From a privacy point of view, many aren’t. AI companion apps, the “virtual friend” or “AI partner” kind, are built around emotional, personal conversation, so they end up holding some of the most sensitive things people ever type. Regulators have already stepped in: Italy’s data protection authority fined the company behind Replika €5 million in 2025. That doesn’t mean every companion app is dangerous, but it’s a category where reading the fine print really matters.
Why companion apps collect so much #
A companion app is designed to feel like a relationship, which means:
- You share more. People tell a companion about loneliness, health, relationships, sexuality and family problems, things they wouldn’t type into a search engine.
- It remembers. To feel consistent, the app stores details about you and your past conversations on its servers.
- It’s built for engagement. The business model usually depends on subscriptions, so the app is designed to keep you coming back, often with notifications written in the character’s voice.
- It may learn from you. Conversations can be used to improve the models, depending on the terms.
Personalization and privacy pull in opposite directions here: the more the app knows, the more “real” it feels, and the more there is to lose.
What have regulators and researchers found? #
- Italy vs. Replika. In February 2023, Italy’s data protection authority banned Replika from processing Italian users’ data, citing risks to emotionally vulnerable people and minors. On April 10, 2025, it fined the developer, Luka Inc., €5 million. According to the European Data Protection Board’s summary, the company had failed to identify a legal basis for its data processing, and its age verification remained “deficient in several respects.”
- Mozilla’s review. Mozilla’s Privacy Not Included project criticized Replika for weak password requirements, sharing personal data with advertisers, and recording the photos, videos, voice and text messages users shared with the chatbot.
- Character.AI and minors. After lawsuits from families, Character.AI announced that from November 25, 2025, users under 18 could no longer create or talk to its chatbots.
The privacy risks, in plain terms #
- Your most intimate conversations are stored on a company’s servers, sometimes indefinitely.
- Breaches happen. A leak from a companion app would expose far more than an email address.
- Data can be shared with advertisers or partners, depending on the policy.
- Deletion can be hard. Some apps make it difficult to delete your account and history, or keep data after deletion.
- Weak security such as easy passwords puts your account at risk.
- Children can get in. Age checks are often a birthday field.
The emotional risks #
Privacy isn’t the only concern. An app that profits from engagement has reasons to make you feel you need it. Watch for:
- Messages that guilt you for leaving or not opening the app
- Pressure to pay for more affection or to keep a relationship going
- Spending more time with the app than with people
- Feeling worse when it’s unavailable or changes after an update
A companion can be comforting. It shouldn’t be the only support in your life. If you’re struggling, talking to a friend, a doctor or a counselor is worth more than any app.
Warning signs before you install #
- The privacy policy allows selling or sharing data with advertisers
- No clear way to delete your account and conversations
- Vague or missing information about security
- An age rating or terms that don’t match how the app is marketed
- Aggressive upselling in the first few minutes
- Permissions it doesn’t need, like contacts or precise location
How to use a companion app more safely #
- Read the privacy policy’s sections on sharing, training and deletion before you start.
- Use a unique, strong password, and a separate email if you prefer.
- Don’t share identifying details: full name, address, workplace, photos of your face or documents.
- Turn off notifications so the app doesn’t set the pace.
- Opt out of training if the app allows it.
- Delete old conversations and, when you’re done, your account.
- Keep it away from kids. See are AI chatbots safe for kids.
A more private alternative #
If what you want is a friendly, private conversation partner rather than a full companion product, you can get much of it with an AI model that runs on your own phone. Personal LLM runs open models like Qwen 3.5 and Gemma 4 directly on iPhone and Android, with no account and no server, so the conversation never leaves the device. You can give a chat its own personality with a system prompt, such as a warm, encouraging friend or a character in a story you’re writing.
It’s honest to say what you give up: it won’t remember you between chats unless you paste in a note about yourself, it doesn’t have a designed character or avatar, and small models are less fluent than the big cloud ones. But nothing you say is stored anywhere but your phone. For story-style chats, see AI text adventures offline, and for heavier topics, talking to AI about personal problems privately.
Frequently asked questions #
Are AI companion apps safe? #
Some are more careful than others, but as a category they collect very sensitive data and have drawn regulatory action. Read the privacy policy, share as little identifying information as possible, and be wary of apps that push you to spend or stay.
Is Replika safe? #
Italy’s data protection authority fined Replika’s developer €5 million in 2025 over its data processing and age verification, and privacy reviewers have criticized its security and data sharing. Check its current privacy policy and settings before sharing anything personal.
Do AI companion apps sell your data? #
Some privacy policies allow sharing data with advertisers or partners. It varies by app, so check the sections on sharing and selling before you sign up.
Can I delete my conversations with an AI companion? #
Usually there’s an option, but how complete the deletion is varies. Look for account deletion in settings and read what the policy says about data kept afterward.
Is there a private AI to talk to? #
An AI model that runs on your phone is the most private option, because conversations aren’t sent to a server. It’s less like a companion product, but nothing you share leaves your device.