PRIVACY
Privacy Policy
Effective: 13 September 2026 · Policy version 1.3
This policy explains data processing by the Aura Pet app, the Aura website, and payment and licensing services operated by Layar Digital. Optional features process data according to your settings and consent. AI, search, payment, email, and infrastructure services have their own policies.
API keys and device security
AI provider, Brave Search, and Microsoft Azure Speech API keys are stored in the app data folder on your device, encrypted through Electron safeStorage with Windows DPAPI bound to your Windows account. If OS encryption is unavailable, the app refuses to save keys without a plaintext fallback. The main process uses each key to authenticate to its corresponding provider; the interface does not receive stored keys back. Never share a key. This encryption does not protect against someone who already has access to your Windows account.
Chat and AI providers
Messages, necessary conversation context, relevant approved skill instructions, and attachments you choose may be sent directly from your device to your selected AI provider: Anthropic, OpenAI, Google Gemini, xAI, Qwen, DeepSeek, or OpenRouter. Chat data is not relayed through Aura servers. Each provider governs its own processing and retention. Local Ollama processes chat on your device; if you allow Ollama on another computer, data is sent to the address you configure.
Optional web search
Web search stays off until you consent and add a Brave Search API key. A search sends the relevant query to Brave Search, together with network information the service receives such as your IP address; it does not automatically send your entire history, attachments, documents, or user skills. Queries can include text you write, so avoid unnecessary personal data. Result snippets, titles, and source URLs may be sent to your selected AI provider to compose an answer. Aura does not give web pages access to files, API keys, or settings.
Voice replies
Text-to-speech is off by default. Local Windows mode processes reply text with voices marked local by Windows/Electron and does not send it to an external speech service. Users can separately consent to Microsoft Azure Gadis, a female Indonesian neural voice. In that mode, only the complete text selected for speech, the configured Azure region, network information such as the IP address, and technical request data are sent directly to Azure Speech; microphone audio, other history, attachments, and AI API keys are not sent. The user's Azure key authenticates the request, and billing/retention follow the user's account and Microsoft Azure policies. Only Aura replies are spoken automatically. You can stop speech, return to local mode to withdraw consent, or disable the feature at any time.
History, memory, attachments, and screenshots
Running conversation context is used to answer chat. Conversation memory, when enabled, is stored locally with DPAPI encryption; you control retention and can delete or export it through Settings. Attachments are read only after you select them; supported documents are extracted into text locally, then necessary text or media is sent to your AI provider according to its capabilities. Screenshots are captured only through actions you permit, not through continuous recording, and are not automatically saved as image files. Exports you save remain at the location you choose until you delete them.
User-created skills and preferences
Skills are stored locally as versioned declarative data, including names, instructions, triggers, enabled status, and permissions you grant. Other preferences such as language, startup, web consent, and voice also stay on your device. Skill text is not secret storage and should never contain API keys. Only relevant skills with appropriate permissions enter an AI request. Skill exports contain readable text; review them before sharing. Skills cannot run code or read secrets.
Payments, email, and licences
When you buy a character, services receive your purchase email, product, chosen provider, order ID, server amount/currency, verified payment status, and fulfilment/licence information. PayPal processes USD payments and Midtrans processes IDR when the respective method is available; payment details you enter are processed by them. Aura does not receive card numbers or PayPal passwords. Cloudflare provides hosting and service storage; Resend sends licence emails and recovery codes. These services receive data needed for those functions, not chat or AI API keys. A licence is issued after the server verifies a final payment; visiting a result page does not prove payment.
App licence activation and validation
The licence service at api.layardigital.agency receives the licence key during activation, a random installation ID, character, device label, app version, and a coarse operating-system name. Recovery uses email and a one-time code. The installation ID is not derived from a MAC address or hardware identity; the default device label does not use your Windows user name. Device tokens are stored encrypted locally and checked online. Offline use follows the verified token lifetime. The licence service does not receive chat, memory, attachments, or AI provider API keys.
Website, analytics, and service logs
The Store website requests an email for purchase and recovery; contact/feedback forms process information you submit. The website uses Cloudflare Web Analytics for visit and performance statistics. Google Analytics loads only when a measurement ID is configured; Consent Mode controls cookies and may send cookieless signals before a choice or after refusal. Cookie controls are explained in the Cookie Policy. The desktop app includes no analytics or telemetry SDK. Infrastructure may process IP addresses, access times, routes, and status for operations, security, and request limits; secrets and chat content are not part of intentional application logs.
Retention and deletion
Local data remains on your device according to retention settings, in-app deletion, and your own file management. Delete memory in Settings, remove unneeded user skills, and revoke API keys in provider dashboards to end access. Uninstalling the app does not automatically remove data already processed by external providers or exported files. Order, payment, email, and licence records are retained as needed for fulfilment, recovery, support, security, and applicable record-keeping obligations. Contact us to request access, correction, or deletion of service data; some records may need to be retained and we will explain why.
Processing across regions and your choices
AI providers, Brave Search, Microsoft Azure Speech, Cloudflare, PayPal, Midtrans, and Resend may process data in regions different from where you live according to their service and configuration. Choose providers for your privacy needs, minimize data in prompts/queries, turn off web or speech, and withdraw feature consent in Settings. For questions, data requests, or security concerns, contact info@layardigital.agency. Include an order ID only when necessary; do not send API keys, passwords, or private chat contents.