This policy covers the Hermes app for Android and the account service that goes with it. It explains what we store, what never leaves your phone, and how you remove everything.
The app is published by Oversight OU, Tallinn, Estonia. For any privacy question or request, write to contact@oversight.ee.
Hermes is a control panel for a Hermes agent server. You point the app at a server address and an access key, and the app talks to that server. The server can be one you run yourself on your own machine or your own cloud account. We do not operate the conversations, the files, or the agent sessions you run through your own server.
| Data | Why | Where it lives |
|---|---|---|
| Name, email address | Create and identify your account | Our account service database |
| Password | Sign in | Stored only as a bcrypt hash. The plain password is never written down. |
| Session records | Keep one device signed in and let you revoke access | Our account service database |
| Server address and access key you enter | Connect the app to your Hermes server | Encrypted, on your device only |
| Service logs (IP address, time, request path) | Keep the service running, block abuse | Our servers, 30 days |
We do not ask for your phone number, your contacts, your location, or your photo library. The app requests these Android permissions and nothing else:
Your chat history, agent runs, project files, and logs stay on your phone and on the Hermes server you connected to. When you add a project folder, the app copies the folder into its own private storage so the agent can read it. That copy is not uploaded to us. You can send it back out to a folder you pick, or delete it, at any time.
Two external providers are involved in running the app:
Nothing else receives your data. Your prompts and files are processed by whatever model provider your own Hermes server is configured with, under that provider's terms, not ours.
You can delete your account from inside the app: open Settings, find the Account section, tap Delete account, and confirm with your password. The account row, its sessions, its verification tokens, and any stored API credentials are removed from the account service database immediately and permanently.
If you cannot reach the app, email contact@oversight.ee from the address on the account and we will delete it for you within 30 days. You can also ask for a copy of what we hold, or correct your name and email in the app.
Traffic to the account service runs over TLS. Passwords are hashed with bcrypt and never stored or logged in clear text. Access tokens are short lived and bound to a single session, and the app keeps its credentials in encrypted storage. No system is perfect, so we keep the account surface small on purpose.
The app is a professional tool and is not directed at children. We do not knowingly create accounts for anyone under 16.
If this policy changes, the date at the top of this page changes with it, and material changes are announced in the app or by email before they take effect.
Oversight OU, Tallinn, Estonia. contact@oversight.ee