Privacy Policy
Your data, clearly explained.
We built VIGPT to be straightforward about what we collect, why, where it's stored, and how you can remove it.
What we collect
Phone number — used solely to authenticate you via one-time password (OTP). We do not collect national ID numbers or bank/card numbers. Profile name and avatar — set by you, used to personalise your experience. Chat messages, uploaded documents, and AI-generated images/media — stored to provide your conversation history and let you continue across sessions and devices. Payment reference tokens — short opaque identifiers from our payment processor confirming a transaction completed. We never see or store full card numbers. Crash and error reports — collected via a self-hosted Sentry instance. Reports may include device model, OS version, and a stack trace. No content from your chats is included.
Where your data is stored
Your account information, chat history, and uploaded files are stored on servers located in Iran. The one exception is message content sent for AI processing: to generate a response, the text (and any attached files) of the message you send is transmitted to the third-party AI provider behind the model you are using, which may operate outside Iran. See the next section.
Third-party AI model providers
When you send a message, its content is transmitted to one or more third-party AI model providers to generate a response. This is a core function of the service. The providers we currently use may include, but are not limited to: OpenAI, Anthropic, Google DeepMind, and Mistral AI. The specific provider depends on the model selected (manually or by Auto routing). Each provider's own privacy policy governs how it handles your inputs. By using VIGPT you acknowledge that your messages are shared with these providers for the sole purpose of generating responses.
We do not train models on your data
We do not use your conversations, files, or personal information to train our own models, and we do not sell your data or use it for advertising. How third-party providers handle data sent to them for inference is governed by their respective policies.
How we use your data
Phone number: authentication only. Profile data: display within the app. Chat and file data: to deliver and persist your conversations. Payment references: to verify subscription status. Crash reports: to identify and fix bugs.
Data retention
Your conversation history is retained for as long as your account exists. You can delete all your chats at any time from Settings → Delete all chats. Account deletion removes your personal data from our systems within 30 days. Payment and transaction records may be retained longer where required by Iranian financial and anti-money-laundering law.
Your rights
You can request access to, correction of, or deletion of your personal data, and you can object to certain processing. To exercise these rights, contact support@vigpt.ai. We respond within 30 days.
How to delete your data
Delete all chats: Settings → Delete all chats. This is immediate. Delete your account: contact us at support@vigpt.ai with the subject line 'Account deletion request'. We will process the request within 30 days and confirm by email.
Security
Data is encrypted in transit (HTTPS). Authentication tokens are stored only in hashed form, and access to stored data is limited to authorised personnel. No method of transmission or storage is ever completely secure, so keep your device and access to your phone number protected.
Legal disclosure
We may disclose data when required to do so by a valid order of a competent authority of the Islamic Republic of Iran, or to protect the rights, safety, and security of our users and the service.
Device permissions (mobile app)
Camera — requested only when you choose to take a photo (e.g., for your profile avatar or to attach an image to a chat). Photo library — requested only when you choose to attach a photo from your gallery. Microphone — requested only when you choose to record a voice message in chat. Notifications — requested only when the app needs to inform you of relevant events. You can deny or revoke at any time.
Children
VIGPT does not set a minimum age, but it is a general-audience product and is not designed specifically for children. Parents and guardians are responsible for supervising minors' use of the service and any purchases made.
Changes to this policy
We may update this policy as the service evolves. Material changes will be announced in the app or on our website. Last updated: June 2026.
Trust & verification
VIGPT holds the Iranian Electronic Trust Symbol (eNamad / نماد اعتماد الکترونیکی).
Contact
Privacy questions: support@vigpt.ai Data deletion requests: support@vigpt.ai (subject: 'Account deletion request') Company: Vira Software Development Solutions (Private Joint Stock Co.) Address: Tehran, Africa Blvd (Nelson Mandela), Tobin Alley, No. 16, Kaneh Building, 4th Floor, Unit 44 Phone: 021-86080516