# Privacy and control

Source: https://docs.getdeeprecall.com/about/privacy-and-control/

> Understand hosted storage, assistant permissions, and the controls available for your memories.

You choose what to save, which assistants connect, and what remains available for recall.

## Hosted memory and connected assistants

Deep Recall is a hosted service. It is not a local-only vault, and it does not promise end-to-end encryption that hides recalled text from your chosen AI provider.

An assistant using Deep Recall receives the memory text returned by its tools. That provider’s own policies also apply to the conversation. Save information you are comfortable processing this way.

## Permissions are separate from installation

A skill teaches an assistant how to use memory. A plugin can bundle that skill and connection details. Neither replaces the sign-in and permission review that authorizes access to your account.

| Permission     | Allows                                                      |
| -------------- | ----------------------------------------------------------- |
| `memory:read`  | Find memories and ask grounded questions                    |
| `memory:write` | Save memories and forget them, including permanent deletion |

Read-only access is useful when an integration should consult context without changing it. Review requested permissions before approving a connection.

## Decide what stays

* **Pin:** protect a memory from automatic replacement during ingestion.
* **Archive:** hide a memory from normal recall while keeping it recoverable.
* **Restore:** make an archived memory active again.
* **Delete:** permanently remove a memory through the supported deletion operation.
* **Export:** download an account snapshot you can keep.

Deleting a memory does not necessarily delete an original uploaded document or email that supported it. Manage source files separately in Documents. Likewise, deleting a source has its own controls for source-linked memories. Read [document deletion](/use/documents/#delete-a-document) before confirming.

## Stop an assistant’s access

Use the assistant’s connector or plugin controls to disconnect Deep Recall. If you are unsure whether access was revoked, [contact us](/help/contact/). Signing out of the Deep Recall app clears that browser session; it does not by itself revoke every assistant connection.

For the full policies, read [Privacy policy](https://getdeeprecall.com/privacy) and [Terms and conditions](https://getdeeprecall.com/terms).
