Sema Private AI
Privacy Policy
Last updated: 26 September 2026
Sema Private AI is built for private chat and memory on your device.
What stays on your device
- Your conversations with Sema.
- Your saved memories, including the source statement they came from.
- Your local memory search index and permission history.
- Any context Sema creates from approved device permissions.
What we do not collect
Sema has no account, login, or server-side personal memory store in this build. We do not collect your chats, memories, contacts, calendars, photos, location, reminders, files, prompts, generated answers, or memory text, and we do not track you across apps or websites.
Analytics
Sema may send privacy-safe product analytics to PostHog, such as app opens, onboarding completion, chat sends, AI response success or failure, memory created or deleted, and model availability status. These events do not include chat text, memory text, names, contacts, calendar titles, locations, prompts, generated answers, or other private content.
On-device AI
When Apple Foundation Models are available, Sema asks the on-device Apple model to answer. If Apple Foundation Models are unavailable, Sema can offer a local Gemma model download. Your prompts, chats, and memories are not sent to us for these local responses.
Public web search (optional, asks first)
Sema can answer questions about current events using public web search. This is off until you allow it: the first time Sema would search the web, it explains exactly what is sent and asks for your permission before anything leaves the device. You can change this anytime in Settings, and Clear all data resets the choice.
- What is sent: only your search question. Sema removes private context first — names, contact details, email addresses, phone numbers, and "my…" style personal references are stripped or the search is skipped.
- Who receives it: your question goes from Sema's server to Brave Search, our public web search provider, which returns public results. Brave handles the query under its own terms and privacy policy.
- What is never sent: your chats, memories, prompts, generated answers, device sources (Contacts, Calendar, Photos, Location, Reminders), or identity. Sema does not attach your name, email, account, or device identifiers to a search query, because there is no Sema account.
- Abuse prevention: Sema's server keeps a rate-limit counter (a hashed token and IP combination, plus a count) so search limits can be enforced. The counter contains no message content and is not used for advertising or profiling.
Service providers
PostHog may receive aggregate product interaction events for analytics. Apple provides App Store distribution, Apple Foundation Models where available, and in-app purchase billing for Sema Pro. Brave Search processes optional public web search queries as described above. A model hosting provider or CDN may serve optional Gemma model weights when you choose to install them. None of these providers receive your chat text, memory text, prompts, generated answers, contacts, calendars, photos, location, reminders, or files from Sema.
Device permissions
Sema asks before using sensitive device capabilities such as Contacts, Calendar, Photos, Location, and Reminders. Approved access is used to create local context on your device. You can revoke permissions in iOS Settings and delete Sema data inside the app.
Deleting your data
Open Sema, go to Settings, then Clear all data. This deletes local chats, memories, permission history, and onboarding state on that device. Because there is no Sema server copy, we cannot restore deleted local data.
Contact
Questions? Email vilde@vevatne.no.