Privacy Policy
Last updated: April 15, 2026Your privacy matters to us. This page explains in plain language what data LokiMoki handles when you use our service, and how we keep it safe.
We never record or inspect your audio and video.
Chat & session data vanish when the room ends.
SRTP & DTLS protect your media end-to-hop.
1 How it works under the hood
LokiMoki is built on mediasoup, a Selective Forwarding Unit. In simple terms, the server acts as a smart relay: it receives your audio and video and forwards it to the other people in the room. It does not record, inspect, or process the content of your calls. Everything is encrypted end-to-hop with SRTP and DTLS, so your media stays private in transit.
2 What we don't collect
Everything is ephemeral. Display names, chat messages, and session data only exist while the room is active — once it ends, they're gone. Nothing is stored on our servers afterward.
Anonymized stats only: We pick up anonymized usage statistics (page views, browser type, OS) through privacy-friendly analytics. No personally identifiable information is collected.
Things we never touch: We don't record your calls, we don't ask for payment info or government IDs, and we don't collect sensitive personal data. Your conversations are yours.
3 Recordings stay on your device
When you hit "Record", the file is created right inside your browser (as a Blob) and downloaded straight to your device. It is never uploaded to our servers.
Server-side recording is disabled by default. If a host enables it, recordings are stored on the server or cloud storage they configured — it's the host's responsibility to manage and secure them. If you record other people, make sure you have their consent.
4 Cookies & analytics
We use privacy-friendly analytics that don't use cookies and don't collect personally identifiable information — fully compliant with GDPR, CCPA and PECR.
The app may store small bits of data in your browser (like your display name or room preferences) to make things easier for you. This is purely functional — no tracking involved.
5 How long we keep data
Server logs are displayed in real-time on the console and are not stored on disk. By default, only error-level logs are enabled. Chat messages and session data disappear when the room ends — we don't hold onto them unless the host has explicitly set up persistence.
6 How we protect your data
We take security seriously: SRTP/DTLS encryption for all media, TLS/HTTPS for web traffic, and hardened server infrastructure. That said, no system is bulletproof — if you ever spot a vulnerability, email contact@lokimoki.com so we can fix it fast.
7 Third-party services
LokiMoki may connect to external services like RTMP streaming endpoints, CDNs, or other APIs. Each of those has its own privacy policy, and we encourage you to check them out. We can't take responsibility for how third parties handle data on their end.
8 Self-hosted instances
LokiMoki is open-source — anyone can host their own instance. If you're using someone else's self-hosted version, they are responsible for privacy, not us. This policy only covers instances we operate directly.
9 Policy updates
We may tweak this policy from time to time. When we do, we'll update the "Last updated" date at the top. If you keep using the service after a change, that counts as acceptance. We recommend checking back occasionally.