Gemora Privacy Policy

Effective Date: December 19, 2025 | Last updated December 19, 2025

This Privacy Policy explains howGemora ("Gemora," "we," "us," or "our") collects, uses, shares, and protects information when you use our apps, websites, and related services (the "Service").

If you do not agree with this Privacy Policy, please do not use the Service.


1. Who We Are (Controller/Business)

Depending on your location, Gemora may act as a data controller (or "business") for personal data processed under this Policy.


2. Quick Summary (Plain English)


3. Information We Collect

We collect information in these categories:

3.1 Information You Provide

3.2 Information We Collect Automatically

3.3 Cookies and Similar Technologies (Web)

If you use the website, we may use cookies/local storage for:

You can control cookies via your browser settings. Some features may not work without them.

3.4 Sensitive Information

Note: Avoid submitting passwords, one-time codes, full payment card numbers, government ID numbers, or similar sensitive information unless the Service specifically requests it for a feature.


4. How We Use Your Information

We use information for the following purposes:

4.1 Provide and Operate the Service

4.2 Improve and Secure the Service

4.3 Payments and Subscriptions (if applicable)

4.4 Legal Compliance


5. AI Processing and "Memory"

Gemora provides AI-assisted features that process your inputs to generate responses, summaries, and related app functionality.

5.1 What AI Sees

To respond to your request, the Service may process:

5.2 Memory: What It Is and How It Works

"Memory" is information stored to improve personalization (e.g., preferences, recurring context, summaries). Memory may be:

5.3 Your Controls

Where available, you can:

5.4 Model Training / Improvement

We do not use your private User Content (including chats and Memories) to train generalized AI foundation models unless you explicitly opt in, or the content is first de-identified/aggregated to a level that cannot reasonably be linked back to you.

When we use third-party AI providers, we require them to process data only to provide the Service, consistent with our contracts and configurations where available.

Note: AI-assisted output may be incomplete or inaccurate and is provided for general information and productivity support.


6. Legal Bases for Processing (EEA/UK and Similar Regions)

If you are located in the EEA/UK (or where similar laws apply), we process personal data under these legal bases:


7. How We Share Information

We share information only as described here:

7.1 Service Providers (Processors)

We use vetted vendors to operate the Service, such as:

They may process personal data only to provide services to us, under contractual obligations.

7.2 Legal, Safety, and Rights

We may disclose information if we believe it is reasonably necessary to:

7.3 Business Transfers

If Gemora is involved in a merger, acquisition, reorganization, or asset sale, your information may be transferred as part of that transaction. We will provide notice if required by law.

7.4 We Do Not Sell Personal Data

We do not sell your personal data in the ordinary meaning of "sell." If laws define "sale" or "share" differently (e.g., some advertising contexts), see Region-Specific Rights below.


8. Data Retention

We retain information as long as needed to:

Typical retention periods:

When you delete your Account, we delete or de-identify data within a reasonable timeframe, except where retention is required for legal, security, or fraud-prevention purposes.


9. Your Rights and Choices

Depending on where you live, you may have rights to:

9.1 How to Exercise Rights

You can exercise certain controls in-app (if available) or contact us at privacy@gemora.app. We may need to verify your identity to protect your data.

9.2 Marketing Communications

If we send marketing emails, you can unsubscribe via the link in the message or by contacting us. We may still send service-related communications (billing, security, updates).


10. International Transfers

We may process and store data in countries other than your own. When required, we use appropriate safeguards for cross-border transfers, such as:

Primary processing locations: United States, European Union.


11. Security

We use reasonable administrative, technical, and organizational measures to protect data, such as:

No method of transmission or storage is 100% secure. You are responsible for keeping your credentials secure and using strong passwords.


12. Children's Privacy

The Service is not directed to children under 13. We do not knowingly collect personal data from children below that age without legally required consent. If you believe a child has provided personal data, contact us at privacy@gemora.app.


13. Third-Party Links and Services

The Service may contain links to third-party websites or services. Their privacy practices are governed by their own policies. We are not responsible for third-party practices.


14. Region-Specific Disclosures

14.1 EEA/UK: GDPR Rights

You may have the right to lodge a complaint with your local data protection authority. We encourage you to contact us first so we can try to resolve the issue.

14.2 California (CCPA/CPRA)

If applicable, California residents may have rights to know, access, delete, correct, and opt out of certain "sharing" as defined by law.


15. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. If changes are material, we will notify you by email or through the Service as required by law. The updated Policy becomes effective on the stated Effective Date.


16. Contact Us

If you have questions or requests, contact:


Appendix: "Memory" Controls

Memory Feature Information:

  1. What Memory stores: Preferences, recurring context, summaries, and information you choose to save.
  2. Why it helps: Personalization and improved retrieval of context you share.
  3. How to view/edit/delete: Use in-app Memory settings or contact support.
  4. How to disable: Adjust Memory settings in your account preferences.
  5. Note: Avoid storing passwords, one-time codes, full payment card details, government IDs, or similar sensitive information in Memory unless a feature specifically asks for it.