Privacy Policy
This policy describes how OpenIntelligence processes information. OpenIntelligence is designed as an Apple Intelligence-fueled, local-first agentic RAG system with privacy-preserving defaults.
Last Updated
July 2026
1. Overview
OpenIntelligence processes documents and queries on-device by default. Ingestion, indexing, retrieval, reranking, and evidence verification stay on-device. On supported systems, document evidence leaves the device only when Apple Private Cloud Compute is selected for final synthesis and permission has been granted under the chosen consent setting.
2. Data Processing
- Local-first default: Document ingestion, chunking, embedding generation, hybrid retrieval, agentic query planning, reranking, evidence verification, and the default answer path execute on-device.
- Private Cloud Compute (optional): On supported systems, the active query and finalized evidence package may be sent to Apple Private Cloud Compute for final synthesis after disclosure and consent. Retrieval and verification remain on-device. No third-party AI APIs are used for this route.
- No third-party analytics: The app does not ship third-party analytics SDKs by default.
3. Model Pathways
On-Device Route
What leaves the device: Nothing.
User action required: None. This is the default and remains available offline.
Local Retrieval and Verification
What leaves the device: Nothing. Parsing, indexing, retrieval, reranking, and evidence verification remain local.
User action required: None.
Apple Private Cloud Compute
What leaves the device: The active query and the finalized evidence package disclosed by the app for final synthesis.
User action required: Select a route that permits Private Cloud Compute and approve the disclosed payload under the selected consent setting. The resulting answer identifies the route used.
4. Keys and Credentials
- No third-party API keys required. OpenIntelligence uses only Apple Intelligence (on-device and Private Cloud Compute).
- Subscriptions are processed by Apple's StoreKit infrastructure; OpenIntelligence never handles payment credentials.
- OpenIntelligence does not embed developer keys in release builds.
5. Storage and Retention
- Documents: Stored locally on the device. Users can delete individual documents and knowledge containers.
- Vectors and embeddings: Stored per knowledge container. Deleting a container removes its embeddings and index data.
- Cache: Hybrid retrieval caches are ephemeral and expire automatically.
6. User Controls
- Consent and disclosure: Before a Private Cloud Compute request is sent, the app identifies the route reason and shows the finalized evidence package under the selected consent setting.
- Revocation: Users can revoke permissions and remove credentials in Settings.
- Deletion: Users can delete local content from within the app and by uninstalling the app.
7. Export Compliance
OpenIntelligence uses standard encryption (HTTPS/TLS) provided by the operating system.
8. Contact
For privacy inquiries, contact: privacy@openintelligence.app