← Back to Oak

Privacy Policy

Last updated: September 9, 2026

Oak ("Oak," "we," "us") is an independent, unofficial fan project — a chat companion for reasoning about competitive Pokémon Champions teams. It is not affiliated with, endorsed by, sponsored by, or otherwise connected to Nintendo, Game Freak, Creatures Inc., or The Pokémon Company. This policy explains what information Oak collects when you use the app (on the web, iOS, or Android), how it's used, and the choices you have.

Information we collect

  • Account email. If you sign in, we collect the email address you provide so we can send a one-time sign-in code. Oak never uses passwords.
  • Chat messages and history. If you're signed in, your conversations with Oak are stored so you can return to them later and have them sync across devices. If you're using Oak as a guest (no account), your conversation isn't tied to an account and you can't return to it later — the live session exists only in memory and is discarded once it ends. Separately, and regardless of whether you're signed in, Oak keeps an internal operational record of each message and answer (see "Operational records and operator access" below).
  • Public share links. If you're signed in, you can publish a snapshot of one question and Oak's answer to a public link. Anyone with the link can view it (see "Public share links" below).
  • Team data. If you build or save a competitive Champions team (species, ability, held item, moves, nature, Stat Points, and similar details), that data is stored against your account.
  • Images you attach. A photo or screenshot you attach to a message is sent to the active AI model to help answer that one question. It's used only for that single message — the image itself is never stored in your chat history or saved anywhere (Oak keeps only a count of how many images a message included).
  • Technical data. We log IP addresses transiently to rate-limit sign-in requests and prevent abuse. Oak does not use analytics, advertising, or tracking SDKs of any kind.

Operational records and operator access

To run Oak reliably — to understand how it is being used, what it costs, and where it is failing — Oak keeps an internal operational record of activity:

  • One record per chat turn. Each time you send a message and Oak replies, Oak stores a record of that turn. This happens for every turn, whether you are signed in or using Oak as a guest. (The images themselves are never stored — Oak keeps only a count of how many images a message included.) A voice turn may later hold a full structured answer, which the operator can read the same way as a text-chat answer.
  • Full message content is kept for a limited time. Oak keeps your message text, Oak's answer, and the tools Oak called for about 14 days if you are a guest, and about 90 days if you are signed in. After that, the operational record keeps only usage stats — the model, token counts, timing, and status — for the operator dashboard.
  • Signed-in chat history is separate. If you have an account, your conversations stay until you delete the account. Pruning operational records does not erase that history.
  • One record per sign-in event. When a one-time sign-in code is requested, verified, or fails to send, Oak stores a small record of that event — the email involved and the outcome.

These operational records can be read by Oak's operator — the single owner who runs the service — through a private, administrator-only dashboard. For this purpose the operator can read the conversations and questions of both signed-in and guest users (while full content is still retained). This information is never shown to any other user, and Oak still does not sell your personal information or use it for advertising.

Public share links

If you are signed in, you can publish a snapshot of one turn — your question and Oak's answer — to a public link. Anyone with that link can view the snapshot; they do not need an Oak account.

  • Question and answer. The public page shows the question you asked and Oak's answer. The page is marked noindex so search engines are asked not to list it.
  • You can revoke a link. As the owner, you can revoke a share at any time. The page then becomes unavailable.
  • Deleted with your account. If you delete your account, your public share links are deleted with it and become unavailable.

Publishing a snapshot does not change the operator's access to chat turns described above.

How we use this information

We use the information above only to operate Oak: authenticating sign-in, generating answers to your questions, saving and syncing your chats and teams, and protecting the service from abuse. We do not sell your personal information, and we do not use it for advertising.

Who we share it with

Oak relies on a small number of service providers to function:

  • AI model providers (xAI/Grok by default, with Anthropic or OpenAI as operator-selected alternates) receive your message content, and any images you attach, in order to generate an answer.
  • Resend delivers the one-time sign-in code email to your inbox, and so receives your email address for that purpose.
  • Fly.io hosts the application and its database, in the United States.

These providers process data on Oak's behalf and are not permitted to use it for their own purposes beyond providing their service to us. We do not sell personal information to anyone.

Data retention

  • Signed-in account data (chats, saved teams) is retained until you delete it or delete your account.
  • Public share links stay live until you revoke them or delete your account.
  • A guest's live conversation isn't tied to an account and can't be reloaded later — it exists only in memory and is discarded when the session ends.
  • The internal operational records described above (one per chat turn, one per sign-in event) are kept indefinitely, for signed-in and guest activity alike.
  • Attached images are never stored; each is used for a single message and then discarded.

Your rights and account deletion

You can permanently delete your account — including all chat history, saved teams, and public share links — at any time from the iOS or Android app (Account → Delete account). Deletion is immediate and can't be undone. If you'd like help deleting or accessing your data, or have any other question about your information, email us at gowtam@gowtam.ai.

Children's privacy

Oak is not directed at children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, contact us and we'll delete it.

Security

We take reasonable technical and organizational measures to protect your information. No method of transmission or storage is 100% secure, so we can't guarantee absolute security.

Changes to this policy

We may update this policy from time to time. Any changes will be posted on this page with an updated "Last updated" date.

Contact us

Questions about this policy or your data? Email gowtam@gowtam.ai.