Echooo Personal Memory Privacy Policy
Echooo Personal Memory is a local-first personal memory app. Most features work on your device without an account.
This Privacy Policy describes the information the app stores on your device, the optional account and cloud recovery features, permissions, third-party services, and how to contact us about privacy or deletion requests.
Overview of data practices
- By default, memories, voice recordings, recall history, settings, and related app data remain on your device.
- An optional account is available if you choose cloud recovery. Account use sends email, password, and device/app metadata to our Memory API.
- Optional cloud recovery can upload or download an encrypted backup blob that the app creates on your device after you explicitly start the action.
- The current app version does not include advertising SDKs, Firebase Analytics, or Crashlytics.
- There is no automatic background cloud sync of memories in the current app version.
Data stored on your device
Depending on how you use the app, the following may be stored locally:
- Text memories and related extracted fields, tags, importance, and sensitivity settings
- Voice memory audio files and transcripts created when you record
- Recall / search history and related local recall results
- App settings and preferences (for example language, voice persona, audio retention, onboarding state)
- Local app-lock related secrets when you enable PIN or biometric unlock
- Premium entitlement status used to unlock paid features
- Optional account tokens and email after you sign in
- Restore / backup audit metadata
- Owner profile fields such as a preferred name, if you set them
Local memory storage uses encrypted Hive storage with a key kept in the device secure storage used by the app. Account tokens, premium status, and some preferences are also stored using the device secure storage APIs.
Optional account and authentication
Creating or using an account is optional. Local memory features can be used without signing in. If you register or log in, the app sends the following to our Memory API at https://api-v2.contactechoo.com over HTTPS:
- Email address
- Password (sent as part of the registration/login request)
- Device/app metadata such as device name, platform, and app version
After successful authentication, the app stores access and refresh tokens and your account email/user id in secure storage on the device so you can stay signed in and use cloud recovery.
While signed in, the app can list signed-in sessions and revoke a session. Logging out clears local tokens and asks the server to end the current session when possible.
Optional cloud recovery and server storage
Cloud recovery is optional and user-initiated. It is not automatic sync. When you choose to upload a cloud backup while signed in, the app:
- Creates a backup on your device using a backup password you enter
- Encrypts that backup on your device using AES-256-GCM before upload
- Uploads the encrypted backup blob and related metadata to the Memory API
Metadata associated with a cloud backup may include values such as:
- Backup id
- Encrypted blob hash
- Schema version and app version
- Created-at timestamp
- Device name and platform
- Whether voice attachments are marked as included
- Attachment count
In the current app version, cloud recovery uploads set voice attachments to not included. Voice recordings are therefore not uploaded as part of the current cloud recovery upload flow. Local file export of an encrypted backup may optionally include voice recordings if you choose that option during a manual export on the device.
When you download a cloud backup, the app downloads the encrypted blob and restores it locally only after you provide the backup password. The current app UI exposes cloud backup upload, download, and local restore for signed-in users. The current app UI does not expose an in-app control to delete a cloud backup from the server.
Microphone, voice recordings, speech recognition, and spoken answers
The app requests microphone access so you can record a voice memory or ask a voice question after you choose those actions. Recording is not always-on.
Voice recordings and related transcripts created in the app are stored on your device unless you later include them in a manual encrypted local backup export. As noted above, the current cloud recovery upload flow does not include voice recordings.
Speech recognition uses on-device or operating-system speech recognition capabilities available on your device. Depending on your device and system settings, your operating system or system speech provider may process audio to produce text. Echooo Personal Memory does not upload that audio to the Echooo Memory API for transcription.
Spoken recall answers use on-device / system text-to-speech. The app does not upload answer text to the Echooo Memory API for speech synthesis.
Files and backups on your device
The app may use file access or a system file picker when you export or import an encrypted backup file, or when you choose related restore actions. Those files are controlled by you on your device or in the storage location you select.
Purchases and Premium
Optional Premium purchases and subscriptions are processed by Google Play or the Apple App Store through the platform billing systems. Echooo Personal Memory does not receive or store your full payment card details. The app may store local Premium entitlement status so paid features can be unlocked or restored.
Third-party services and SDKs
In the current released app configuration described by this policy:
- Echooo Memory API (
api-v2.contactechoo.com) — optional account authentication, sessions, and encrypted cloud backup upload/download - Google Play Billing and/or Apple In-App Purchase — purchase and restore flows for Premium
- Device / OS speech recognition and text-to-speech providers — only when you use voice recognition or spoken answers
The current app dependency set does not include Firebase Analytics, Firebase Crashlytics, or AdMob / Google Mobile Ads. Platform libraries required by billing or the operating system may still be present as part of normal Play / OS integration.
Permissions
- Microphone — record voice memories or voice questions when you choose those features
- Internet / network — optional account, cloud recovery, and store purchase communication
- Biometric / fingerprint unlock — optional local app lock
- File / document access via system pickers — optional backup export/import
How we use and share information
We use the information described above to:
- Provide local memory, recall, backup, restore, and Premium features
- Operate optional account authentication and cloud recovery
- Maintain sessions and help you manage signed-in devices
- Respond to support requests you send us
We do not sell personal information. We do not use Echooo Personal Memory memory content for advertising in the current app version. Information may be disclosed if required by law or to protect the security and integrity of the service.
Retention
- Local data remains on your device until you delete it in the app, clear app data through the operating system, or uninstall the app.
- Account credentials/tokens remain available while you stay signed in, and local tokens are cleared when you log out.
- Encrypted cloud backups and account records retained on our servers remain until deleted through a supported deletion process or a fulfilled deletion request.
Your choices, logout, and deletion
In the current app version you can:
- Use the app without creating an account
- Refuse microphone, biometric, or file permissions, with related features unavailable
- Export or import encrypted local backups when you choose
- Upload or download encrypted cloud backups when signed in
- Log out and revoke listed sessions
- Clear all local app data using the in-app clear-local-data control
Account and server-data deletion
You can delete your Echooo Personal Memory account and associated server-stored cloud recovery data from the app (Privacy → Delete account) or from the public deletion page: https://contactechoo.com/echooo-memory/account-deletion.
Account deletion removes the account record, sessions, and encrypted cloud backups stored for that account on our servers. It does not remove memories or files that remain only on your device. Clearing local data or uninstalling the app removes data from that device only.
If you need help, email support@contactechoo.online from the account email and include the app name Echooo Personal Memory.
Children
Echooo Personal Memory is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided account information, contact us so we can review and delete it as appropriate.
Changes to this policy
We may update this Privacy Policy when the app’s data practices change. The “Last updated” date at the bottom of this page will change when we do. Continued use of the app after an update means you should review the revised policy.
Contact
Privacy and deletion requests: support@contactechoo.online
Privacy Policy URL: https://contactechoo.com/echooo-memory/privacy
Last updated: August 8, 2026