Privacy Policy
Effective date: October 1, 2026
Last updated: October 1, 2026
1. Who we are
This Privacy Policy explains how Preon, a private messenger, and the service behind it collect, use, store and protect your data.
Service operator:
Sergej Konopacki
Serbia
Email: privacy@preon.im
By using Preon, you agree to the processing of the data needed to provide the messenger, as described below.
2. Data we process
Account
When you create and use an account, we process:
- your email address;
- your display name;
- your public Preon number and an internal user identifier;
- a hash of your password (the password itself is never stored);
- the date the account was created; and
- your active sessions.
We use your email address to sign you in and to send you account security messages, such as the code that confirms a password change. These messages come from noreply@preon.im.
Profile
Your display name and number are shown to people you write to and to anyone who looks up your number. Your profile photo is shown only to your contacts, and not to anyone involved in a block with you.
The optional profile fields — full name, about, website and date of birth — are stored so that you can see and edit them; they are currently not shown to other people.
Contacts, requests and blocks
To run your contact list, we store:
- who you are connected with, and your pending and past contact requests;
- the names you give your contacts; and
- the people you have blocked.
Preon does not read or upload your phone's address book.
Online status
While the app is connected, other people can see that you are online: your contacts, the people you chat with, and anyone who looks up your number. People involved in a block with you cannot. We keep no public "last seen"; the time a device last connected is recorded for your own device list only.
Messages and files
Messages, photos and files are encrypted end to end: they are encrypted on the sender's phone, and only the phones in the conversation can decrypt them. The server receives and stores the encrypted content so that it can be delivered, synchronized, and restored to your account on a new device. We cannot read it.
To deliver messages, the service processes their metadata: who writes to whom, chat and device identifiers, when messages are sent, delivered and read, their delivery state, and the type and size of attachments. Preon does not claim to hide this metadata.
When you delete a message, it is no longer shown to you (or, when you delete it for everyone, to anyone). Its encrypted copy remains on the server until the account it belongs to is deleted.
Preon accesses only the photos and files you choose to send or set as your profile photo; the system picker does not give it your whole library. Your profile photo is not end-to-end encrypted.
Devices, keys and recovery
To run the app and protect your account, we process:
- an identifier the app creates for your device, its platform and name, and when it last connected;
- your devices' public keys and the protocol versions they use; and
- a push notification token for your device, which we store encrypted.
Your private keys stay on your device. So that you can move to a new phone, the server keeps an encrypted backup of your account keys, locked with the recovery key that only you have. We never receive the recovery key and cannot open this backup.
Notifications
Notifications are delivered by Apple Push Notification service. The server does not put the text of a message into a notification: a notification carries the message only in encrypted form, and your phone decrypts it to show the sender and the text.
Reports
If you report someone, we store the report: who reported whom, the reason, your comment and the chat it came from. If you include messages in a report, you choose to disclose them: their text and attached photos are sent to our moderators unencrypted. This is the only way message content reaches us, and it happens only when you send a report.
Reports about an account are kept for moderation and to prevent abuse, including after that account is deleted, together with its number.
Technical data
When you use the service, we automatically record:
- your IP address, the time of the request, the request path and the response;
- request identifiers, and your user and device identifiers; and
- connection and error information and rate-limit events.
We use this data for security, to prevent abuse, to diagnose errors and to keep the service available.
If you tap "Connection diagnostics" in Settings, the app creates a log of its connections on your phone — app and iOS versions, device model, server names, errors and timings, without message content or keys — and shares it only where you choose to send it.
3. How we use data
We use data only to:
- create your account and sign you in;
- deliver, synchronize and restore messages and files;
- let people find you by your number and manage contacts;
- show profiles, profile photos and online status;
- protect accounts, keys and sessions;
- review reports and enforce our Terms of Use, including suspending accounts that break them;
- prevent spam, attacks and abuse;
- diagnose errors and keep the service running; and
- meet legal obligations.
We do not use your data for advertising, we do not track you across other apps or websites, and we do not sell personal data.
4. Security
Messages and files are encrypted end to end. The connection between the app and the service uses TLS. Private keys are kept in the device's secure storage. No system is perfectly secure, but we apply reasonable technical and organizational measures to protect your data.
5. Who can see your data
Your data may be available to:
- the people you communicate with;
- the infrastructure providers that host and run the service, and the provider that delivers our email;
- Apple, when you use the App Store, TestFlight, notifications and crash reports;
- our moderators, for reports;
- authorities, when the law requires us to disclose data; and
- specialists who maintain the service, only as far as they need to.
Providers acting for us must protect data at least as well as this Policy describes. We do not share data with advertising networks, data brokers or tracking services.
6. How long we keep data
We keep account, contact, profile, message and file data while your account exists.
Deleting your account: you can delete your account at any time in the app, under Profile → Delete account. Deletion is immediate and cannot be undone. It removes your account, profile, contacts, devices, keys, sessions and settings, and your chats on the server — including the server's copies of the other person's side of those chats. What remains:
- your number, which is never given to anyone else;
- reports about your account, with your number and the messages the reporter disclosed;
- a record that a deletion took place (a random identifier and the time), with nothing about you;
- messages and files the people you wrote to already have on their phones — we cannot delete those; and
- server logs and backups, until they expire as described below.
Server logs are kept for no longer than 30 days, unless a specific security incident requires longer. Backups are kept for no longer than 30 days, after which the deleted data they contain is gone.
Suspended accounts: if an account is suspended for breaking our Terms of Use, its data is kept as it is; the owner can ask us to delete it by writing to support@preon.im.
7. Your rights
You can ask us for:
- access to your personal data, or a copy of it;
- correction of inaccurate data;
- deletion of your data;
- restriction of processing; and
- withdrawal of consent you have given.
Write to privacy@preon.im from your account's email address, or include your Preon number; we may ask you to confirm that the account is yours.
Signing out removes your sign-in and local data from the device but does not delete your account. You can turn off notifications in iOS Settings.
8. Children
Preon is not intended for children under 13, or under the minimum age set by the law of your country. We do not knowingly collect data from children without the consent of a parent or guardian. If you believe a child has given us data without it, write to privacy@preon.im.
9. International processing
Data may be processed in the country where our servers are located, which may differ from yours. Where the law requires it, we apply the necessary safeguards for international transfers.
10. Changes
We may update this Policy when Preon, the way we process data, or the law changes. The date of the latest update is always shown at the top. We may also tell you about important changes in the app.
11. Contact
Privacy questions and requests: privacy@preon.im
Support: support@preon.im
Website: preon.im