The short version
Brello 1.0 answers on your phone and keeps its chats there. It goes online only for a model download you start and a web search you allow; a source you tap opens in your browser. Each statement below is paired with its limit.
| What Brello 1.0 does | The limit |
|---|---|
| Your questions, photos and answers are processed on your device. | When you choose to search the web, the search text leaves the phone. |
| Chats are stored only on your phone and are excluded from backups. | They are not copied to Google Drive backups or to a new phone, so a lost or reset phone takes its chats with it. |
| Web search is off by default, and Brello asks before going online. | When you search, the search engine and the websites Brello reads see a normal request, including the phone’s IP address. |
Where the AI runs
The AI runs entirely on your phone. Your question goes only to the model’s runtime on the device: there is no cloud AI and no Brello server. Brello 1.0 works offline after a one-time download of the model.
Figure 1 draws the boundary. Everything inside the dashed line stays on the phone. Brello sends three kinds of request across it, and each starts only when you do something.
- Questions, photos and answers are processed on the phone. Chats, photos and settings stay in Brello’s private app storage, inside the dashed line.
- 1 · A model download, when you start it. The phone sends a standard file download request to Hugging Face, once per model. Then Brello works offline.
- 2 · The search text, only when web search is on. A cleaned-up version of the question goes straight to a search engine, which sees the phone’s IP address.
- 3 · Up to four result pages, at the same moment. Their websites see a normal request, including the IP address. A source you tap opens in your browser.
- Nothing else leaves. There is no Brello server, proxy or relay, and no analytics, advertising or crash reporting. Chats are excluded from backups.
The app says the same in its own settings. Under Privacy, the Settings sheet shows three rows, quoted here exactly.
| Row | Text in the app |
|---|---|
| “AI runs on your phone” | “Questions, photos and answers are processed locally. No cloud, no account.” |
| “Chats stay here” | “History lives only in Brello's private storage and is excluded from backups.” |
| “Direct web search” | “Searches go straight from this phone to the search engine and the pages you read. No Brello server in between, nothing logged.” |
What stays on your phone
Your questions, photos and answers are processed on the phone, and your chats are stored only there. The exception is web search: when you choose to search, the search text and requests for up to four result pages leave the phone, as What leaves, and only when you choose sets out. Table 3 lists where each item lives.
| Item | Where it is kept | Detail |
|---|---|---|
| Your questions | Processed by the model on the phone | The prompt goes only to the on-device runtime. |
| Brello’s answers | Generated on the phone | Written by the model you chose, on this phone. |
| Photos you attach | Copied into Brello’s private app storage, in images/ | Never uploaded. A question with a photo never triggers a web search. |
| Chat history | One file, conversations.json, in Brello’s private app storage | Written atomically, to a temporary file first and then renamed, so an interrupted save doesn’t leave a partial file. |
| Reasoning | Stored with the chat | Shown in the reply’s “Thought process” panel. |
| Settings | Android SharedPreferences, private to Brello | Theme, web search, Think harder, GPU acceleration and the chosen model. |
Android normally copies app data to cloud backups and to a new phone. Brello 1.0 turns both off, so its chats stay on the phone where they were written.
| Copy route | Setting in Brello 1.0 | Effect |
|---|---|---|
| Android cloud backup | allowBackup="false", and data-extraction rules that exclude every domain: root, file, database, sharedpref and external | Chats are not copied to Google Drive backups. |
| Device-to-device transfer | The same rules exclude every domain from transfer | Chats are not copied to a new phone. |
What leaves, and only when you choose
Brello 1.0 sends three kinds of request, each only after you act: a model download, the search text and requests for up to four result pages. A source you tap opens in your browser, like any other link. Table 5 lists what is sent in each case, who receives it and what controls it.
| When | What is sent | To whom | Controlled by |
|---|---|---|---|
| Downloading a model, once per model | A standard file download request | Hugging Face (huggingface.co, litert-community repositories) | You, by starting the download |
| Web search, only while it is on (choosing “Search the web” on the card turns it on) | The search text: a cleaned-up version of your question, sometimes with up to 10 words of the previous question added for context on a follow-up | The search engine that answers: DuckDuckGo, Bing, Brave Search, Google News (RSS) or Wikipedia | The “Search the web” setting, or the “Search the web for this?” card |
| Reading results, at the same moment | Ordinary page requests for up to 4 result pages | The websites in the results | The same setting or card |
| Tapping a source card or citation | The page opens | Your browser | You |
These requests go directly from the phone. There is no Brello server, proxy or relay between you and the sites, so Brello has no logs to keep. The AI that reads the pages and writes the answer still runs on the phone; only the search text and the page requests go out.
Web search, precisely
Web search is off by default. When you turn it on, or tap “Search the web” on the card described below, which turns it on until you switch it off, Brello sends only the search text and the page requests, and reads the results on the phone.
With web search off, a question that looks time-sensitive brings up a card titled “Search the web for this?” with two buttons, “Search the web” and “Answer offline”. The card notes: “Choosing search turns on web search. You can switch it off anytime from +.” The reasoning behind asking first is set out in Asking before going online: consent for web search.
Brello tries up to eight search services in a fixed order, shown in Table 6, and moves down the list only when one fails, is blocked or returns results that don’t match the question. One question can therefore reach more than one service. A service that fails is skipped for 2 minutes; Wikipedia is never skipped.
| Order | Service | How the phone reaches it |
|---|---|---|
| 1 | DuckDuckGo, full results page | Hidden on-device browser |
| 2 | Bing | Hidden on-device browser |
| 3 | DuckDuckGo Lite | Direct request |
| 4 | DuckDuckGo HTML | Direct request |
| 5 | Google News RSS, last 7 days | Direct request, only for time-sensitive questions |
| 6 | Brave Search | Direct request |
| 7 | Bing | Direct request |
| 8 | Wikipedia search API | Direct request |
Table 7 gives the privacy properties of every search and page request. The full retrieval pipeline, from query to cited answer, is described in Answering from the open web, without a server.
| Property | In Brello 1.0 |
|---|---|
| Route | Directly from the phone to the service or website. No Brello server, proxy or relay. |
| Privacy signals | Every search and page request sends “Do Not Track” (DNT: 1) and Global Privacy Control (Sec-GPC: 1) headers. Both are signals; each site decides how to treat them. |
| What the receiver sees | What any normal web request shows, including the phone’s IP address. Brello doesn’t hide it, and adds nothing of its own. |
| The hidden browser | Android’s system WebView: one hidden tab, used for one search at a time and only while web search is on. It identifies as regular mobile Chrome, and warms up on a blank page that makes no network request. |
| Clean-up | After 3 idle minutes the hidden browser is destroyed, and its cookies, cache and local storage are wiped. |
| Results | Held in memory only, for 15 minutes, to avoid repeating a lookup. They are gone when the app closes. |
| Site icons | None requested. Source cards show letter marks drawn on the phone; in the code’s words, “no favicon requests leave the phone.” |
| Photos | A question with a photo never triggers a web search. |
Android permissions, and why
Brello 1.0 asks Android only for what a model download and web search need, and reaches the camera and photos through the system picker when you choose them.
| Permission | Why |
|---|---|
| Internet, network state | Model download and optional web search. |
| Foreground service (data sync), post notifications, wake lock | Lets the one-time model download continue, with a notification, while the app is in the background. |
| Camera, photos | Requested by the system picker only when you choose Camera or Photos. |
Brello 1.0 requests no contacts, location, microphone, SMS, calendar or storage-wide permissions.
No account, analytics, ads or tracking
Brello 1.0 has no account and contains no analytics, crash-reporting or advertising software. With no Brello server, none of your questions, photos, answers or chats reach us.
| Item | In Brello 1.0 |
|---|---|
| Account or sign-up | None. |
| Analytics | None. No analytics SDK is among the app’s dependencies. |
| Crash reporting | None. No crash-reporting SDK is among the app’s dependencies. |
| Advertising | None. No advertising SDK is among the app’s dependencies. |
| Brello server | None. Requests go directly from the phone, so there are no Brello logs. |
The Brello 1.0 system card gives the technical account of the app, and the Brello Charter commits us not to use your conversations to train models.
Claims we won’t make
Some phrases sound like privacy but are not true of Brello 1.0, so we don’t use them. Table 10 lists each, with the reason.
| We don’t say | Why |
|---|---|
| “Anonymous web search” or “untraceable” | Search engines and websites receive the request and see the phone’s IP address. |
| “End-to-end encrypted” | There is nothing to encrypt end to end: no Brello server receives your messages. The app also makes no encryption claims about local storage. |
| “Never connects to the internet” | It connects to download a model and, when you allow it, to search the web. |
| “Nothing leaves your device”, unqualified | The search text leaves when you choose to search the web. Our wording is about AI processing, which stays on the phone. |
| “No internet needed”, unqualified | True only after the one-time model download. |
| “Private web search”, unqualified | Search is direct and Brello logs nothing, but the search engine and websites still receive the query and the request. |
| “Military-grade” or “unhackable” | Neither phrase names a mechanism anyone can check, and no software can promise either. |
| “Powered by Google”, or anything implying that Google or Alibaba endorse Brello | Brello is built on open models from Google and Alibaba. It is not affiliated with or endorsed by either company. |
Brello Super Intelligence: the privacy design
Brello Super Intelligence is in development. This section describes design intent, not a product anyone can use.
Brello Super Intelligence, or Brello SI, is being designed to keep work on your device whenever it can, and to send work elsewhere only to sealed compute that your device has verified first. Table 11 pairs each intention with the part of the Brello Charter, version 1.0, that states it. Section 4 describes design intent; the numbered commitments, and the section 4 pledge to publish the architecture, are obligations.
| Design intent | Charter v1.0 |
|---|---|
| Work is intended to run on your device whenever it can. | Section 4 |
| When a task needs more than the device can give, it is intended to run on hardware-isolated, stateless servers designed to keep nothing: no logs, no retention and no human access. | Section 4, commitment 03 |
| Brello SI is being designed so that your device verifies a server before sending it anything. | Section 4 |
| Fresh facts are intended to come from the web only when you allow it. | Section 4 |
| We will not use your conversations to train models. | Commitment 01 |
| Brello SI will not remember anything about you beyond a single chat unless you can see what it holds, correct it, export it and erase it. | Commitment 07 |
| We will publish its architecture, including what each layer can and cannot see, before anyone outside the team uses it. | Section 4, published architecture |
| We are designing it so that independent researchers can verify what runs, where it runs and what it keeps. | Commitment 08 |
The open design questions, including how a phone could check a server before sending it anything, are set out in Private compute you can verify: the design space. Confidential computing for AI, explained introduces the underlying technology.
This website’s own privacy
This website sets no cookies and runs no analytics, and every font, image and script is served from brello.ai.
| Item | On brello.ai |
|---|---|
| Cookies | None. |
| Analytics, advertising, session recording | None. |
| Requests to other sites | None. Fonts, images and scripts come from this site, which you can confirm in your browser’s developer tools. |
| Server logs | The service that hosts the site receives the standard information your browser sends with each request, such as your IP address. Section 3 of the privacy policy explains how it is used. |
How Brello compares with cloud assistants
The main difference is where the model runs. A cloud assistant answers on its provider’s servers, so each question travels to them and is handled under that provider’s policies. Brello 1.0 answers on the phone.
We describe named assistants only on our comparison pages, where every statement about another product quotes that provider’s own published documentation, with the date we checked it. Table 13 gives Brello 1.0’s side of those comparisons. For a general guide, read How AI assistants handle your data.
| Question | Brello 1.0 |
|---|---|
| Where does the model run? | On the phone. |
| Is an account required? | No. |
| Does it work offline? | Yes, after the one-time model download. |
| When is the web used? | For a model download, and for web searches while web search is on. |
| Where are chats stored? | Only on the phone, excluded from cloud backup and device-to-device transfer. |
The privacy policy and how to contact us
This page explains how Brello works; the Brello privacy policy is the legal document. It says who we are, what personal data we receive and what rights you have.
| If you want | Go to |
|---|---|
| The legal terms | Brello privacy policy |
| To ask a privacy question | Email us with “Privacy question” in the subject |
| To report a request the app shouldn’t make, or another flaw | Security and disclosure |
Version history
- First published, for Brello 1.0, version 1.0.0.