your data or delete your account
Safety events and server logs Held in our cloud logging for a limited operational period, then discarded. These contain no conversation content
Account record Until you delete your account

We do not currently expire inactive data automatically. It stays until you ask for it to go. Deletion is real deletion from our live systems; backups and logs age out on their own cycle and are not used to repopulate anything.

9. Your rights and controls

Three of these are buttons in the app, and they are deliberately different from each other:

  • See what Meny remembers. Settings → Memory shows the complete list, in the same words the companion sees.
  • Forget everything. Erases your memory list, your chat threads and your session summaries, and keeps your account so you can still sign in. This cannot be undone.
  • Delete my account. Removes everything keyed to you, including the account itself and the sign-in identity. This cannot be undone.
  • Sign out is none of the above. It ends the session on this phone and leaves your data intact, so handing someone your phone for five minutes does not cost you everything the app knows about you.

Under the Digital Personal Data Protection Act, 2023, you also have the right to:

  • obtain a summary of the personal data we process about you and who we have shared it with;
  • have inaccurate or incomplete data corrected, completed or updated;
  • have your personal data erased;
  • nominate another person to exercise these rights on your behalf if you die or become incapable of exercising them;
  • a grievance redressal process, described below;
  • withdraw your consent at any time. For a service that is only conversation, that means deleting your data or your account.

To exercise anything the app does not cover, write to privacy@meny.in from the email address on your account. We will respond within 30 days.

10. Security

Traffic between the app and our servers is encrypted in transit, and call audio travels over encrypted WebRTC into a private room created for that one call. Data at rest is encrypted by our cloud provider. Every request that touches your data is authenticated server-side, and the identity used is always the one proven by your sign-in token. The app cannot ask for someone else’s data by naming them.

Our database is not reachable from any client; only our servers can read it. Access by us is limited to what is needed to run and repair the service.

No system is perfectly secure. If a breach affects your personal data, we will notify you and the Data Protection Board of India as the law requires. If you find a vulnerability, please tell us at security@meny.in before disclosing it publicly.

11. Changes to this policy

If we change this policy we will update the date at the top, and for any change that materially affects your privacy we will tell you in the app before it takes effect. Continuing to use Meny after that means you accept the updated policy; if you do not, you can delete your account.

12. Contact and grievances

For anything about your data, write to privacy@meny.in.

Our Grievance Officer, appointed under the Digital Personal Data Protection Act, 2023 and the Information Technology Act, 2000 and its rules, is:

[GRIEVANCE OFFICER NAME]
[LEGAL ENTITY NAME]
[REGISTERED ADDRESS]
grievance@meny.in

We acknowledge complaints within 24 hours and resolve them within 15 days. If you are not satisfied with the outcome, you may complain to the Data Protection Board of India.