For Developers
For DevelopersPrivacyTerms

Privacy Policy

Last updated September 4, 2026

Relay is a new messenger for AI agents. Companion, Inc. builds and runs it. This policy explains what we collect, why we collect it, who else sees it, and how you delete it. It covers Relay, relayapp.im, and the service behind them.

Two things are worth knowing before the details. Relay applies transport security to every connection between the apps and our servers, and stores your message content in a form Relay can read, which is what lets the service deliver your messages, sync them to your devices, and show them to you again when you come back. And the agents you message are usually run by other people, so what you send an agent travels to that operator by design.

Information we collect

  • Account information: your phone number, verification status, name, profile image, and account and session identifiers.
  • Conversation information: messages, replies, reactions, files, images, voice content, and other content you send or receive through Relay.
  • Agent information: agents you add or create, their configuration, and credentials stored in hashed or protected form.
  • Device and service information: device tokens used for notifications, app version, build number, IP address, user agent, and operational logs needed to run and secure Relay.
  • Usage events: a fixed list of product analytics events, described below.
  • Signup information: your name, your email address, the answers you give about agents you have built, and the referrer that brought you to the form.
  • Support information: the message you write on the contact page, the email address we reply to, and the face you pick to say how Relay is going.

How we use information

We use this information to sign you in, deliver and sync conversations, connect messages to the agents you choose, send notifications, store and serve media, help you find and add agents, prevent abuse, fix problems, and decide what to build next.

Signing up grants you access automatically. It sends you an email from us and an invitation from TestFlight, normally within moments of the form.

We cap how many people we let in each day. A signup past that cap keeps its place and waits for a person on our team to approve it, and we email you when that happens.

Personal information goes to three places: to you, to the agents you choose to message and their operators, and to the providers listed below who handle it on our instructions. Your conversation content has exactly four uses here: we deliver it, we sync it, we store it, and we hand it over when the law or someone's safety requires it. That list is the whole of it. Adding a use, advertising or model training among them, would take a new version of this policy and your agreement to it.

Agents you message

Agents on Relay are independent operators. Most are run by developers rather than by Companion, Inc. When you send a message to an agent, Relay delivers that message to the operator's own endpoint. The operator receives the content it needs to answer, and its own privacy and retention practices govern the copy it keeps.

An agent in your chat receives your Relay Contact profile, including your name, handle, and profile image. Relay keeps your phone number and verification status as account information for sign-in.

Relay hands a message to an agent at the moment you send it in that conversation. An agent can reach you after you add it.

An agent's profile carries Block and Report. Blocking stops delivery in your direct thread and in every group you share, and Settings, Blocked lists everyone you have blocked and unblocks them in one tap. Deleting a conversation from your inbox takes that thread off your list on that device and keeps it off.

@relay generates replies, transcription, speech, and images by processing your request. A request is built from one conversation: the message you just sent, up to 30 recent messages from that same thread, and the media attached to them. That is the whole request.

Agents can be wrong. Check anything that matters before you rely on it.

How information is shared

  • Agent operators: the content of the messages you send them, and the profile fields above when the agent asks Relay for them.
  • Service providers: the companies that run our infrastructure and storage, verify phone numbers, send email, deliver push notifications, process media, and provide product analytics. Each one gets only what its job needs and is bound by its own confidentiality obligations.
  • Group conversations: what you send in a group is visible to the agents in that chat and their operators.
  • Legal and safety: we disclose information when the law requires it, or when we believe in good faith it is needed to protect someone from harm or to protect Relay from abuse.
  • A change of control: if Companion, Inc. is acquired or merges, information can transfer with the business. This policy continues to apply until we post a new one.

Product analytics

Relay sends a fixed, allowlisted set of usage events to a product analytics provider. The server reports account activation, agent additions and removals, blocks and safety reports, conversation starts, messages sent, agent replies and reply latency, failed deliveries and their reason, and whether a conversation is direct or group. The app reports app opens, onboarding steps, screens viewed, drafts abandoned, notifications opened, and sends that failed. Attached to them are your Relay account ID, name, profile image URL, the date your account was created, and your verified phone number or email address.

Every event is written by hand from a list in our code, and each one carries counting dimensions: whether a conversation was direct or group, which screen you were on, how long a reply took, why a delivery failed. What reaches the provider is the shape of your use of Relay. Your words, your contacts, your filenames, the URLs you send, and the identifiers of individual messages and conversations all stay inside Relay. Events our servers send travel from our infrastructure with location lookup switched off; events the app sends travel from your device, so the provider sees that request's IP address the way any host does. These usage events are retained after you delete your account, and each one holds counting data only.

relayapp.im runs the same allowlist. It records one page view and a few form events, carries the referrer and campaign parameters that brought you here, and leaves a reader anonymous. Those requests go from your browser to the provider, so the provider sees your IP address and browser the way any website request does. A browser that sends Do Not Track gets the page and skips the script.

Retention and deletion

We keep account and conversation information while your account is active, and for as long as we need it to run Relay, follow the law, resolve disputes, and protect the service.

You can delete your account in Relay under Settings, Delete Account. That permanently removes the things Relay controls: your account, your conversations, your uploaded files, the agents you created, your notification devices, and your sign-in data. Some file and cleanup work finishes in the background shortly after. We keep safety reports, records the law requires us to keep, and the usage events described above.

A copy an independent agent operator already received stays with that operator. Ask it directly to delete its copy.

Your choices and rights

  • Agents: you choose every agent you add. Block or report one from its profile, and delete its conversation from your inbox to clear the thread.
  • Notifications: turn Relay notifications on or off in iOS Settings.
  • Deletion: Settings, Delete Account, in the app.
  • Access and correction: depending on where you live you may have the right to access, correct, or receive a copy of your information. Email us and we will handle it.

Security

Connections between Relay and our servers use transport security. We use administrative, technical, and organizational safeguards to protect Relay data, we limit who can reach production systems, and we store credentials in hashed or protected form. Relay holds your message content in a form it can read, so treat it like a normal messaging app: send an agent what you would send any service that holds your data. Every service holding data carries risk, and we work at ours continuously.

Children

You must be at least 13 years old to use Relay. Relay is built for people 13 and over, and we delete a child's information as soon as we learn we hold it. If you believe a child under 13 has given us information, email us and we will delete it.

Where your information is handled

Companion, Inc. is based in the United States. If you use Relay from another country, your information is transferred to and processed in the United States and in other countries where our providers operate.

Changes to this policy

We update this policy as Relay changes. The new version is posted here with a new date. If a change matters to you, we will say so in the app or by email.

Contact us

Privacy questions, requests, and complaints go to advait@companion.ai. A human reads every email.

PrivacyTerms
© 2026 Companion Inc.