Do AI girlfriend apps read your chats? Moderation, training and staff access
Yes: AI girlfriend apps read your chats with automated moderation, pass them to AI model providers to write replies, and in several apps staff can review flagged conversations; many also use chats to train their models. At least two apps advertise end-to-end encryption, but their own privacy pages say messages are processed by AI providers, and Nomi AI's help wiki says end-to-end encryption is not practical for an AI chatbot.
Four ways your messages are read
- The AI itself. To reply, the model has to read your message. Often that model belongs to another company. Candy AI's privacy notice says third-party LLM providers may receive the content of your messages; Anima names OpenAI and Groq among the AI providers that receive your conversations; Replika's policy says conversation data is sent to third-party language model providers after de-identification.
- Automated moderation. Apps scan messages for banned content. Candy AI says chats are scanned by its own moderation system, and Lovescape says all messages and prompts pass through automated moderation.
- Human review. Flagged chats can reach staff. Candy AI mentions possible manual review of flagged content, Lovescape says human review follows three or more violations, and Roger and Swipey AI say flagged chats may be reviewed by staff.
- Training. Chats can be used to improve the AI, sometimes after names are removed.
This is not unique to companion apps. In September 2026, 404 Media reported that OpenAI was hiring hundreds of contractors to read real ChatGPT prompts, with usernames removed.
What each app says about training and access
From each app's own privacy policy, as recorded in our data (September 2026):
| App | Uses chats to train AI? | Who else can see chats |
|---|---|---|
| Secrets AI | Yes, listed among uses of your information | Vendors for hosting and support; legal requests |
| Candy AI | Yes, including human review of de-identified chats for training | Third-party LLM providers; moderators for flagged content |
| OurDream | Yes, listed in its privacy policy | Third-party AI model providers; staff only with your support consent or a lawful request |
| Nomi AI | In aggregate, with identifiers removed | Legal requests; says it never sells or rents personal data |
| Replika | Small portions, for its own safety systems | De-identified data to third-party language model providers |
| Lovescape | Not mentioned in its policy | Human review after three or more violations |
| Anima | Yes, to train and improve its AI models | AI providers including OpenAI and Groq |
Where a privacy policy says nothing about training, that is not a promise it never happens. Our Nomi AI review and OurDream review cover their policies in more detail.
End-to-end encryption claims
End-to-end encryption means only the sender and receiver can read a message. In an AI chat, the receiver is the company's software, so the company can always read what you send it. The claims in our data:
- OurDream's homepage says no one can read your chats, "not even us", while its own privacy summary says third-party model providers process each message. Its policy describes AES encryption at rest and TLS 1.3 in transit.
- Secrets AI's homepage claims end-to-end encryption; its privacy policy describes AES-256 encryption of stored data and TLS 1.2 or later in transit.
- Nomi AI's help wiki says plainly that end-to-end encryption is not practical for an AI chatbot, so chats are not end-to-end encrypted.
Encryption at rest and in transit is still worth having: it protects your chats from outsiders. It just does not stop the company reading them.
Why it matters: leaks and licenses
Stored chats can leak. In 2025, two companion apps left 43 million messages from over 400,000 users on an unprotected server, and a 2026 security audit of 17 AI companion apps found that 10 had routes to stored conversations. Our guide to AI girlfriend data breaches lists the known cases.
Terms of service matter too. Common Sense Media's 2025 report found that companion platforms' terms grant extensive, often perpetual rights to what users share, quoting Character.AI's terms, which at the time granted a perpetual, irrevocable license to use content for any Character.AI-related purpose.
How to keep your chats more private
- Opt out of training where the app allows it. Character.AI, for example, lets users in the UK and EEA switch off its model-improvement setting.
- Share nothing identifying. No full name, address, employer or photos of real people.
- Use a separate email and a strong, unique password.
- Delete chats you would not want read, where the app lets you delete individual chats.
- Delete your account when you leave. Our guide on how to delete an AI girlfriend account covers each app.
For the wider picture, see whether AI girlfriend apps are anonymous.
Frequently asked questions
Do AI girlfriend apps read your messages?
Yes. The AI has to read each message to reply, automated moderation scans them, and several apps say flagged chats can be reviewed by staff. Many also use chats, sometimes de-identified, to train their models.
Can AI girlfriend app staff see my chats?
In some cases. Candy AI mentions manual review of flagged content, Lovescape says human review follows three or more violations, and OurDream says staff see private chats only with your support consent or a lawful request.
Are AI girlfriend chats end-to-end encrypted?
Not in the usual sense. The AI provider has to read your messages to reply. OurDream and Secrets AI advertise end-to-end encryption, but their privacy pages describe encryption in transit and at rest, and Nomi AI says end-to-end encryption is not practical for a chatbot.
Do AI girlfriend apps use my chats for training?
Many do. Secrets AI, Candy AI, OurDream and Anima list training their AI models among the uses of your data, and Nomi AI learns from chats in aggregate with identifiers removed. Opt out where the app allows it.
Can police get my AI girlfriend chats?
Apps can disclose data in response to legal requests, and several privacy policies say so. Assume anything stored on a company's servers could be handed over under a valid legal order.
Keep reading
- AI girlfriend data breachesEvery major AI companion leak since 2024, and what to do.
- Are AI girlfriend apps anonymousWhat the apps know about you, what your bank sees, how to stay private.
- Delete your accountDeletion steps by app, what gets kept, and your legal rights.
- Is OurDream AI safe?A Delaware company with strong rules; check the encryption claim.
- Is Nomi AI safe?Named US company and no ads, but very light moderation.