Privacy at Osera

The short version of how your information powers Osera and where the boundaries are.

Privacy Policy

Last updated: August 24, 2026

Bloom Street LLC ("Bloom Street," "we," "us," or "our") operates Osera, a personal AI application and related services, including the iPhone app, desktop daemon, backend services, admin systems, and website at osera.io. This Privacy Policy explains what information we collect, how we use it, where it may be processed, and the choices you have.

Osera is designed to be personal. That means it can process sensitive context, including messages, health signals, location, calendar events, reminders, photos metadata, contacts, files, voice notes, music context, and data from connected accounts when you choose to grant access.


1. AI and Safety Disclosure

Osera is powered by artificial intelligence. You are not talking to a human, therapist, doctor, lawyer, financial advisor, emergency service, or crisis counselor. AI responses can be inaccurate, incomplete, inappropriate, or unexpectedly personal because they are generated from your conversation and context.

When enabled connected services let Osera take actions, Osera can misunderstand intent or context and take unintended actions that are wrong, duplicate, incomplete, delayed, or irreversible. Actions may come from direct requests, standing permissions, heartbeats, automations, and background goals, depending on the features you enable.

Connected content, including messages, documents, websites, and tool results, can contain hidden, malicious, misleading, or hostile instructions. Those instructions may try to manipulate Osera's actions. Safety, permission, and confirmation controls reduce but cannot eliminate these risks. Scope or revoke access you no longer need, monitor important activity, and report unexpected behavior to us.

Do not use Osera for emergencies. If you may harm yourself or someone else, call or text 988 in the United States, contact local emergency services, or reach a trusted person immediately. Osera may show crisis resources when our systems detect self-harm or crisis language, but those systems are not guaranteed to detect every emergency.

2. Information We Collect

2.1 Account and Authentication

2.2 Messages, Memory, and Personalization

2.3 Files, Images, Camera, and Photos

2.4 Apple Health and Fitness Data

If you enable Apple Health sync and grant HealthKit access, Osera reads workouts, sleep, sleep stages when available, steps, active energy, exercise minutes, distance, flights climbed, resting heart rate, heart-rate variability, cardio fitness, and body weight.

When sync is enabled, Osera sends three layers to our backend:

You can also log your weight manually in the app or by telling Osera your weight in chat. Those entries are direct user input: they are stored on our backend as part of your conversation and health history whether or not Apple Health sync is on, and they power your weight trends, briefings, and check-ins.

We use this data for morning cards, briefings, chat answers, pattern recognition, and proactive check-ins. HealthKit data is not sold, used for advertising, used for marketing data mining, or shared with data brokers. Relevant health context may be sent to AI providers when needed to answer you or generate a proactive message.

2.5 Location, Weather, and Places

2.6 Calendar, Reminders, Contacts, and Connected Accounts

2.7 Voice, Audio, Speech, and Music

2.8 Desktop Daemon and Local Workers

If you use the Mac desktop daemon, Osera may process daemon status, worker installation and health, local command results, machine connection state, logs, and local integration outputs. Some desktop flows can access local tools or Apple services on your Mac only after local OS permission or user setup. The desktop app is intended as a setup and worker dashboard, not the primary chat surface.

2.9 Device, Usage, Analytics, and Diagnostics

2.10 Browser Control When Enabled

Browser control remains under development. These disclosures describe processing that applies only when the feature is enabled and used; they are not a statement that it is currently available or cleared for launch.

When browser control is enabled and you choose to use it, Osera may process authenticated browser session state, including cookies, origins, and local or session storage; URLs and visible page content; DOM and accessibility-derived data; live or replay frames; takeover input events; and browser activity receipts and audit records.

Page content, URLs, DOM and accessibility-derived data, and tool results may be processed by Osera and by model providers when included in model requests. Browser infrastructure and integration providers process the data needed to operate their distinct parts of the feature.

Authenticated browser custody state is encrypted before storage.

Live browser frames may be conditionally masked during credential injection, when URL safety is blocked or not yet confirmed, or when page focus is unknown or on a sensitive field, but those safeguards may not identify every sensitive item.

Replay capture may be suppressed or cross-origin content occluded around sensitive or password contexts, but replay frames can still contain visible page content.

Disconnecting browser access stops future restoration through that connection and removes or revokes Osera-held connection credentials where supported. It does not close, delete, or necessarily sign you out of the underlying external account.

Browser receipts, connection metadata, custody records, and replay frames may have different retention and pruning rules. Some records are pruned only as new runs occur, and current account deletion does not yet prove complete deletion of every account-specific browser record.

3. Apple Permission Strings and App Permissions

The current iOS app declares permission use for Health sharing and updating, location When In Use and Always, photo library read/write and add-only save, camera, microphone, speech recognition, calendars, reminders, contacts, Apple Music, notifications, WeatherKit, Sign in with Apple, associated domains, Live Activities, and communication notifications.

Revoke an OS permission: You can revoke a device permission through iOS Settings or macOS System Settings. This stops new collection or device access for that permission, but it does not automatically remove information already incorporated into messages, files, summaries, memories, derived profiles, action records, logs, backups, or generalized learnings.

4. How Data Reaches AI Providers

Third-party AI providers receive context to perform requested services, including to generate responses, route tools, summarize context, create proactive messages, process files, or power voice features. That context can include your message, previous conversation context, memory, files, image attachments, tool results, calendar/reminder context, location/weather/place context, photo-derived context, health and nutrition context, and connected-service results.

Current provider families in code include Anthropic, Google Gemini, MiniMax, DeepSeek, xAI/Grok, OpenAI, Groq, Moonshot/Kimi, Mistral, Together, DeepInfra, Fireworks, and OpenRouter. OpenRouter may receive requests on primary or fallback routes and may route them to downstream model providers. Third-party AI providers may be developed or operated in different countries, and data may be processed in the United States, the European Union, or other jurisdictions. Provider routing can change for reliability, quality, cost, or latency, including through OpenRouter and its downstream providers.

We do not intentionally send your account password, payment card number, OAuth tokens, API keys, or integration credentials to AI providers as prompt context. We do not currently guarantee redaction of personal information you include in messages, files, or tool results before they are sent to AI providers.

Bloom Street's own improvement uses are distinct from third-party AI-provider processing. Provider terms and contractual controls are not identical. We honor provider-specific no-training or restricted-use commitments where they apply. A provider route that conflicts with a binding source restriction is not authorized by this policy.

5. How We Use Information

We may investigate suspected violations of the Acceptable Use Policy, preserve relevant records, including records subject to a valid legal hold, restrict capabilities, and suspend or terminate access.

5.1 Service Operation and Consumption Tracking

We measure service use, including message counts, voice minutes, attachment volume, tool invocations, action traces, outcomes, and model/provider token consumption, to operate the service, enforce plan limits, prevent abuse, improve reliability, and give you visibility into use where available.

6. Personalization and Product Improvement

Private content includes message and file contents, model outputs, memories, summaries, embeddings, tool arguments and results, connected-account contents, and sensitive facts or inferences derived from those sources. Osera processes private content to provide and personalize the service for you, including memory, responses, proactive features, and actions you authorize.

Bloom Street does not use private content or account-linked data to train or fine-tune general-purpose or foundation language models.

We use action-performance information such as the feature or tool used, timestamps, latency, completion state, error category, approval state, and structured reactions or correction states to operate Osera and improve reliability and safety. Account-linked operational telemetry may be used for internal product, adoption, reliability, and safety analysis. Only genuinely aggregated or deidentified telemetry may contribute to cross-user model development or generalized analysis. Free-text or otherwise content-bearing feedback remains private content.

Authorized personnel and processors may review limited, sampled private interactions for quality and safety evaluation, support, security, abuse prevention, legal compliance, or investigation of a specific reliability or safety problem, except where source-specific restrictions provide otherwise. Access is limited to what is reasonably needed for those purposes. This review is not foundation-model training.

Osera may create reusable workflows from generalized action patterns and outcomes. Reusable workflows made available across users must not contain private content, identifiers, or sensitive facts inferred from them and must be human reviewed before publication. Automatically generated action traces cannot directly become shared workflows; publication requires human review.

Passwords, OAuth tokens, API keys, integration credentials, payment credentials, session cookies, and comparable authentication or payment secrets are excluded from model development and cross-user learning. Google Workspace API data and HealthKit-originated data are not used by Bloom Street to train or fine-tune general-purpose or foundation language models or for cross-user model development. Review and personnel access involving Google Workspace API data remain subject to Google’s policies and Limited Use requirements. Google Workspace API data may not appear in a published shared workflow as private content.

Osera’s use and transfer of information received from Google Workspace APIs complies with the Google Workspace API User Data and Developer Policy, including its Limited Use requirements. Google Workspace API data is not used to create, train, or improve a model beyond that specific user’s personalized model for the appropriate user-facing use case, and no other prohibited use is authorized.

These restrictions apply in addition to the HealthKit commitments above: HealthKit data is not sold, used for advertising, used for marketing data mining, or shared with data brokers.

7. How We Share Information

We do not sell personal information. We share information only when reasonably necessary and proportionate to run Osera, act at your direction, comply with law, protect rights, safety, security, or service integrity, or enforce our policies as specifically described below.

For those narrow purposes, and only in response to a valid request or documented investigation, we may make reasonably necessary and proportionate disclosures to service providers, affected platforms, rights holders, and lawful authorities, subject to this Privacy Policy and applicable law.

8. Retention and Deletion

Data Type Current Retention
Messages, cards, memory, threads, health-aware reasons, and most personalization dataRetained while your account is active; deleted during account deletion.
Journal entries, to-dos/task lists, and notebook contentRetained while your account is active; deleted during account deletion.
Food and nutrition logsRetained while your account is active; deleted during account deletion.
User voice memo audioRetained with message history while your account is active; deleted during account deletion.
Assistant-generated voice-note/TTS filesDatabase records may be soft-deleted after about 45 days; account deletion targets account-linked records and file objects.
Location pings, location visits, place profiles, and movement stateRetained while your account is active. Recent context windows may use only the latest rows, but raw location rows are not currently auto-deleted after 48 hours.
Apple calendar, reminders, contacts, music, weather, and similar Apple-data sync rowsStored as latest sync rows per data type and overwritten by later syncs; deleted during account deletion.
Health daily states, health snapshots, and weight entriesRetained while your account is active; deleted during account deletion.
Photo context syncs, photo interest profile, and photo place clustersRetained while your account is active; deleted during account deletion.
Connected-service tokens, credentials, and direct API keys you saveRetained until you disconnect/remove them or delete your account.
Device/session/error/usage telemetry and billing recordsRetained while needed for operation, security, analytics, tax, accounting, or legal obligations; account-linked records are deleted or disassociated where supported during account deletion.
Comm signals and some operational eventsSome timed cleanups exist, such as 90-day cleanup for communication signals and old user events.
Shared spacesYour membership is removed and your shared-space messages/facts may be anonymized rather than deleted so other members retain group context.

Disconnect or remove an integration: Disconnecting or removing an integration revokes or removes the credentials for that connection and stops new requests through it. It does not automatically remove information already incorporated into messages, files, summaries, memories, derived profiles, action records, logs, backups, or generalized learnings.

Account deletion: You can request deletion in the app where available or by contacting privacy@osera.io. Account deletion initiates an account-wide, multi-phase deletion process that targets account-linked records, credentials, memory, file objects, and workspace backups, including account-linked authentication accounts, sessions, and verification records.

Deletion timing and limits: Deletion can take time across systems and backups. Account deletion does not reverse completed external Actions, such as sent communications, purchases, bookings, commitments, modifications, or deletions. Account deletion also does not require a Connected Service or other external service to delete records it controls independently under its own relationship with you; you may need to request deletion directly from that service. Some legally required, security, transaction, aggregate, deidentified, or non-attributable generalized records may remain where permitted. Some learned-skill records may remain after account deletion. We may replace a direct creator field, but other internal ownership or scope identifiers can remain on a retained record. Those records can include generalized or user-authored workflow content, and we do not promise that every retained workflow can be individually attributed to or removed for one account. Non-attributable, source-compliant workflows, aggregate metrics, and product changes may not be reversible or attributable to one account. Some records may be anonymized instead of deleted where other users depend on shared context.

Investigation and enforcement records: We retain investigation, enforcement, security, legal, and dispute records only for as long as reasonably necessary for those purposes, subject to longer retention required by law.

Records subject to a valid legal hold are retained only for the duration necessary to comply with that hold or applicable law.

9. Security

Osera does not currently provide end-to-end encryption for conversations, and we cannot guarantee that any internet-connected service or third-party provider is perfectly secure. Our safety, permission, and confirmation controls reduce but cannot eliminate the risk of wrong, duplicate, incomplete, delayed, unintended, or irreversible actions, including actions influenced by hostile instructions in connected content.

10. Legal Bases for EEA/UK Users

Our legal bases for investigation and enforcement are performance of our contract, compliance with legal obligations, consent where applicable, and our legitimate interests in security, fraud prevention, abuse prevention, and enforcing our terms where those interests are not overridden by your rights.

11. Your Choices and Rights

California users have the right to know, delete, correct, and opt out of sale/share as provided by applicable law. We do not sell personal information.

12. Cookies and Website Tracking

The Osera app does not use advertising SDKs. The website may use server-side analytics without cookies for page views, referrers, UTM parameters, and approximate country. With consent, advertising measurement tools may set cookies or pixels to measure campaign effectiveness. You can reject or clear cookies through browser controls and the consent banner where available.

13. Children

Osera is not intended for users under 18 or the age of majority in their jurisdiction. We do not knowingly collect personal information from minors. If you believe a minor has provided personal information, contact privacy@osera.io.

14. Changes to This Policy

We may update this policy as Osera changes. When changes are material, we will update the date above and use reasonable notice such as email, in-app notice, or website notice.

15. Contact

Bloom Street LLC
Email: privacy@osera.io