Privacy Policy
superX is an Android app that runs an AI agent on your phone. This policy explains what data the app handles, where it goes, and the choices you have. In short: superX has no servers and no accounts. We, the developer, never receive your conversations, files, keys or usage data. Data leaves your phone only when it is sent to services you choose to connect.
Data stored on your device
The following stays in superX's private app storage on your phone, which other apps cannot read:
- Conversations with the agent, including tool calls and results.
- Memory — facts the agent saves about you and your setup, and anything you import (for example an export from another assistant that you pick with the system file picker).
- Credentials you enter: API keys for model providers and tools, and sign-in tokens for apps you connect. They are stored in files readable only by superX.
- Scheduled tasks you create and their results.
- Files the agent creates or downloads while working on your tasks, inside the app's private Linux environment.
- Diagnostic logs of the on-device agent, used only to show you errors in Settings → Advanced.
App data is excluded from Android cloud backup. Uninstalling superX, or clearing its storage in Android settings, deletes all of it.
Data sent to services you choose
superX is useful only when connected to outside services, and those connections are chosen and configured by you:
- AI model provider (for example OpenRouter, OpenAI, Anthropic, Google, or a custom endpoint). To answer you, the agent sends your messages, relevant conversation history and memory, and the results of tools it ran to the provider you selected, using your own key or account.
- Tools you enable (for example web search, web page reading, image generation, text-to-speech). When the agent uses a tool, the input it needs — such as a search query, a web address or an image prompt — is sent to that tool's provider.
- Connected apps (for example Gmail, Notion or GitHub via MCP connectors). When you connect an app you sign in on that service's own page, and the agent then reads or changes data in that app only to carry out tasks you give it.
- Web pages the agent opens while doing a task are fetched directly from your phone.
Each of these services processes the data under its own privacy policy and terms. Please review them before connecting. superX does not sell data, does not share it with advertisers or data brokers, and does not send it anywhere you have not configured.
What we do not collect
- No analytics, advertising identifiers, tracking or crash-reporting SDKs.
- No location, contacts, photos, microphone or camera access.
- No account with us — there is nothing to sign up for.
Reports and support email
If you use Settings → About superX → Report latest reply, or write to us, your email app sends us the content you chose to include (for example the reported reply and the name of the model). We use it only to respond to you, to investigate the report and to improve superX, and delete it when no longer needed for those purposes.
Permissions
- Internet / network state — to reach the model provider, tools and apps you connect.
- Notifications — to tell you when a task finishes or needs your answer (you can decline).
- Foreground service / wake lock — to let a task you started finish while the screen is off. It stops when the task ends.
Security
Communication with outside services uses HTTPS. The on-device agent listens only on the phone's internal loopback address and is protected by a per-launch token. Credentials are kept in app-private files. No system is perfectly secure; protect your phone with a screen lock.
Your choices
- Remove a key or disconnect an app at any time in Settings or the Apps tab; revoke access on the service's own site too.
- View, edit or delete what the agent remembers in Settings → Memory.
- Start a fresh conversation, or delete all data by uninstalling the app or clearing its storage.
- For data held by a model provider or connected service, contact that service.
Children
superX is not directed at children under 13 (or the minimum age in your country), and we do not knowingly collect data from them.
Changes
If this policy changes we will update this page and its effective date. Material changes will also be noted in the app's release notes.
Contact
Questions or requests: hsyvy7@gmail.com