1. What this document covers
This explains what Banafsh collects when you use the service, why, who it is shared with, and what control you have over it.
This is version 2.1.
2. What we collect
Mobile number: to sign you in and identify your account. A one-time code is sent to you through an SMS provider.
First and last name: optional, only if you enter them in your profile. Also your chosen language.
IP address and country: for security, abuse prevention and geographic restrictions. These are written to the audit log.
Chat content: only if “save chat history” is on. With it off, no message is ever written.
Attachments: images you upload into a chat.
Financial information: wallet balance, transactions, redeemed top-up codes and subscription state. We do not receive or store your bank card details.
Feedback you send through the feedback tool, together with the page it was sent from.
Audit log: sensitive events such as sign-in, acceptance of terms, key issuance and support actions.
3. Why we process it
To provide the service itself; to bill accurately; for security and abuse prevention; to support you; and to meet legal obligations.
We do not sell your information or make it available to others for advertising.
4. Your chats
“Save chat history” is yours to control in settings. Turn it off and chat still works, but nothing is stored.
When it is on, message titles and text are stored encrypted (AES-256-GCM).
You can delete any single conversation, or all of them at once, from inside the app.
To produce a reply, your message must be sent to a model provider; see section 6.
5. Attachments
Files are stored outside the public web path and are readable only through a signature-gated endpoint.
Images are re-encoded before storage, and EXIF metadata — including GPS location — is stripped at that point.
An attachment not linked to a stored message is deleted automatically after about an hour. For a user with history off, it is deleted immediately after being sent to the model.
6. Who we share it with
SMS provider: your mobile number, to deliver your sign-in code.
AI model providers: your message text and attachments are sent, through our gateway, to the provider of the model answering you. A reply cannot be produced otherwise.
Feedback analysis: where enabled, your feedback text is sent to an external AI service for automatic categorisation, and may be recorded in our issue tracker (a private repository).
Infrastructure: hosting, database and backups.
Authorities: where legally required.
7. Retention and deletion
Chats are kept until you delete them, or until you close your account.
Closing your account deletes your chats and attachments immediately — not on a later schedule.
Account and financial records — including the transaction ledger — are kept while the account is active and, including after you close it, for as long as tax and commercial law requires. They remain visible to Banafsh staff.
Any wallet balance you hold when you close your account is frozen, not deleted: it stays on the account but cannot be spent, and is written off to zero 180 days after closure if the account is not reopened.
The audit log is append-only and deliberately survives deletion of user data; that record is needed for security and accountability.
The database is backed up in encrypted form and those backups are retained for several months. Deleting a record therefore does not immediately erase it from every backup, though backups are not used unless restored and age out on their own cycle.
8. Security
Your chat text and your keys are stored encrypted, and the encryption key is held separately from the data.
Admin access is restricted to an internal network, and every support action on your account is written to the audit log.
No system is completely safe; we take care, but we cannot guarantee absolute security.
9. Your rights
Access and correction: you can view and change your profile information.
Deleting chats and attachments: from inside the app, at any time.
Not storing anything: by turning chat history off.
Closing your account: available at any time from Settings inside the app. It ends your access immediately, deletes your chats and attachments right away, and revokes every API key. As explained in section 7, financial and audit records are retained and any remaining balance is frozen rather than deleted. Reopening a closed account is not self-service — contact us at privacy@banafsh.com — and reopening does not restore deleted chats or grant a second welcome credit.
For any question about your data, write to the same address.
10. Cookies
We use a single essential cookie to keep you signed in. There are no advertising or third-party tracking cookies.
11. Changes to this policy
If we change this policy materially, the version number goes up and you will be asked to accept the new version the next time you sign in.
12. Contact
For any privacy question or request: privacy@banafsh.com