Last updated: Feb 28, 2026
Welcome to Bestie AI!
Acornaware Technologies ("we", "us", "our" and/or "ours") operates the Bestie AI mobile and web applications, including Bestie AI (the "Apps"), the informational website https://acornaware.com/ and other related services (collectively, the "Services").
We are committed to protecting your privacy. This Privacy Policy describes how we collect, store, use, and share information through our Services.
For the purposes of the General Data Protection Regulation (EU) 2016/679 ("GDPR") and similar data protection laws (such as the UK GDPR), Acornaware Technologies acts as the "Data Controller" responsible for deciding how and why your personal data is processed.
We care about the protection and confidentiality of your information. When you use the Apps, you may provide information during your use of the Apps. We process this information only as described in this Privacy Policy, such as to enable you to receive personalized and secure AI-generated content based on your uploaded photos, chats and prompts. We may also use information about your visit to our website to promote our Services, but we will never use or disclose the content of your content generations for marketing or advertising purposes.
Any terms we use in this Policy without defining them have the definitions given to them in our Terms of Service. If you have any questions, please contact us at contact@acornaware.com.
We may collect information from and about you to provide and improve our services. This includes:
User-Provided AI Interactions: To power the core functionality of the app, we collect the content you actively submit, including, but not limited to, text messages, voice inputs, and conversational context.
Automatically Collected Information: Technical and usage data collected as you navigate the app.
Information from Other Sources.
Through your use of the Services, you may provide us with the following information:
This may include your email address, password, and other information used to register or authenticate your account (such as username, phone number, or third-party login credentials, where applicable).
We collect information that you provide when you set up an account, such as (where applicable) your date of birth and username.
This includes information you send or receive via the Apps, such as details relating to you or your relationships, together with any photos, videos, voice messages and text messages you provide to the AI.
You may select generating preferences, such as topics you would like to explore, and communication preferences, such as the times of day you like to use the Apps. We also learn about your interests and your preferences over time through your use of the Services to personalize your interactions and the features of the Services.
When you make purchases through the Services, we collect your payment information. We maintain a record of your purchases, the features you select, and the rewards you earn and use.
We automatically log the following information about you, your computer or mobile device, your network, and your interactions over time with our Services and our communications:
This includes your computer's or mobile device's operating system, manufacturer and model, browser, IP address, device and language settings, mobile device carrier, and general location information such as city, state, or geographic area.
This includes information about how you use the Services, such as your interactions with the Services, the links and buttons you click, and page visits.
Where available, if you choose to sign-up or log-in to the Services using a third-party service such as Apple or Google, or link your account to a third-party service, we may collect information from the service, such as access token.
Advertisers, measurement, and other partners share information with us about you and the actions you have taken outside of the Apps, such as your activities on other websites and apps or in stores, including the products or services you purchased, online or in person. These partners also share information with us, such as mobile identifiers for advertising, hashed email addresses and phone numbers, which we use to help match you and your actions outside of the Apps.
We use your information for the following purposes:
| Purpose | Why and how we use your information | Legal basis | Categories of information |
|---|---|---|---|
| Operating and administering the Services | Providing and maintaining the content and functionality of the Services. Carrying out obligations arising from our contract with you. Creating your account and profile. Facilitating payments and transactions, including for the purchase of premium features, and managing your rewards. Responding to your inquiries, comments, feedback or questions, and troubleshooting. Managing our relationship with you, which includes sending administrative information to you relating to our Services. | Contractual necessity | Account information. Profile information. Messages and content. Interests and preferences. Payments, transactions, and rewards. Device and network data. Usage data. |
| Providing the core functionality of the Apps | Providing you with personalized AI-generated content and allowing you to customize your profile, preferences, and creative inputs. Enabling you to generate unique, safe, and entertaining content experiences by maintaining a continuous dialogue history and personalizing your interactions based on conversational context. The interactions, prompts, and messages you submit are securely transmitted to our third-party AI partners (such as Google and OpenAI) solely to process your immediate requests, remember your preferences within the app, and generate responses in real-time. We explicitly confirm that your data is NOT used to train or fine-tune our AI systems or the public models of our third-party partners. Syncing your activity history across the devices you use to access the Services. | Contractual necessity | Account information. Profile information. Messages and content. Interests and preferences. Payments, transactions, and rewards. Device and network data. Usage data. |
| Monitoring and protecting the Services | Preventing fraud, criminal activity, and misuse of our Services, and ensuring the security of our IT systems, architecture and networks (including testing, system maintenance, support, and hosting of data). | Legitimate interests | Account information. Profile information. Messages and content. Interests and preferences. Payments, transactions, and rewards. Device and network data. Usage data. |
| Analyzing trends in the use of the Services | Aggregating, anonymizing, and deidentifying personal information. Analyzing the use and effectiveness of our Services. Improving and adding features to our Services. Developing our business and marketing strategies. | Legitimate interests | Account information. Profile information. Messages and content. Interests and preferences. Payments, transactions, and rewards. Device and network data. Usage data. |
| Marketing and advertising the Services | Sending you information by Push Message and/or email that we believe will be of interest to you, such as information about our Services, features, and surveys. Displaying and targeting advertisements about our Services on the internet. | Legitimate interests. Consent, where required by applicable laws | Account information. Device and network data. Usage data (Strictly excluding Messages and content, voice inputs, and AI-generated content) |
| Enforcing our agreements, complying with legal obligations, and defending against legal claims and disputes | Enforcing and complying with our terms and policies. Protect our and others' rights, privacy, safety, or property. Ensuring the integrity of our Services. Verifying the age of registered users. Defending against legal claims and disputes. Recovering payments due to us. Keeping records of transactions, and complying with legal process. | Legitimate interests. Legal obligation | Account information. Profile information. Messages and content. Interests and preferences. Payments, transactions, and rewards. Device and network data. Usage data. |
We share your information with companies and individuals that provide services on our behalf or help us operate the Services or our business (such as cloud hosting, IT support, customer service, email delivery, and website analytics). We may also work with companies that provide marketing services on our behalf; however, we do not share your chat, uploaded photos, generated content, or other user-generated materials created within the Apps for marketing or advertising purposes. For example, we may share your email address with marketing platforms to deliver promotional emails or to help us reach new users who may be interested in us or the Services.
AI-generated content is processed using third-party AI services from Google and OpenAI, and their respective privacy policies apply. Under the applicable developer and enterprise terms , your interactions and generated content are not used to train or improve the providers' AI models . These services are used solely to process your requests. For more information, please refer to the enterprise privacy commitments of Google and OpenAI.
We may share information with professional advisors, such as lawyers, auditors, bankers, and insurers, where necessary in the course of the professional services that they render to us.
We share information about visitors to our Website, such as the links you click, pages you visit, IP address, advertising ID, and browser type with advertising companies for interest-based advertising and other marketing purposes. Sharing this information allows us and our advertising partners to target and serve advertising to you and others. However, we do not share personal conversations, AI-generated content or uploaded photos with our advertising partners.
We may share information with law enforcement, government authorities, and private parties, as we believe in good faith to be necessary or appropriate for the legal compliance and protection purposes described above in Section 2.
We may share information with acquirers and other relevant participants in business transactions (or negotiations for such transactions) involving a corporate divestiture, merger, consolidation, acquisition, reorganization, sale, or other disposition of all or any portion of the business or assets of, or equity interests in us (including, in connection with a bankruptcy or similar proceedings).
We do not sell your personal information or user-generated content. We share your information only when necessary to operate the Services, or when legally required to do so.
We use a variety of industry-standard security technologies and procedures to help protect your data from unauthorized access, use, or disclosure.
Where applicable, your account may be protected either through third-party login providers (such as Google or Apple) or through a password that you set. If you login through a third-party login providers, we rely on the security mechanisms provided by those platforms to help protect your account. You are responsible for keeping your third-party credentials secure and for taking appropriate steps to prevent unauthorized access to your device. In the case that you log in with a password, you are responsible for selecting a secure password and protecting it appropriately. Regardless of login method, we recommend securing your device to prevent unauthorized access.
All transmitted data are encrypted during transmission. We use standard Secure Socket Layer (SSL) encryption that encodes information for such transmissions. All stored data are maintained on secure servers. Access to stored data is protected by multi-layered security controls, including firewalls, role-based access controls, and passwords.
While we use commercially reasonable efforts to protect your data, no technology, transmission, or system is completely secure. In the unlikely event of a security breach involving your personal data, we will assess the impact and, where legally required or appropriate, notify you as soon as reasonably possible.
The information you provide to us may be transferred to, stored, and processed in the United States or other countries where we or our service providers operate. Please note that these jurisdictions may have data protection laws that differ from those in your country of residence.
When we transfer your personal data internationally, we take appropriate steps to ensure it is treated securely and in accordance with this Privacy Policy. Depending on the applicable laws, we implement recognized legal mechanisms to safeguard your data during these transfers. This may include relying on adequacy decisions or utilizing standard contractual safeguards (such as Standard Contractual Clauses) with our service providers to maintain an equivalent level of protection.
We retain your personal information only for as long as necessary to fulfill the purposes for which it was collected, including to satisfy any legal, accounting, or regulatory requirements.
When determining the appropriate retention period, we consider factors such as the nature and sensitivity of the personal information, the potential risk of harm from unauthorized use or disclosure, the purposes for which we process the information and whether those purposes can be achieved through other means, as well as applicable legal obligations.
Depending on your location (including residents of the EEA and the UK), you have specific rights regarding your personal data under the GDPR and similar laws. These include the right to:
Access: Request a copy of the personal data we hold about you.
Rectification: Request correction of inaccurate or incomplete personal data.Erasure ('Right to be Forgotten'): Request the deletion of your personal data, including your chat history. You can also delete your account directly in your account settings.Restriction: Request restriction of processing your personal data.
Data Portability: Receive a copy of your personal data in a structured, commonly used, and machine-readable format.
Object: Object to our processing of your personal data, especially for direct marketing.
Withdraw Consent: Withdraw your consent at any time where processing is based on consent. Withdrawing consent does not affect the lawfulness of processing prior to withdrawal.
How to exercise your rights:
You may exercise these rights by contacting us at contact@acornaware.com. We will not discriminate against you for exercising your privacy rights. If you believe your rights have been violated, you also have the right to lodge a complaint with your local data protection supervisory authority.
Our Services are not directed to children under the age of 13 (or under 16 where a higher minimum age applies, such as in certain EU countries). We do not knowingly collect personal information from anyone under the applicable age limit.
If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at contact@acornaware.com so we can take steps to promptly delete such data.
We may update this Privacy Policy from time to time to reflect changes in our practices, the Services, or applicable laws. We encourage you to review this page periodically for the latest information. Any changes will be effective when we post the revised policy, unless otherwise stated. The date at the top of this page indicates when this Privacy Policy was last updated.
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
Email: contact@acornaware.com
Data Controller: Acornaware Technologies