Privacy
OpenFolks stores your work on your own computer. This page lists what the app sends to other services, why, and how to turn it off.
Last updated 11 October 2026
Summary
- Conversations, folk settings, memory and files are stored on your computer.
- The app sends anonymous usage events by default. You can turn them off in Settings, General.
- Your messages go to the model provider you choose, because that is how a folk produces an answer.
- This website does not use cookies, advertising or analytics.
What stays on your computer
OpenFolks keeps its data in ~/.openfolks. You can move it with the OPENFOLKS_DATA_DIR environment variable. This includes conversations, folk profiles and instructions, memory, attachments, routines, and settings. API keys entered in the packaged app are stored with the operating system’s secure storage where the system provides it, and are not shown back in the interface.
What the app sends
Usage events
The app sends a small set of named events to PostHog (United States, us.i.posthog.com) so the maintainers can see whether features are used. Events are: app_first_open, app_opened, onboarding_step, onboarding_completed, bot_created, message_sent, room_created, room_members_changed, team_imported, team_exported, team_scouted and directory_bot_added.
Events carry counts and labels such as the platform, the number of members in a room, whether a message was queued, and the model instance used. They do not carry message text, file contents, folk names or instructions. Automatic capture of clicks and page views is switched off. The client keeps a random identifier in local storage. The service that receives a request can see the network address it came from.
To turn this off: open Settings, then General, and switch off analytics. When it is off the analytics client is not started and no request is made. The setting is remembered between launches.
Model providers
A folk answers through an engine you set up, such as Claude, Codex or a local model. The text of your conversation, and any files or tool results the folk includes, are sent to that provider under its own terms and privacy policy. OpenFolks does not sit in the middle of that traffic. Choose a local model if the content must not leave your machine.
Connected apps
If you connect a service such as Gmail or GitHub, the official desktop build registers an installation with a managed connected-apps service built on Composio. Sign-in happens at the service provider. Provider tokens are held by Composio and are not written into folk instructions or shown in the interface. When a folk uses a connected app, the request and the data it returns pass through that service. Disconnecting an account revokes the grant at the provider.
Updates
The desktop app checks the project’s GitHub releases for new versions, which sends a request to GitHub. GitHub’s privacy policy applies to that request.
Optional services
- Spoken replies. If you add an ElevenLabs key, the text of replies you ask to hear is sent to ElevenLabs.
- OpenFolks account. If you create an account for cloud features, the service stores your email address for sign-in codes, along with metadata for the installations you register. It does not store folks, conversations or the contents of your local data.
- Remote access. If you turn on a companion tunnel, requests are carried by Cloudflare to your own machine.
This website
The website sets no cookies and loads no analytics, advertising or third-party scripts. Fonts are served from this site. Like any web server, the host keeps ordinary access logs, which include network addresses, for security and reliability. Download links go to GitHub, which has its own privacy policy.
Your choices
- Turn off usage events in Settings, General.
- Delete your data by removing the
~/.openfolksfolder (or the folder you set). - Remove connected apps from Connections, or revoke access from the provider’s own settings.
- Request deletion of an OpenFolks account by opening an issue in the project repository.
Children
OpenFolks is a tool for adults and is not directed at children.
Changes to this page
When the app’s data practices change, this page changes in the same release. Earlier versions are in the repository history.
Contact
Questions about privacy can be raised as an issue at github.com/manasdutta04/openfolks/issues. For security reports use the process on the security page.