Privacy Policy
Last updated · 14 August 2026
GirlfriendAI WTF operates girlfriendai.wtf as an independently run information and referral site about AI companion apps. This policy explains what is collected here, why, how long it is kept, and what you can ask us to do about it.
The short version: this site has no accounts, no comment section, no newsletter form and no user-generated content. What remains is ordinary web-server data and aggregate analytics, used to understand which pages are useful and to keep the site free of abuse.
1. Who is responsible for your data
GirlfriendAI WTF is the operator of girlfriendai.wtf and the party responsible for the processing described in this policy. Questions, complaints and rights requests can be sent to hello@girlfriendai.wtf and are answered by a person, not an automated system.
Services reached through outbound links on this site are operated by separate companies with their own policies and their own legal responsibilities. Once you follow such a link, that company — not us — determines what happens to the data you give it.
2. What is collected on this site
- Technical request data written by the web server: IP address, user agent string, referring page, requested URL and timestamp.
- Aggregate analytics events: page views, scroll depth, which call-to-action was clicked, and a country-level location derived from the IP address.
- Campaign parameters (utm_source, utm_medium, utm_campaign, utm_content, utm_term) when they are present in the URL you arrived on.
- A single age-confirmation flag stored in your browser once you confirm you are 18 or older.
3. What is deliberately not collected
There is no registration on this site, so no email addresses, passwords, names or payment details are requested or stored here. Nothing you type into a conversation with an AI character happens on this domain — those conversations take place on the partner service, under that service's own policy.
No attempt is made to identify you personally, to build a cross-site advertising profile, or to link your visit here to activity on unrelated websites.
4. Why the data is processed
- To serve the pages you request and keep them working on your device and browser.
- To measure, in aggregate, which pages and sections are read and which are ignored, so the content can be improved.
- To attribute referrals to the correct campaign and partner, which is how this site is funded.
- To detect and block automated abuse, scraping and fraudulent traffic.
- To comply with legal obligations, including responding to valid rights requests and lawful demands.
5. Legal bases (UK/EU visitors)
Where the GDPR or UK GDPR applies, the legal basis for serving pages, keeping security logs and measuring aggregate performance is legitimate interest: running and defending a website nobody has to register for. Where consent is required for non-essential storage under local rules, that consent is requested before the storage happens and can be withdrawn at any time.
6. Cookies and local storage
- age_confirmed — a cookie recording your 18+ confirmation so the notice is not shown on every page. Expires after one year.
- utms — a localStorage entry holding campaign parameters from your arrival URL so a referral is credited correctly. Cleared when you clear site data.
- Analytics storage — where an analytics container is enabled, it may set its own identifiers under its own policy. Used for aggregate measurement only.
7. Sharing and disclosure
Data is not sold, rented or traded. Access is limited to the hosting provider that serves the site, the analytics processor where one is enabled, and the affiliate network that records referrals — each acting on instructions and each bound by its own agreement.
Data may also be disclosed where the law requires it, or where disclosure is necessary to establish, exercise or defend a legal claim, including responding to abuse and fraud.
8. International transfers
The hosting and analytics providers used by this site may process data outside your country of residence, including in the United States. Where such a transfer takes place from the UK or EEA, it relies on an adequacy decision or on standard contractual clauses with the provider.
9. How long data is kept
- Server request logs: typically up to 30 days, then deleted or rotated by the hosting provider.
- Aggregate analytics: up to 26 months, after which reporting exists only in summarised form.
- Age-confirmation cookie: one year, or until you clear it yourself.
- Correspondence sent to us: kept as long as needed to resolve the matter and to evidence that it was resolved.
10. Your rights
Depending on where you live, you may have the right to access the data held about you, to have it corrected or erased, to restrict or object to processing, to receive it in a portable form, and to withdraw consent where processing relies on it. Residents of California may also request disclosure of the categories of information collected and may opt out of any sale or sharing of personal information — this site does not sell or share personal information.
To exercise any of these rights, write to hello@girlfriendai.wtf. Because this site holds no account data, a request is usually answered by explaining what exists, which is generally very little. Requests are answered within 30 days.
11. Children
girlfriendai.wtf is an adult service and is not directed at anyone under 18. No part of the site is intended for minors, and no data is knowingly collected from them. If you believe a minor has used this site, contact hello@girlfriendai.wtf and any associated records will be deleted.
12. Security
The site is served over HTTPS and is a static publication: there is no database of user records to breach, because there are no user records. Administrative access to the publishing repository is limited and protected by multi-factor authentication.
13. Changes and how to reach us
This policy is updated when the site changes in a way that affects it. The date at the top always reflects the current version, and material changes are summarised in this section for one month after they take effect.
For anything in this document, write to hello@girlfriendai.wtf.