← Back to Peranima

Privacy Policy

Last updated: 12 July 2026

This Privacy Policy explains how Peranima ("we", "us", the "Service") collects, uses and protects your personal data. The controller in the sense of the EU General Data Protection Regulation (GDPR) is:

Eduard Röhrig
Iris-Runge-Platz 11, 30539 Hannover, Germany
info@peranima.com

1. Data we collect

1.1 Waitlist

When you sign up for our waitlist we store: your email address, the submission timestamp, the referring page, and any UTM campaign parameters present in the URL (e.g. utm_source, utm_medium, utm_campaign). Legal basis: Art. 6 (1) (a) GDPR (consent, given by submitting the form). You can request deletion at any time by emailing info@peranima.com.

1.2 Account data

When you create a Peranima account using Google or Discord OAuth we store the chosen provider, its user ID, your display name, avatar URL, and verified email address. Legal basis: Art. 6 (1) (b) GDPR (contract performance). This data is required to operate your account.

1.3 Voice and screen data

When you hold a voice session Peranima streams your microphone audio to AI processing partners (speech-to-text, language model, and text-to-speech). On request, a screenshot of your active window is sent to a vision processing partner so the companion can describe what you're seeing. We may change the underlying providers at our discretion to improve quality, latency, or cost.

We do not store this audio or these screenshots. Audio chunks and screenshots pass through our servers in memory only and are not written to disk or retained after the session ends. Text generated from the conversation is handled separately as described below.

1.4 Session transcripts

During a voice session, text entries are held temporarily in Redis on our EU infrastructure. Each entry has a maximum lifetime of three hours and is normally deleted sooner after successful post-session processing. The session text is then sent to our memory system, which keeps the session document and derives selected memories so your companion can recall useful context across sessions. We also store a short generated session summary in PostgreSQL. You can view and delete individual memories from the dashboard. Deleting your account removes every companion memory bank, summary, session, and temporary transcript known to the account. Legal basis: Art. 6 (1) (b) GDPR (contract performance).

1.5 User reports

If you submit a report through the in-app "Report an issue" feature (e.g. flagging inappropriate companion behavior), we store the report category, your optional message, an excerpt of the related conversation, the app version, and your operating system. We use this only to triage and improve the service. Legal basis: Art. 6 (1) (f) GDPR (legitimate interest in operating a safe service).

1.6 Usage and billing

We record session metadata (duration, token counts, estimated cost, detected game, session end reason) for metering and rate-limiting. Our payment processor handles full payment-card details. Its webhooks may transiently include a name, email address, card brand, last four digits, or signed customer URLs; Peranima discards those fields. We retain only internal customer, subscription, store and product-variant identifiers, payment status, amount, currency, test-mode flag and relevant billing dates for accounting and fraud prevention.

1.7 Technical logs

Our reverse proxy and application log requests including IP address, user-agent, timestamp and requested path. Logs are retained for up to 14 days for security and operational troubleshooting, then deleted. Legal basis: Art. 6 (1) (f) GDPR (legitimate interest in operating a secure service).

1.8 Error tracking

We use a third-party error-tracking provider (with EU data residency) to capture error reports from the desktop app, web portal and API. The provider receives the error message, stack trace and anonymised session context. We have configured it to strip IP addresses and authentication headers.

1.9 Analytics

We use a privacy-friendly, EU-based analytics provider for aggregate, cookieless website traffic. For product-funnel measurement we also store selected events such as sign-up, session start and checkout against the internal account UUID, together with limited properties such as tier or product variant. We do not put conversation text, names or email addresses in analytics events. Account-linked analytics are deleted with the account.

2. Categories of third parties processing your data

We work with the following categories of service providers. Some are based in the European Union, others in the United States; for US-based providers we rely on the EU Standard Contractual Clauses (Art. 46 GDPR) as the legal mechanism for the data transfer.

  • AI processing partners — speech-to-text, language model, text-to-speech, and vision providers used to power the voice pipeline.
  • Payment processor (Merchant of Record) — handles checkout and full payment-card details; we retain only the allowlisted billing audit fields described above.
  • Identity providers — Google and Discord OAuth, for signing into your account.
  • Email delivery — for transactional emails such as receipts, password resets, and abuse notifications.
  • Error tracking — captures application errors and stack traces (configured to strip IPs and authentication headers).
  • Web analytics — privacy-friendly, cookieless aggregate traffic measurement on the landing page.
  • Hosting infrastructure — EU-based (Germany).

A current list of the specific named sub-processors backing each of the categories above is available on request — email info@peranima.com.

3. Retention

Waitlist data is retained until you request deletion or until 12 months after product launch, whichever comes first. Account and conversation data is retained while your account is active and deleted when an in-app account deletion completes. We keep a scrubbed user shell and the minimal billing audit fields described above for 10 years to comply with § 147 AO (German tax code). Technical logs remain subject to the separate 14-day limit above.

4. Your rights

You have the right to access, rectify, delete, restrict or port your personal data, and to object to its processing. You also have the right to lodge a complaint with a supervisory authority — the competent authority in our case is:

Die Landesbeauftragte für den Datenschutz Niedersachsen
Prinzenstraße 5, 30159 Hannover
lfd.niedersachsen.de

To exercise any of the above rights, email info@peranima.com.

5. Cookies

The peranima.com landing page uses no cookies. The app.peranima.com dashboard stores authentication tokens in your browser's localStorage; these are not cookies and are not sent to third parties.

6. Changes

We may update this policy from time to time. Material changes will be communicated by email to registered users. The "Last updated" date at the top of this page always reflects the most recent change.