Privacy Policy

Last updated: June 2026

The short version: SlyOS runs on your phone and stores your messages, memory, and keys locally on your device. Belto does not run a server that collects your personal data — but SlyOS is not fully on-device: when you use AI, email, backup, voice-cloning, or the bot, the relevant data is sent to the third-party providers whose keys/accounts you connect (listed in section 5), under your own keys. SlyOS also sends anonymous usage counts to Belto's analytics backend (section 6).

1. Who we are

SlyOS is an Android launcher application made by Belto ("we", "us"). This policy explains what happens to your data when you use it. Questions: support@belto.world.

2. Data stored on your device

SlyOS keeps your imported chats, contacts, learned facts, voice profile, notes, checklist, drafts, papers, settings, and your API keys in local storage on your phone. This data is not transmitted to Belto. Clearing the app's data or uninstalling it removes this data; you can also reset memory inside the app.

3. Data sent to AI model providers

To generate replies, summaries, papers, and other AI output, SlyOS sends the relevant prompt and context (which may include your messages, memory, and profile) to whichever model provider you've added a key for, using your own API key. Depending on what you connect, that can be Anthropic (Claude), Google (Gemini), OpenAI (GPT), Groq, Cerebras, Mistral, or GitHub Models. Each request is governed by that provider's terms and privacy policy. We do not receive or retain a copy of those requests. If you download the on-device model/embedder, that processing stays on your phone.

4. Permissions we use, and why

All permissions are granted by you and can be revoked in Android settings at any time.

5. Third-party services & what is sent

If you choose to use them, SlyOS connects to the services below using your accounts/keys. Each is optional and governed by that provider's own terms and privacy policy. SlyOS does not add advertising or third-party trackers.

5a. Google user data — Limited Use

SlyOS's use and transfer of information received from Google APIs to any other app adheres to the Google API Services User Data Policy, including the Limited Use requirements.

Concretely, for the Google scopes SlyOS requests — Gmail (reading your recent mail so it can draft replies, and sending mail you have approved), Calendar events, Docs, Sheets, Slides, and Drive files this app itself creates:

Revoke SlyOS's access to your Google account at any time at myaccount.google.com/permissions, or by tapping Disconnect inside SlyOS.

6. Anonymous usage analytics

To understand what SlyOS is used for and improve it, the app sends anonymous event counts (e.g. "a Home query happened", the general category such as "remember" or "schedule", feature used, success/ failure) to Belto's Supabase backend. Events are keyed to a random per-install ID and, if you're signed into a SlyOS account, your account email — never the content of your messages. You can turn this off in the app.

7. The website

This site is static and does not set tracking cookies. Our host (GitHub Pages) may log basic technical request data (such as IP and user-agent) as part of serving the page and file, per their own policies.

8. Children

SlyOS is not directed to children and is intended for users 16 and older.

9. Your control

You control your data: reset the memory in-app, remove your keys, clear app storage, turn off analytics, or uninstall. Because the data lives on your device, you hold and manage it directly.

10. Changes

We may update this policy; the "last updated" date will change. Continued use after an update means you accept the revised policy.