Legal

Privacy Notice

Last updated 1 August 2026

This Privacy Notice explains how Asiden Labs Ltd handles personal information when you visit asiden.ai, use the Asiden Windows application, buy a licence or optional cloud service, or contact us.

The short version is: Asiden is local by default. Local chat, memory and local screen context stay on your PC. Information leaves your device only when you choose a feature that needs a network connection, such as activation, purchase, managed cloud chat, managed cloud voice or managed cloud vision, or when you deliberately send us a support file.

1. Who we are

Asiden Labs Ltd is the controller for the personal information described in this notice.

Asiden Labs Ltd
Company number: 17312549
Registered office: 71–75 Shelton Street, Covent Garden, London, WC2H 9JQ, United Kingdom
Email: [email protected]

2. Information that stays on your device

Depending on the features you use, Asiden can store or process the following locally on your Windows PC:

  • conversation history and selectively distilled memories;
  • your chosen companion, custom persona, preferences and settings;
  • calendar and reminder information you enter;
  • local voice models, recordings or voice samples you create;
  • imported character files and other content you choose to add;
  • local diagnostic logs; and
  • screenshots, window text or other on-screen context while screen vision is enabled.

When you use a local AI model, Asiden does not send the conversation to Asiden Labs or a cloud AI provider. Local screen vision is off until you enable it. Microphone and voice-cloning features require your action and applicable Windows permissions.

You control these local files through the app's delete and reset controls and through Windows file management. Back up anything you want to keep before resetting, uninstalling or changing computer. We cannot retrieve local-only conversation or memory data for you.

3. Information used for managed cloud features

Managed cloud features are optional. The app identifies when a cloud route is selected.

Cloud chat

For managed cloud chat, the app assembles the text needed for the response. This can include your current message, recent conversation, relevant memories, companion instructions and on-screen context if you enabled it. The prompt travels over encrypted connections to our managed proxy and then to the selected provider route.

Our proxy has to receive the request to relay it, so this is not end-to-end encryption. The proxy is designed not to save prompt or reply content in our service database and we do not use conversation content to train our own models. The selected AI providers process the request under their applicable terms and retention settings.

Current managed chat routes use Venice AI or OpenRouter and may use a downstream model operator displayed in the app, such as OpenAI, Anthropic, Google, Meta, Mistral, DeepSeek, Qwen or another listed provider. A route described as “private” or “anonymized” is a provider processing mode; it does not mean that no provider receives the prompt, and it is not the same as end-to-end encryption.

Cloud voice

If you choose managed cloud speech, the response text is sent through our proxy to ElevenLabs to create audio. ElevenLabs may retain request data under the service settings available to us. Use local speech if you do not want response text sent to a cloud voice provider.

Cloud vision

Managed cloud vision is off by default. If you enable it, a selected screenshot and accompanying text can be sent through our proxy and the selected model-provider route. A local safety check runs first, but the transfer is not anonymous. Asiden does not continuously upload your screen in the background.

Your own provider key

If you enter your own third-party API key, you are directing the app to contact that provider. Your agreement and privacy relationship with that provider applies directly. Your API key is stored locally unless the app clearly tells you otherwise.

You can avoid cloud content processing by choosing local chat, local voice and local vision. Turning cloud use off stops future cloud requests but cannot undo processing that has already occurred.

4. Sensitive information

Companion conversations can contain information about health, sexuality, beliefs or other sensitive matters. Asiden does not need you to provide that information, and we do not use it for advertising, profiling for unrelated purposes, or decisions with legal or similarly significant effects.

Local-only content is not received by Asiden Labs. If you deliberately include sensitive information in a managed cloud request, it will be processed as part of that request by us and the provider chain described above. Where data-protection law requires explicit consent for that processing, we ask for it before first use of the managed cloud feature. You can withdraw consent for future requests by returning to local mode. If you are not comfortable with this processing, do not enter sensitive information while using a managed cloud feature.

5. Licence, purchase and service information

To activate the app and provide optional paid cloud services, we may process:

  • a licence-key identifier, activation status and pseudonymous device identifier;
  • the plan, renewal and entitlement status linked to the key;
  • Spark balances, paid-request reservations, usage cost and refund adjustments;
  • opaque random request identifiers used to prevent duplicate charges;
  • security, error and rate-limit information needed to protect and operate the service; and
  • your email, order reference and correspondence where supplied through purchase or support.

Polar acts as Merchant of Record for checkout. Polar handles payment details, sales tax, invoices, subscription management and payment refunds under its own privacy notice. We do not receive your full card details. The app may send Polar's purchase or subscription reference to our service so we can grant and maintain the correct entitlement.

Sparks measure use of paid cloud features. They are not used to analyse the subject matter of your conversation.

6. Website information

Our static website does not currently use behavioural advertising or analytics cookies. Our website and security providers, including Cloudflare, may process ordinary connection information such as IP address, browser and device type, requested page, referral information, timestamps and security events to deliver and protect the site.

If we later add non-essential analytics, embedded media or marketing cookies, we will update this notice and, where required, ask for consent before setting them.

Following a link to Discord, a crisis service, Polar or another third-party site takes you to that provider's service and privacy terms.

7. Why we use information

Our principal purposes and UK GDPR lawful bases are:

PurposePrincipal lawful basis
Supply activation, paid plans, cloud requests, voice and SparksPerformance of a contract
Operate, secure, troubleshoot and prevent fraud or duplicate chargingLegitimate interests in running a safe and reliable service
Keep transaction, tax and compliance recordsLegal obligation
Respond to support, refund and privacy requestsContract, legal obligation or legitimate interests, depending on the request
Process special-category information deliberately included in an optional cloud requestExplicit consent where required
Send optional marketingConsent, or legitimate interests where law permits and an opt-out is provided

We do not sell personal information. We do not use private conversation content for targeted advertising.

8. Who receives information

Depending on what you choose to use, recipients may include:

  • Cloudflare and our website/security infrastructure providers;
  • Microsoft Azure infrastructure in UK South for the managed proxy and service database;
  • Venice AI, OpenRouter and the downstream model provider displayed for a managed request;
  • ElevenLabs for managed cloud speech;
  • Polar for purchase, tax, invoice, subscription and refund handling;
  • a provider whose API key you supply;
  • professional advisers and regulators where necessary; and
  • law-enforcement or other authorities where disclosure is required by law.

Providers may act as our processors or as separate controllers depending on the service and contractual arrangement.

9. International transfers

Our core proxy infrastructure is configured in the United Kingdom, but some providers or their subprocessors may process information outside the UK. Where UK personal information is transferred to a country without UK adequacy regulations, we use an appropriate transfer mechanism where required, such as the UK International Data Transfer Agreement, the UK Addendum to approved standard contractual clauses, or another lawful safeguard. You can ask us for information about the safeguard relevant to a particular provider.

Choosing your own API provider can create a separate international transfer governed by your agreement with that provider.

10. Retention

We keep information only for as long as it is needed for the purpose described, to protect the service, or to meet legal and dispute-resolution duties.

  • Local conversations, memories, settings and media remain on your device until you delete or reset them. We do not control your backups.
  • Prompt and reply content is not intentionally persisted in the Asiden proxy database.
  • A resolved paid-request duplicate-prevention record, containing no prompt or reply content, normally expires after seven days. An unresolved payment hold may remain until it is reconciled.
  • Licence and entitlement records are retained while needed to provide and verify the licence and to handle fraud, refunds, chargebacks and disputes.
  • Transaction and tax records are retained for the periods required by applicable accounting and tax law. Polar also keeps records under its own obligations.
  • Support and privacy correspondence is kept until the request is resolved and then only for as long as reasonably needed for audit, legal or dispute purposes.
  • Security logs are retained for a limited period based on the severity of the event and the time needed to investigate and prevent recurrence.

Provider retention for managed cloud requests is governed by the provider route and settings in use at the time. Select local mode where provider retention is unacceptable to you.

11. Your rights

Depending on where you live and the circumstances, you may have rights to:

  • be informed about processing;
  • access personal information we hold about you;
  • correct inaccurate information;
  • ask us to delete or restrict information;
  • object to processing based on legitimate interests;
  • receive certain information in a portable form;
  • withdraw consent at any time for future consent-based processing; and
  • complain to a data-protection regulator.

Email [email protected] to exercise a right. We may need enough information to verify that the request relates to you. Because local-only data never reaches us, we cannot search, export or delete it remotely; you must use the app or Windows controls.

In the UK, you may complain to the Information Commissioner's Office. We would appreciate the opportunity to address your concern first, but you do not have to contact us before the ICO.

12. Children

Asiden is for adults aged 18 and over. We do not knowingly offer the app or managed service to children. If you believe a person under 18 has supplied personal information to us, contact [email protected].

13. Security

We use measures intended to protect information in transit and at rest, including encrypted network connections, signed entitlement data, access controls, secret management, rate limits and data-minimising service records. No software or service can be guaranteed completely secure. Keep licence keys and provider keys private, protect your Windows account, and avoid including information in a support report that we do not need.

14. Changes and contact

We may update this notice when the product, providers or law changes. We will change the date above and provide additional notice in the app or website where a change is material.

Privacy questions and rights requests: [email protected]

Asiden Labs Ltd · Company number 17312549 · 71–75 Shelton Street, Covent Garden, London, WC2H 9JQ, United Kingdom.