dCipher Privacy Policy
Last updated: 2026-08-08
Overview
dCipher helps users review conversations and receive AI-powered communication insights. This Privacy Policy explains what information we collect, how we use it, who processes it on our behalf, and how users can delete their data.
Information We Collect
- Account information: alias, a phone number (required at sign-up, never verified, and never used to send SMS; used only for optional friend matching), and profile display name
- Chat content: messages sent through the app
- AI analysis inputs/outputs: messages the user explicitly selects for analysis, plus a short surrounding context window, and the resulting insights
- Technical data: app version/build, request identifiers, and basic diagnostic logs
How We Use Information
- To create and manage user accounts
- To deliver chat functionality between dCipher users
- To generate conversation- and message-level insights that the user explicitly requests
- To improve reliability, security, and performance
Third-Party Processors (Subprocessors)
dCipher relies on the following named third parties to operate. These are the only entities that receive user data on our behalf.
- Anthropic, PBC — provides the Claude family of large-language models. When a user taps "Analyze" on a message or requests a conversation-level analysis, the selected message content and a short surrounding context window are sent to Anthropic's API for the sole purpose of generating that insight. Anthropic acts as a data processor for dCipher. Message content is never sent to Anthropic for background scanning or model training.
- Amazon Web Services, Inc. (AWS) — hosts the entire dCipher backend in the
us-west-2region, including API Gateway, Lambda, DynamoDB, Cognito, S3, CloudFront, and Secrets Manager. AWS acts as a data processor / infrastructure provider for dCipher.
No advertising SDKs are integrated. dCipher does not sell or "share" (in the CCPA sense) user data. There are no data brokers in the pipeline.
Data Retention and Deletion
- Account and chat data are retained on AWS DynamoDB while the account remains active.
- Users can request deletion in-app via Settings > Delete Account, which invokes a server-side purge (Cognito
AdminDeleteUserand DynamoDB row removal for the account's data). - Point-in-Time Recovery (PITR) window. DynamoDB Point-in-Time Recovery is enabled on our production tables as a disaster-recovery safeguard. PITR keeps a recoverable snapshot of table state for the past 35 days. After you delete your account, your data is immediately removed from all live query paths and cannot be accessed by dCipher, other users, or the API. However, because PITR retains historical snapshots for up to 35 days, the data cannot be immediately purged from the underlying snapshot storage; it becomes unreachable within that window as older snapshots roll off. We do not use PITR to re-hydrate deleted account data in the ordinary course; PITR exists solely for regional disaster recovery.
Your Choices
- You may stop using the app at any time.
- You may delete your account in-app at Settings > Delete Account.
- You may contact support for privacy questions or requests.
Children
dCipher is rated 17+ and is not intended for children under 13 (or the minimum age required in your jurisdiction).
Security
We use reasonable administrative, technical, and organizational measures to protect user data, including HTTPS in transit, AWS-managed encryption at rest for DynamoDB and S3, and short-lived Cognito access tokens. No system can be guaranteed 100% secure.
Contact
For privacy questions, contact: vikrambalaji2k@gmail.com