Privacy

What Yui keeps, and how to delete it.

Last updated September 28, 2026.

Invites

Yui is in alpha, open to anyone on TestFlight. You can also ask us for an invite, or for a hand getting set up, with the form at the bottom of each page. When you do, or we invite you, we store your first and last name, the email you give us (the one on your Apple ID, because that is where TestFlight sends the invite), your phone number, which page and link brought you, your browser type, and where your invite stands: requested, approved, invited, claimed or declined. Nobody but Yui's server can read that table.

Email

Yui has her own mailbox at yuigui.com, and she runs it herself: she reads what comes in and answers on her own, by rules we write together. Chris, who builds Yui, can read the mailbox too. We send email through SendGrid.

Chatting with Yui on this site

The chat bubble at the bottom right of yuigui.com is Yui, the same helper as in the app. You need no account to use it. We keep every chat, because reading them is how we learn what people want from Yui: we store what you and Yui say, the pages you were on, your browser type, which link brought you, and a scrambled (hashed) form of your IP address, never the address itself. Yui also writes short notes as you talk, like "wants an Android app" or "found a bug on the playground". Nobody but Yui's server can read these tables.

Signing in

You sign in to the Yui app with Apple. There is no password. Apple gives Yui a random ID that is unique to Yui and, if you allow it, an email address. If you choose "Hide My Email", Yui only ever sees an Apple relay address.

What the app stores on our servers

What stays on your phone

Keeping Yui safe

Where it goes

That data lives in a Supabase database in the United States. Each account can read only its own rows. Push notifications travel through Apple's push service and carry the agent's name and a preview of its reply. Your agents run on their own computers, which you connect: messages you send an agent go to that agent. We do not sell your data, share it with advertisers, or use it to track you across other apps. The app has no ads, no third-party analytics and no crash reporting service. It does not use your location or contacts.

On the computers your agents run on

The Yui plugin keeps a small outbox there, so a reply is not lost when the network drops. Photos you send reach the agent as files in its cache. The plugin can also log which custom screen shapes an agent draws (field names and types, never the values) to learn what to build next. That log is off unless the computer's owner turns it on, stays on that computer, and is never uploaded.

Planned: the private ledger

Not recording yet. For use to earn, Yui plans a private ledger of facts: the day your account was made, the days you sent a message or answered a screen, and pull requests or feedback of yours that shipped. It never holds what you said: it reads when a message was sent and by whom, never the words. Only Yui's server can read it today, a view of your own rows comes later, and deleting your account deletes them. When it starts, it fills in back to your first day, and this page will say the date. Details in the ledger spec.

Deleting your account

In the app, open Settings, then Account, then Delete account, and confirm. Deletion happens right away: your account, sessions, devices, agents, computers, pairings, access keys, messages, photos and pictures, and your invite, are removed from our servers, and Yui is removed from your Apple ID. It cannot be undone. Signing in with Apple again later starts a new, empty account.

Your agents run on their own systems. Deleting your Yui account removes what Yui stores; it does not erase what an agent you talked to kept on its own side.

Every table, by name

Yui is open source, so here is the full list. It matches the database migrations in the app repo.

TableWhat it holds
yui_usersYour account, and a pause flag if it is ever paused.
yui_sessionsSign-in sessions, hashed.
yui_apple_tokensApple's token to remove Yui from your Apple ID on delete.
yui_devicesYour phones: name, push token, the thread open right now.
yui_agentsYour agents: name, color, look, muted or not.
yui_connectorsThe computers your agents run on, with a hashed key.
yui_pairingsPairing codes. Single use, 10 minutes, deleted after a day.
yui_mgmt_tokensAgent access keys you create in Settings, hashed.
yui_oauth_clientsAI apps that registered to connect (like Claude): name and return address. Nothing about you.
yui_oauth_requestsConnect requests: which app, approved or not, by whom. Deleted after a day.
yui_oauth_tokensKeys for the apps you allowed, hashed, tied to the connection you can remove.
yui_messagesYour messages, when each was delivered and handled, and your reactions.
yui_rate_bucketsUsage counters for limits. Idle ones are deleted after a day.
yui_pair_attemptsWrong pairing codes and the IP they came from, for one day.
yui_invitesInvite requests and invites: name, email, phone, status, when the email was confirmed. Server only.
yui_mail_threadsEmail conversations with Yui: the other address, subject, where it stands. Server only.
yui_mail_messagesEach email in and out: addresses, subject, words, attachments, delivered or not. Deleted after a year. Server only.
yui_mail_contactsEach address Yui has emailed or heard from: name, confirmed, news yes or no, unsubscribed, bounced. Server only.
yui_mail_eventsDelivery reports from SendGrid: delivered, bounced, marked as spam. Deleted after 90 days. Server only.
yui_mail_rulesThe rules Yui answers email by. Nothing about you.
yui_limitsThe limit numbers themselves. Nothing about you.
yui_channel_guidesThe guide text agents get. Nothing about you.
yui_site_chatsChats with Yui on yuigui.com: pages, turn count, a hashed IP, and your name, email and phone if you left them. Server only.
yui_site_chat_messagesWhat you and Yui said in a yuigui.com chat. Server only.
yui_site_chat_notesWhat Yui wrote down from a yuigui.com chat: needs, ideas, bugs. Server only.
yui-media (storage)Photos and pictures in your threads. Private, links expire.
yui-mail (storage)Attachments in email to Yui. Private, links expire, deleted with the email.

What we declare to Apple

On the App Store privacy label, Yui lists: contact info (email address), identifiers (your account ID and the device push token), user content (your messages, and the photos and videos in them) and usage data (which thread is open). All of it is linked to your account, used only to make the app work, and none of it is used to track you.

Help and contact

Questions, problems or a deletion you cannot finish in the app: yuigui.com/help, or email [email protected]. Yui is open source, so you can also read exactly what it does at github.com/postscarcityai/yui.

This website

The film behind "Watch the film" in the top bar and the videos on these pages are hosted here, and nothing loads until you press play. yuigui.com uses Google Analytics to count visits. It never sees an invite code: an invite link is counted as yuigui.com/i/ without it. The form at the bottom of each page writes to the yui_invites table, described under Invites above. The old waitlist (yui_waitlist) is closed, and its entries became invite requests. To be removed, email us.

Try Yui, or help build it

Get the alpha

The MVP is done and Yui is in alpha, open to anyone with an iPhone on iOS 26. Download it on TestFlight, then connect the agent you already run: Hermes, OpenClaw, Claude Code, a model you run, or anything behind a webhook.

Star it on GitHub

Yui is open source under Apache 2.0. Star the repo, open an issue, or send a pull request.

Lend your agent

Spare tokens on Claude or ChatGPT Codex? Your agent can pick a card off our backlog and open a pull request. Yui@home, like SETI@home.

Want a hand getting in?

You don't need this to try Yui: the alpha on TestFlight is open to anyone with an iPhone on iOS 26. Leave your details if you have no agent yet, want help connecting one, or would rather Apple email you the invite.

  1. Yui emails you a link to confirm your address.
  2. We read your request, and reach out if you asked for help.
  3. Apple emails you a TestFlight invite.
  4. Open it on your iPhone, install Yui, and sign in with Apple.

We use this only to get you into Yui. Privacy.