Legal

Privacy policy

Last updated October 2, 2026

This policy explains what Vivi collects, why we collect it, who sees it and the choices you have. It covers the Vivi app for iPhone and Android, the website at ifchat.net and the waitlist.

1. Who we are

Vivi is a finance assistant made by OnlySearch AI LLC (“we”, “us”), the company responsible for your information. Vivi is a closed beta; people on the waitlist and people we have invited are covered by this policy. Questions: [email protected].

2. What we collect

  • Waitlist. Your email address, the phone type you pick (iPhone or Android), an optional campaign tag if you came from one, the date you signed up and, later, the date we invited you.
  • Your account. Your email address and name. You sign in with Google, Apple, or an email address and password, through Google’s Firebase Authentication. Firebase handles passwords and sign-in tokens; we do not store your password.
  • Wallets you connect or watch. Public wallet addresses and their chains, and public keys such as a Bitcoin xpub. WalletConnect shares your public address, not your keys.
  • Exchanges you connect. Read-only API keys for Binance, OKX, Bybit, Coinbase or Kraken, encrypted before we store them. We reject any key that can trade or withdraw.
  • Balances, positions and transaction history we read from your wallets and exchanges, and daily portfolio snapshots.
  • Files you import. Statements or exports you upload, and the holdings read from them. They can contain personal details, so remove anything you do not want processed.
  • Conversations. The messages you send the assistant, the answers and cards it returns, and files the assistant creates for you, such as scripts, CSVs and charts, which are saved in Files.
  • Photos and camera. A photo you add or take is saved with the conversation and sent to the AI provider. The camera can also read a QR code for a watch address; the code is read on your phone and only the address is used.
  • Voice. In voice mode your speech is streamed to a speech provider as you talk. We save the text transcript, not the audio. Each call gets a short report and can use earlier calls as context. You can delete calls in the app.
  • Settings and support. Alerts, watchlists, display choices and what you write to support.
  • Push notification tokens. If you turn notifications on, a token from Apple or Google to send alerts. Notifications carry no amounts.
  • Purchases and subscriptions. Product, dates and status, received from the App Store or Google Play through RevenueCat. We never see your card number.
  • Usage, crash and attribution data. Events about how the app is used (such as which screens open), crash reports, performance diagnostics, and attribution data that tells us which campaign led to an install. Usage events and attribution are on by default; you can ask us to turn them off (section 11). We do not put your conversations, email address or card details into analytics. For purchases we send the store transaction ID, amount, currency and product to Google Analytics and SolarEngine to measure which campaigns convert.
  • Technical data. Your IP address and the approximate location it implies, device model, operating system, app version, language and device identifiers. The website has no analytics or advertising scripts; our web server may keep standard security logs (IP address, browser, page).

3. What we never do

  • Vivi never asks for, and we never see, your recovery phrase or private keys, and never asks for passwords, 2FA codes or withdrawal rights.
  • Vivi never holds, sends or trades funds. Anything that would move money is a simulated confirmation card; you sign in your own wallet.
  • We do not send your conversations, balances or wallet addresses to our ad partners.

4. How we use your information

We use your information to:

  • run Vivi: read your accounts, answer questions, run analysis, save files and send your alerts;
  • create and secure your account and prevent fraud and abuse;
  • process purchases and keep accounting records;
  • show ads to free users (section 6), send your invite, beta news and service messages;
  • understand usage, fix crashes and measure which campaigns bring people to the app;
  • answer support requests, meet legal obligations and enforce our terms.

To stop waitlist emails, write to us and we delete your entry.

5. How the AI works with your data

Vivi’s assistant runs on AI models operated by service providers. When you ask something, we send the provider your message, relevant earlier messages, files or photos you attach and the lookups needed to answer, such as your portfolio holdings.

Analysis such as a backtest runs as Python in a cloud sandbox, and your files and the files it creates are held there and in cloud storage. Our model, sandbox and storage providers are Volcengine and BytePlus; voice mode uses Alibaba Cloud.

Your exchange API keys are never sent to the model or the sandbox. The assistant cannot save credentials, confirm an import or sign or send a transaction; it only prepares things for you to review.

AI answers can be wrong, and nothing Vivi says is investment advice.

6. Advertising

Vivi may show ads to free users: a skippable prompt after some creations, and an optional video you can watch for a reward. Ads come through TopOn, with the ad networks Pangle and Mintegral.

These partners collect device and ad identifiers (your advertising ID; on iPhone only if you allow tracking), your IP address, device and app information and how you interact with ads, under their own privacy policies.

  • iPhone. Vivi asks permission to track you. If you decline, or turn it off in Settings > Privacy & Security > Tracking, the advertising ID is not shared.
  • Android. Delete or reset your advertising ID in your phone’s Settings > Privacy > Ads.
  • Consent dialog. Where the law requires it, TopOn shows its own consent dialog before ads load. Decline there to refuse.

Or write to [email protected] and we will stop sending your data to ad partners. Declining does not remove ads.

7. Who we share information with

We share information only with providers we need to run Vivi, when the law requires it, or in a business transfer. We do not sell personal data for money. The providers we use today, besides hosting and infrastructure:

  • Sign-in, notifications, analytics and crash reports. Google Firebase (Authentication, Analytics, Crashlytics, Performance, Cloud Messaging) and Google Analytics.
  • Purchases. Apple (App Store), Google (Google Play) and RevenueCat.
  • Attribution. SolarEngine, which tells us which campaign led to an install.
  • Ads. TopOn, Pangle and Mintegral (section 6).
  • AI models, sandbox and file storage. Volcengine and BytePlus.
  • Voice mode. Alibaba Cloud (DashScope), which receives your speech while you talk.
  • Blockchain data. Public wallet addresses go to Alchemy, Blockstream, Etherscan, GoPlus and Binance (Binance Web3 reads token holdings) to read balances and check risk. For a swap simulation, your wallet address goes to LI.FI or Jupiter.
  • Market data. CoinGecko and Binance price and chart requests carry no personal information.
  • Wallet connection. Reown (WalletConnect) connects Vivi and your wallet app.
  • Exchanges you connect. We send your read-only key to the exchange you connect to read your data; its own policy applies.

Legal reasons. We may disclose information if the law, a court order or a valid government request requires it, or to protect the safety and security of our users, the public or us.

Business transfers. In a merger, acquisition or sale of assets your information may be transferred; we will tell you before a different privacy policy applies.

8. Where your information is processed

Our servers are in Singapore. Our providers process information in their own regions, which can include the United States, Europe, Singapore, Malaysia and mainland China.

So your information may be processed outside your country, where data protection laws can differ. Where the law requires a safeguard for a transfer, we put one in place.

9. How long we keep information, and deleting it

  • Waitlist. We keep your entry until you ask us to remove it, then we delete it.
  • Account data. We keep it while your account is open. Disconnecting an account removes the connection and its stored key.
  • Deleting your account. In the app, go to Settings > Delete account (in the group with Privacy policy and Terms), or email us from your sign-up address. Access ends immediately. We then delete from our own systems your workspace, conversations, files, voice calls, connected accounts and keys, alerts, push tokens, settings, snapshots and usage and attribution records, and remove your name and email from your account, retrying until it is done. The Delete your account page has the detail.
  • What we keep after deletion. Purchase, credit, referral, reward and ad-offer records linked to an internal account ID that no longer carries your name or email, and a one-way digest of your sign-in identifier, which we can only use to recognise the same identifier signing up again and prevent abuse of promotions.
  • Backups. Copies of our databases are kept for disaster recovery for a limited time, which we do not promise to a specific number of days. Deleted information may remain in a backup until our regular housekeeping removes it, and is not used.
  • Providers. Google, RevenueCat, SolarEngine, the ad partners and our other providers keep their own records. We will ask them to delete yours, or you can ask them directly. Deleting your account does not cancel a store subscription; cancel it in the store first.

10. Security

  • Data is encrypted in transit. Each account’s data is kept separate.
  • Exchange API keys must be read-only, are encrypted before we store them, are never shown to the AI and are checked again every day.

No system is perfectly secure, and we cannot guarantee your information will never be accessed, lost or misused. Use a strong, unique password and keep your recovery phrase to yourself. If a breach affects you, we will tell you as the law requires.

11. Your choices and rights

  • Access and correct. Ask us what we hold about you and have it corrected.
  • Delete. Delete your account, conversations or files in the app, or ask us to remove you from the waitlist.
  • Turn off analytics. Usage events and attribution are on by default. Email us and we will switch them off for your account. Crash reports and performance diagnostics continue, because we need them to keep Vivi stable.
  • Refuse ads tracking. See section 6.
  • Notifications. Turn push notifications and the daily brief on or off in the app or your phone’s settings.

To use these, email [email protected] from your account address. We may ask you to confirm it is you, and reply without undue delay and within the time the law requires.

12. Additional information for your region

United States. Wherever you live in the US, you can ask what we collect, use and disclose; access, correct and delete it; opt out of sale or sharing; limit use of sensitive information; and not be treated differently for doing so.

  • Collected in the last 12 months. Identifiers (email, name, device and ad IDs, IP address); financial information (addresses, balances, transactions, exchange keys); purchases and credits; app activity; approximate location from IP; your content (conversations, files, photos, voice transcripts); ad interactions.
  • Disclosed for a business purpose. To the providers in section 7.
  • Sale and sharing. We do not sell personal data for money. Passing ad IDs, IP address and device data to our ad partners (section 6) can count as “sale” or “sharing” under some state laws. To opt out, refuse tracking as in section 6 or email us. Our website has no advertising scripts, and the app cannot read a browser Global Privacy Control signal.
  • Sensitive information. Exchange API keys can give access to a financial account. We use them only to read your data, never for ads.
  • How to ask. Email [email protected]; an authorized agent can too. We reply within 45 days, extendable by 45 more if we tell you why. If we decline, you can ask us to reconsider, and you can contact your state attorney general. Retention is in section 9.

European Economic Area and United Kingdom. We process your information to provide Vivi (our agreement with you), for our legitimate interests (securing and improving Vivi, measuring usage, preventing abuse), with your consent where we ask for it (the iPhone tracking permission, the ad consent dialog), and to meet legal obligations. Usage events and attribution start without a separate prompt; you can object and have them switched off by email. You may also ask us to restrict processing, give you a portable copy or withdraw consent, and you can complain to your data protection authority.

Everywhere else. You can use the choices in section 11 wherever you live, and we will respect any more your local law gives you.

13. Children

Vivi is not for people under 18. If a child has given us information, email us and we will delete it.

14. Changes to this policy

We may update this policy as Vivi changes; the date at the top shows the latest version. If a change is significant, we will tell you by email or in the app first.

15. Contact

OnlySearch AI LLC · [email protected] · https://ifchat.net

Legal

Privacy policy

Last updated October 2, 2026

This policy explains what Vivi collects, why we collect it, who sees it and the choices you have. It covers the Vivi app for iPhone and Android, the website at ifchat.net and the waitlist.

On this page

1. Who we are

Vivi is a finance assistant made by OnlySearch AI LLC (“we”, “us”), the company responsible for your information. Vivi is a closed beta; people on the waitlist and people we have invited are covered by this policy. Questions: [email protected].

2. What we collect

  • Waitlist. Your email address, the phone type you pick (iPhone or Android), an optional campaign tag if you came from one, the date you signed up and, later, the date we invited you.
  • Your account. Your email address and name. You sign in with Google, Apple, or an email address and password, through Google’s Firebase Authentication. Firebase handles passwords and sign-in tokens; we do not store your password.
  • Wallets you connect or watch. Public wallet addresses and their chains, and public keys such as a Bitcoin xpub. WalletConnect shares your public address, not your keys.
  • Exchanges you connect. Read-only API keys for Binance, OKX, Bybit, Coinbase or Kraken, encrypted before we store them. We reject any key that can trade or withdraw.
  • Balances, positions and transaction history we read from your wallets and exchanges, and daily portfolio snapshots.
  • Files you import. Statements or exports you upload, and the holdings read from them. They can contain personal details, so remove anything you do not want processed.
  • Conversations. The messages you send the assistant, the answers and cards it returns, and files the assistant creates for you, such as scripts, CSVs and charts, which are saved in Files.
  • Photos and camera. A photo you add or take is saved with the conversation and sent to the AI provider. The camera can also read a QR code for a watch address; the code is read on your phone and only the address is used.
  • Voice. In voice mode your speech is streamed to a speech provider as you talk. We save the text transcript, not the audio. Each call gets a short report and can use earlier calls as context. You can delete calls in the app.
  • Settings and support. Alerts, watchlists, display choices and what you write to support.
  • Push notification tokens. If you turn notifications on, a token from Apple or Google to send alerts. Notifications carry no amounts.
  • Purchases and subscriptions. Product, dates and status, received from the App Store or Google Play through RevenueCat. We never see your card number.
  • Usage, crash and attribution data. Events about how the app is used (such as which screens open), crash reports, performance diagnostics, and attribution data that tells us which campaign led to an install. Usage events and attribution are on by default; you can ask us to turn them off (section 11). We do not put your conversations, email address or card details into analytics. For purchases we send the store transaction ID, amount, currency and product to Google Analytics and SolarEngine to measure which campaigns convert.
  • Technical data. Your IP address and the approximate location it implies, device model, operating system, app version, language and device identifiers. The website has no analytics or advertising scripts; our web server may keep standard security logs (IP address, browser, page).

3. What we never do

  • Vivi never asks for, and we never see, your recovery phrase or private keys, and never asks for passwords, 2FA codes or withdrawal rights.
  • Vivi never holds, sends or trades funds. Anything that would move money is a simulated confirmation card; you sign in your own wallet.
  • We do not send your conversations, balances or wallet addresses to our ad partners.

4. How we use your information

We use your information to:

  • run Vivi: read your accounts, answer questions, run analysis, save files and send your alerts;
  • create and secure your account and prevent fraud and abuse;
  • process purchases and keep accounting records;
  • show ads to free users (section 6), send your invite, beta news and service messages;
  • understand usage, fix crashes and measure which campaigns bring people to the app;
  • answer support requests, meet legal obligations and enforce our terms.

To stop waitlist emails, write to us and we delete your entry.

5. How the AI works with your data

Vivi’s assistant runs on AI models operated by service providers. When you ask something, we send the provider your message, relevant earlier messages, files or photos you attach and the lookups needed to answer, such as your portfolio holdings.

Analysis such as a backtest runs as Python in a cloud sandbox, and your files and the files it creates are held there and in cloud storage. Our model, sandbox and storage providers are Volcengine and BytePlus; voice mode uses Alibaba Cloud.

Your exchange API keys are never sent to the model or the sandbox. The assistant cannot save credentials, confirm an import or sign or send a transaction; it only prepares things for you to review.

AI answers can be wrong, and nothing Vivi says is investment advice.

6. Advertising

Vivi may show ads to free users: a skippable prompt after some creations, and an optional video you can watch for a reward. Ads come through TopOn, with the ad networks Pangle and Mintegral.

These partners collect device and ad identifiers (your advertising ID; on iPhone only if you allow tracking), your IP address, device and app information and how you interact with ads, under their own privacy policies.

  • iPhone. Vivi asks permission to track you. If you decline, or turn it off in Settings > Privacy & Security > Tracking, the advertising ID is not shared.
  • Android. Delete or reset your advertising ID in your phone’s Settings > Privacy > Ads.
  • Consent dialog. Where the law requires it, TopOn shows its own consent dialog before ads load. Decline there to refuse.

Or write to [email protected] and we will stop sending your data to ad partners. Declining does not remove ads.

7. Who we share information with

We share information only with providers we need to run Vivi, when the law requires it, or in a business transfer. We do not sell personal data for money. The providers we use today, besides hosting and infrastructure:

  • Sign-in, notifications, analytics and crash reports. Google Firebase (Authentication, Analytics, Crashlytics, Performance, Cloud Messaging) and Google Analytics.
  • Purchases. Apple (App Store), Google (Google Play) and RevenueCat.
  • Attribution. SolarEngine, which tells us which campaign led to an install.
  • Ads. TopOn, Pangle and Mintegral (section 6).
  • AI models, sandbox and file storage. Volcengine and BytePlus.
  • Voice mode. Alibaba Cloud (DashScope), which receives your speech while you talk.
  • Blockchain data. Public wallet addresses go to Alchemy, Blockstream, Etherscan, GoPlus and Binance (Binance Web3 reads token holdings) to read balances and check risk. For a swap simulation, your wallet address goes to LI.FI or Jupiter.
  • Market data. CoinGecko and Binance price and chart requests carry no personal information.
  • Wallet connection. Reown (WalletConnect) connects Vivi and your wallet app.
  • Exchanges you connect. We send your read-only key to the exchange you connect to read your data; its own policy applies.

Legal reasons. We may disclose information if the law, a court order or a valid government request requires it, or to protect the safety and security of our users, the public or us.

Business transfers. In a merger, acquisition or sale of assets your information may be transferred; we will tell you before a different privacy policy applies.

8. Where your information is processed

Our servers are in Singapore. Our providers process information in their own regions, which can include the United States, Europe, Singapore, Malaysia and mainland China.

So your information may be processed outside your country, where data protection laws can differ. Where the law requires a safeguard for a transfer, we put one in place.

9. How long we keep information, and deleting it

  • Waitlist. We keep your entry until you ask us to remove it, then we delete it.
  • Account data. We keep it while your account is open. Disconnecting an account removes the connection and its stored key.
  • Deleting your account. In the app, go to Settings > Delete account (in the group with Privacy policy and Terms), or email us from your sign-up address. Access ends immediately. We then delete from our own systems your workspace, conversations, files, voice calls, connected accounts and keys, alerts, push tokens, settings, snapshots and usage and attribution records, and remove your name and email from your account, retrying until it is done. The Delete your account page has the detail.
  • What we keep after deletion. Purchase, credit, referral, reward and ad-offer records linked to an internal account ID that no longer carries your name or email, and a one-way digest of your sign-in identifier, which we can only use to recognise the same identifier signing up again and prevent abuse of promotions.
  • Backups. Copies of our databases are kept for disaster recovery for a limited time, which we do not promise to a specific number of days. Deleted information may remain in a backup until our regular housekeeping removes it, and is not used.
  • Providers. Google, RevenueCat, SolarEngine, the ad partners and our other providers keep their own records. We will ask them to delete yours, or you can ask them directly. Deleting your account does not cancel a store subscription; cancel it in the store first.

10. Security

  • Data is encrypted in transit. Each account’s data is kept separate.
  • Exchange API keys must be read-only, are encrypted before we store them, are never shown to the AI and are checked again every day.

No system is perfectly secure, and we cannot guarantee your information will never be accessed, lost or misused. Use a strong, unique password and keep your recovery phrase to yourself. If a breach affects you, we will tell you as the law requires.

11. Your choices and rights

  • Access and correct. Ask us what we hold about you and have it corrected.
  • Delete. Delete your account, conversations or files in the app, or ask us to remove you from the waitlist.
  • Turn off analytics. Usage events and attribution are on by default. Email us and we will switch them off for your account. Crash reports and performance diagnostics continue, because we need them to keep Vivi stable.
  • Refuse ads tracking. See section 6.
  • Notifications. Turn push notifications and the daily brief on or off in the app or your phone’s settings.

To use these, email [email protected] from your account address. We may ask you to confirm it is you, and reply without undue delay and within the time the law requires.

12. Additional information for your region

United States. Wherever you live in the US, you can ask what we collect, use and disclose; access, correct and delete it; opt out of sale or sharing; limit use of sensitive information; and not be treated differently for doing so.

  • Collected in the last 12 months. Identifiers (email, name, device and ad IDs, IP address); financial information (addresses, balances, transactions, exchange keys); purchases and credits; app activity; approximate location from IP; your content (conversations, files, photos, voice transcripts); ad interactions.
  • Disclosed for a business purpose. To the providers in section 7.
  • Sale and sharing. We do not sell personal data for money. Passing ad IDs, IP address and device data to our ad partners (section 6) can count as “sale” or “sharing” under some state laws. To opt out, refuse tracking as in section 6 or email us. Our website has no advertising scripts, and the app cannot read a browser Global Privacy Control signal.
  • Sensitive information. Exchange API keys can give access to a financial account. We use them only to read your data, never for ads.
  • How to ask. Email [email protected]; an authorized agent can too. We reply within 45 days, extendable by 45 more if we tell you why. If we decline, you can ask us to reconsider, and you can contact your state attorney general. Retention is in section 9.

European Economic Area and United Kingdom. We process your information to provide Vivi (our agreement with you), for our legitimate interests (securing and improving Vivi, measuring usage, preventing abuse), with your consent where we ask for it (the iPhone tracking permission, the ad consent dialog), and to meet legal obligations. Usage events and attribution start without a separate prompt; you can object and have them switched off by email. You may also ask us to restrict processing, give you a portable copy or withdraw consent, and you can complain to your data protection authority.

Everywhere else. You can use the choices in section 11 wherever you live, and we will respect any more your local law gives you.

13. Children

Vivi is not for people under 18. If a child has given us information, email us and we will delete it.

14. Changes to this policy

We may update this policy as Vivi changes; the date at the top shows the latest version. If a change is significant, we will tell you by email or in the app first.

15. Contact

OnlySearch AI LLC · [email protected] · https://ifchat.net