01 / Privacy policy
Privacy, plainly.
Last updated: January 2026
Introduction
Yonoo is operated by Collegium.House GmbH. We respect your privacy and explain here how we collect, use, and safeguard information when you use our AI chat service.
What we collect
- Email address: to identify an account and provide service updates.
- Chat messages: processed to provide AI responses; chat history is stored locally on your device.
- Usage and device data: basic, anonymous usage statistics to operate and improve the service.
How we use information
- Provide and maintain the service and process chat requests through AI providers.
- Track free-tier message usage and process payments when you upgrade.
- Send opted-in service updates and improve the service.
Third-party AI providers
Yonoo may route requests to providers including OpenAI, Anthropic, Google, Perplexity AI, DeepSeek, xAI, Meta via Groq, and other providers made available in-product. Providers and sub-processors can change; the current list is maintained in-product. Your messages are sent to the provider selected to generate a response, and that provider’s terms and privacy practices apply to its processing.
Storage and security
- Chat history: stored locally in your browser; we do not store it on our servers.
- Account data: securely stored in our database with encryption.
- Payment data: processed by Stripe; we do not store card details.
AI Act information summary
Yonoo is ordinarily the provider of an AI system that orchestrates third-party models; it does not train foundation models. A customer that uses Yonoo within its own organisation is ordinarily the deployer. The precise allocation of roles depends on the configuration and use case, and is settled for each deployment in the enterprise contract and data processing agreement. Our enterprise assistance and document-analysis use cases are not intended for prohibited practices under Article 5 of Regulation (EU) 2024/1689 and are not marketed for high-risk Annex III purposes, unless a specific deployment is contractually scoped and assessed for that purpose.
Users are informed that they are interacting with an AI system. AI-generated output is identifiable, and model attribution is shown in-product. Outputs are decision support, not automated decisions: a human-review path exists, and customers remain responsible for final decisions. Models can err. We provide evidence and traceability where available so output can be checked.
Our data-governance approach operates alongside the privacy commitments in this policy. Enterprise source content remains within the agreed deployment boundary. The Act applies in stages: the prohibited-practice rules in Article 5 have applied since 2 February 2025, the obligations for providers of general-purpose AI models since 2 August 2025, and the Article 50 transparency duties for AI systems from 2 August 2026, with further high-risk provisions following from 2 August 2026 and 2 August 2027. We track these dates as they apply to each deployment.
Control and retention
You may request access, correction, deletion, portability, objection to certain processing, and withdrawal of consent where applicable. Account information is retained while your account is active; local chat history can be cleared in your browser. Contact privacy@yonoo.ai.
Cookies and local storage
We use browser local storage to keep chat history, preferences, and anonymous message counts. We do not use tracking cookies for advertising purposes.
Changes and contact
We may update this policy and will post the revised date here. For privacy questions, contact privacy@yonoo.ai.