Data that remains local

Velunara does not transmit conversation text, prompts, generated outputs, local memories, screenshots, uploaded images, or character content during ordinary core use. Screen observation is permission-based, visibly indicated, easily stopped, and retains no raw frames by default. The browser and application store the 18+ confirmation locally.

Separate network services

Payment processing may receive contact, billing, transaction, device, and fraud-prevention data required by the approved processor. License activation is designed to send a license reference, random device public-key information, product/version details, coarse compatibility tier, and operating-system family. Update checks request product version and channel. These services must never receive conversation content.

Support or crash material is submitted only after the user chooses it. A production support bundle must be previewable and redact transcripts, prompts, screenshots, images, license keys, secrets, and raw databases by default.

Retention and choices

Local data remains until you delete it, use Velunara’s deletion tools, or uninstall and explicitly choose to remove it. Payment, order, license, refund, dispute, tax, and security audit metadata may be retained for legal, accounting, fraud, and support obligations. Exact periods and subprocessors must be published before live sales.

No prompt surveillance

Velunara will not add cloud moderation, prompt inspection, analytics containing prompts, or invasive content scanning to satisfy payment underwriting. Local legal safeguards do not create a cloud transcript.