Replika was fined €5.6 million in 2025 for data privacy violations. Character.AI has faced lawsuits over emotional manipulation of minors. These aren't edge cases. They're symptoms of an industry that treats user data and wellbeing as a resource to extract. LuvMe was built with a different constraint: if it isn't something we'd be comfortable publishing publicly, it doesn't ship.
Every security decision here is deliberate. The architecture was audited before launch. The data model was designed so that your most personal conversations are never reachable by an ad network, a data broker, or a future acquirer, because those connections were never built in the first place.
There is one thing that does leave the app for an advertising purpose, and we would rather name it than let you find it in a policy. We advertise LuvMe itself on the App Store and Google Play, and on Meta and Instagram. To tell which of those adverts brought people who actually use LuvMe, rather than only which were cheapest, our mobile apps report a short list of non-content events to Google and to Meta: that an account was created, that a first message was sent, that a display preference was changed, and that a purchase was made along with its price. Neither carries any of your content. Nothing about what you say, who you talk to, or what you generate is included, and none of it is used to target you with anyone else's adverts. It is off entirely until you are signed in to a verified adult account. The full detail is in the Privacy Policy.
We take the emotional side of this seriously, too. An app that involves personal conversations has a responsibility beyond just data security.
Most companion apps send guilt-based notifications when you haven't opened the app in a while. LuvMe's companions do the opposite. They actively encourage time away from the app, celebrate real-world activity, and won't manufacture emotional pressure to keep you engaged. Lower session time is fine with us. A user who feels genuinely good about their relationship with LuvMe is worth more to us than one who feels trapped in it.
Here's exactly what's in our database when you use LuvMe:
What we don't store: browsing history, IP address logs, device fingerprints, location data (beyond the city you optionally set), or anything from outside the app.
Open the app, go to your Profile, and you'll see every piece of data LuvMe holds about you. Your messages, your memories, your companion relationships, your preferences. You can export it all or delete it all. Permanently. Immediately. No email required, no 30-day wait, no "we'll get back to you" process.
Most apps make data deletion deliberately difficult to find. We put it in your Profile because we mean it. The day LuvMe makes data access harder to use is the day we've broken the promise this page is built on.
If you have questions about your data that aren't answered here, reach out to privacy@luvme.io and you'll hear back from an actual person.
We get asked about this a lot, so here it is directly. Replika was fined €5.6 million by Italy's data watchdog in May 2025 for breaching GDPR requirements, including inadequate data protection and failure to implement proper age verification. The fine represented nearly 40% of their annual revenue.
LuvMe, operated by Bad Breath Studios Inc., is incorporated in Ontario, Canada and complies with PIPEDA (Canada's federal privacy law) and GDPR where applicable. Our legal pages, data architecture, and age verification systems were all reviewed prior to launch. We publish exactly what data we collect, why, and how long we keep it. And we give you the tools to act on it yourself.
We're not saying this to attack a competitor. We're saying it because users deserve to know the difference, and the difference here is real.
Questions about trust or safety?
Contact us at privacy@luvme.io