Testing Context: Tested on desktop web from 17 July to 8 August 2026 across 61 logged research sessions, on both tiers, with a second free account used for the tier comparison. The verdict: Janitor AI has the most permissive free tier of the nine companion apps in this wave, attached to a $12.99 upgrade that measurably fails to deliver its headline promise.
Quick Reference Table
| Feature | Details |
|---|---|
| Pricing | Free base tier; $12.99/mo “janitor+” upgrade; pay-per-token Router |
| Memory | Siloed and manual. No automatic cross-chat continuity. |
| NSFW Status | Fully permissive. Unfiltered explicit text is allowed. |
| Media | None. Zero image, voice, or video generation. |
| Best For | Power users who want granular text controls for free. |
| Verdict | Use the free tier. Do not buy the upgrade. |
Verdict: Should You Even Try Janitor AI?
Depends, and the split is unusually clean: use the free tier, do not buy the upgrade.
Free Janitor AI is the real product. Its free tier ships unlimited explicit text against a community library of millions of cards, a full generation-control panel (temperature, max tokens, custom system prompt, prefill, forbidden words), and the ability to point the whole thing at a model you supply, all with no card and no cap. We have not found that combination free on any other app in this wave. You bring the patience, they give you the sandbox.
The janitor+ subscription is the part you should actively refuse. Its headline benefit, “5x more context, so bots remember more”, delivers meausurably 1x when measured on the wire. The paywall in front of the memory upgrade is selling a window that never widens. Paying does buy roughly 4x faster replies on desktop web, but the mobile app, where most users actually play, still stalls and cuts off mid-generation.
Score: 2.4 / 5.0 (Drop the media category and reweight the rest and it is 2.8, which is the number to use if you do not want a visual companion.)
Scoring the Companion Experience
| Axis | Weight | Score | The Call |
|---|---|---|---|
| Memory & Recall | High | 2.5/5 | In-window recall is strong, but the client truncates history at ~35,500 characters even if you pay. |
| Character & Personality | High | 3.5/5 | Genuinely steerable. Free custom prompts bind completely, overriding the default voice. |
| Chat Flow & Realism | Medium | 2.0/5 | Zero earned progression. The platform gives you everything at message zero with no gating. |
| Images/Voice | Medium | 0/5 | Completely absent. It offers zero generative media capabilities by design. |
| Safety & Trust | Medium | 2.0/5 | No data export, and the signup flow has no structural age check on the path we tested. |
Memory & Recall
Does Janitor AI Remember Past Conversations?
The memory architecture on Janitor AI is entirely manual, and the number that decides this review moved down during final scoring because of what we measured on the wire.
In-chat recall inside the active window is genuinely strong. Across our three fixed testing cards we saw 2 out of 2 immediate recall hits, and 4 out of 4 directed hits at the 40-hour mark. If the model can see a fact, it uses it. Outside that window the model is not forgetting. It was simply never told.
Does janitor+ Really Give You 5x More Context?
Janitor+ sells “5x more context, so bots remember more.” It delivers 1x. The client transmits only the last ~35,500 characters of any conversation, regardless of your tier, your provider, or how far back you scroll. We captured six request bodies across both tiers on the same character in one evening. The free account transmitted ~36,000 characters. The paid account transmitted ~35,500. Paying adds zero characters of conversation.
The product states its own numbers, and only to free users. The generation panel on a free account reads “context is 9001 tokens, janitor+ is 5x”. That line does not appear on a paid account’s panel at all. So the advertised paid window is roughly 45,005 tokens, and the paid account received about 8,937 tokens, 19.9 percent of what it was sold, which matches the free window to within one percent. The conversation we measured held 313,359 characters, enough to fill the advertised window nearly twice.
Three things rule out the obvious objections. Scrolling back to the first message and re-capturing produced the identical cutoff, so it is not a lazy-loading artefact. The vendor’s own per-generation billing log shows input tokens pinned between 9,974 and 10,144 across five generations while the conversation grew by ten messages, so the server is not quietly re-hydrating history after the request lands. And the cap is a size budget rather than a message count: the same ~35,500 characters carried 21 messages in one chat and 50 in another, depending on how long the messages were.
Can You Trust What Janitor AI Recalls?
When the model retrieves information, it also confabulates. A wrist sprain we seeded by hand returned as an injury “from bouldering”. A yellow car returned as a vehicle “that apparently scrapes the ground every time you try to load it.” It is a signature failure mode: a factual hit paired with invented specificity, on all three cards.
There is no automatic cross-chat memory of any kind, which is the axis we compare across the whole category in our AI companion memory breakdown. The three memory surfaces that exist (Persona, Chat Memory, Auto Summary) have different scopes with nothing in the interface explaining which is which. The platform’s lorebook and scripting system, the tool a power user would reach for to build real memory, only works inside the script editor’s test chat. In a live chat it injects nothing, while the server stamps every reply as script-applied anyway. The scripting system publishes its own ceiling too: a script can see at most ten recent messages.
Chat Flow & Realism
Does Janitor AI Gate Anything Behind Progression?
Janitor AI sits at the power-user pole of the market and actively declines to build earned progression. Nothing is ever earned. Across six tested cards the platform never once required rapport, time, or emotional progression before anything was available. Intimacy is on offer at message zero.
Will Janitor AI Push Back, or Just Agree With You?
Despite the lack of structural gating, the models do have a spine. The AI is not a sycophantic yes-machine. Our fixed pineapple-on-pizza probe drew genuine pushback on all three cards, including a mock-courtroom verdict of “Guilty. Of having terrible taste” followed by a negotiated compromise, and a flat refusal delivered in a finance-executive register on another.
Adversarial cold openers on three fresh cards produced 3 out of 3 distinct, approach-appropriate responses. A hostile “you’re pathetic and boring, entertain me anyway” on a servitude-premise card was absorbed as the card designs it, but the engine added resistance the card did not require. A crude opener on an emotionally fragile card produced in-fiction panic and zero compliance. The dialogue engine is capable. The platform around it asks nothing of you.
There is also no proactive channel at all, and this is structural rather than a matter of taste. The notification settings enumerate every social event the platform has, from comment replies to scheduled release countdowns, and there is no category anywhere for a character messaging you. It is not disabled or buried. It is absent from the product’s own schema.
UI & The Mobile Experience
Is the Janitor AI Mobile Experience Any Good?
Janitor AI is a tale of two surfaces. On desktop web the chat page is clean and functional: no horizontal overflow, nothing under 11px, and a composer taking 373 of 390 pixels. The browse page is the worst mobile surface we have measured in this entire testing program.
Measured on an emulated 390x844 viewport, the same instrument we use on every app so the numbers compare, the browse page carries an 8px minimum font and puts roughly nine in ten tap targets below the standard 44x44 accessibility floor. We measured it twice on different accounts and got 296 of 334 and 290 of 325, with 43 and 41 text elements under 11px. The exact counts move with whatever the feed is showing; the 8px floor and the nine-in-ten proportion reproduce. The most glaring hazard is a 32x32 pixel Delete control sitting immediately adjacent to a 32x32 pixel Edit control on a touch viewport.
Why Is Janitor AI Slow, and Does Paying Fix It?
Two honest caveats. That is a responsive-layout measurement, not a handset, so treat it as a read of the mobile web build. And the native app that shipped in February 2026 was walked by our reviewer but never instrumented: what we can report from that walk is that replies stall and stop mid-generation far more often than on the web client, and that the paid tier did not fix it. Do not buy the $12.99/mo upgrade expecting it to fix mobile latency. Our speed measurements were taken on desktop web on both sides, and they say nothing about the app.
Media (Images & Voice)
Can Janitor AI Generate Images or Voice?
The product generates no images, no voice, no video, and no media of any kind, on any tier. The entire visual surface of the platform is one creator-uploaded avatar per card.
We scored this 0/5 against our instrument’s anchor of “absent, or present and broken”. It is worth stating fairly, and worth being precise about the arithmetic. Scoring the category 0 rather than crediting it a neutral 2.5 costs the product 0.375 of its headline, for a capability it never claims and never charges for. If you simply do not want visual generation, the cleaner read is to drop the category and reweight the other six, which gives 2.76, published as 2.8.
Safety, Trust & The Engagement Economy
Is Janitor AI Safe, and Does It Verify Your Age?
The platform’s approach to safety is largely an illusion of structure. On the United States path we tested, signup is a self-attested 18-plus checkbox bundled with the terms consent, and the character creation form carries no age field of any kind, so the over-18 rule is policy and moderation rather than structure. Real identity-based verification does exist, but geographically: the operator’s own documentation puts it in place for visitors in Brazil and Australia from 30 March 2026 and the United Kingdom from 15 June 2026. A reader in one of those countries meets a different product at the door.
Do the Content Filters Actually Filter Anything?
The onboarding content filter is equally performative. It uses OR logic and excludes nothing. A deliberately neutral pick of Female, AnyPOV and Fluff returned a Smut-tagged card at rank 1 and a “Free Use World RPG” card at rank 5. The platform offers “Smut” and “Dead Dove” as feed tags to a brand-new account at minute one, and its incest ban carries an explicit carve-out: “Step-sibling or adoptive relationships are not covered by this policy.” A step-sibling card sat at rank 3 in the general popular feed during testing.
Can You Export Your Janitor AI Chats?
On data portability, Janitor AI traps your text. No data export exists anywhere across ten settings sections. Deletion does exist and is plainly worded. You can destroy everything or take nothing. Secondary sources note a third-party browser extension that exports whole conversations, which is worth knowing precisely because the product itself offers none.
The engagement economy is otherwise clean, and the review should say so. The cancel flow has zero retention dark patterns: two clicks, an optional reason dropdown, and a confirmation that tells you exactly when access ends. Against that sits a display-honesty problem. The paid tier sells “Monthly enhanced swipes” while the meter four lines below it in the same panel resets weekly. That bullet was rewritten site-wide during our testing window, and the wrong cadence word survived the rewrite.
One more surface deserves a mention: users publish entire roleplays to a public directory that anyone can read, sorted by top and new, with message and view counts attached. One third-party card carried twelve published conversations, the most-read at 43 messages and 5.4k views. Your own chats are private by default and publishing is opt-in, but the layer exists and it is worth knowing before you assume nothing you type is public.
The Power-User Escape Hatch: Bring Your Own Model
Which Model Is Actually Answering You?
Janitor never tells you. On its own path the product names the provider in the chat header, not the model, and no model name appears in the interface, the pricing page or the help centre. The in-house engine is known to its community as JLLM; what it actually is underneath is not published anywhere.
That matters more than it sounds, because the version is not fixed either. Across our testing we saw the platform serving at least two different builds of its own model, one of which it labels only “unreleased”. You are not told which one wrote any given reply, and you cannot choose. The Router is the opposite and deserves credit for it: pick a model there and you get the name, the context size and the price per token up front.
Can You Use Your Own AI Model with Janitor AI?
Community consensus, corroborated across secondary sources rather than measured by us, holds that the default in-house model is noticeably weaker than its competitors and prone to drifting during long sessions. The standard community advice is to stop using it.
Janitor AI’s real value proposition is that it does not force you to. The Provider control offers five paths: the in-house model, the paid janitor+ Router, Proxy, OpenAI and Claude. The last three are bring-your-own key or endpoint, they are free to use, and this is where the product genuinely shines. Janitor becomes a highly customisable front end, and you supply the brain.
Which Provider Paths Let You Control Context?
There is a detail here that nobody advertises and that we only found by enumerating the panel on each path. A Context size control exists on the Proxy path and on no path Janitor itself serves. Not on free, not on paid, and not on the per-token Router, even when the Router is pointed at a model the product’s own catalogue labels “500k context”. So the only way to control how much of your conversation reaches the model is to stop using Janitor’s models entirely.
Two warnings before you go down this road, and the first is the platform’s own, verbatim:
“Janitor has no affiliation with any proxies. Your IP and chat log might be logged. Please ensure you trust the proxy.”
That is a fair and plainly worded warning, and it deserves credit for existing. The second is ours: the bring-your-own paths were documented but not exercised in this review, so every quality finding above describes the in-house model only.
What the Community Reports: Reddit, Dcard, PTT, 2ch & Global Feedback
What Reddit Users Say About Janitor AI (r/JanitorAI_Official)
On Reddit (primarily r/JanitorAI_Official and r/JanitorAI), discussions following the June 2026 launch of janitor+ and the March 2026 Public Chats update split sharply between praise for the unfiltered sandbox and frustration with context limits.
- The 5x Context & Memory Confusion: Multiple Reddit threads report that janitor+ does not feel like it remembers 5x more conversation than the free tier. Users actively debate the “Overflow” effect where older messages get pushed out, and recommend manually pinning facts in Chat Memory rather than relying on the model context window.
- Server Outages & Cloudflare Screens: Uptime complaints are a staple on Reddit. When server load spikes, response times balloon over 90 seconds or fail with Cloudflare verification popups, which users note is a server load issue rather than regional blocking.
- The “BYOK” (Bring Your Own Key) Consensus: The dominant advice across Reddit is to use external API keys via Proxy or Claude. Users share tier lists and proxy setups comparing DeepSeek and GLM backends for better long-term memory coherence.
What Asian & Global Online Communities Say (PTT, Dcard, 5ch/2ch, DC Inside)
Cross-platform feedback from regional forums reflects similar patterns tailored to local UI expectations:
- Taiwan (PTT & Dcard): On PTT (C_Chat and Sex boards) and Dcard (AI and ACG boards), Taiwanese users highlight Janitor AI as the top free alternative to Character.AI due to zero NSFW censorship (“開車”). Discussions emphasize connecting external APIs (like DeepSeek or GLM) via SillyTavern or Proxy, while noting that English prompts yield more natural roleplay than machine-translated Chinese.
- Japan (5ch / 旧2ちゃんねる & X): Japanese users on 5ch (AI character threads) and X note that while Janitor AI accepts Japanese prompts, response speed is sluggish without a custom proxy, and memory decay happens rapidly in long Japanese dialogues.
- South Korea (DC Inside & ArcaLive): Korean users in the DC Inside AI Companion Gallery and ArcaLive AI Channel discuss the Feb 2026 mobile app beta and June 2026 age verification rollouts (in UK, Brazil, Australia). They praise the deep custom system prompt controls, but warn about token cut-offs on mobile browsers.
- Legal & Regulatory Checks: No lawsuits, attorney-general actions, FTC matters or overseas regulator actions were found as of 7 August 2026.
How Does Janitor AI Compare?
| Platform | Earned Progression | Explicit Content | Memory Architecture |
|---|---|---|---|
| Janitor AI | None | Yes (Unfiltered) | Manual / Siloed |
| Eudaio | High | Conditional | Automatic |
| Kindroid | Low | Yes (Unfiltered) | Automatic |
| Replika | Medium | Paywalled | Automatic |
| Character.AI | Low | Strictly Filtered | Siloed |
Pricing: How Much Does it Cost?
What Does Each Tier Actually Unlock?
Janitor AI’s pricing splits into a genuinely unlimited free tier, a flawed flat-rate subscription, and a pay-per-token marketplace. For how that sits against the rest of the category, see our AI companion subscription cost comparison.
- Free Tier ($0): Unlimited chats, a stated ~9,001 token context window, and full access to the standard models. We hit no message cap anywhere across three weeks.
- janitor+ ($12.99/mo): Promises “5x more context”, priority routing, and enhanced swipes. The context claim does not survive measurement. It does deliver faster replies on desktop web (13 to 22 seconds against free’s 82 to 104), though our reviewer reports the mobile app stays slow.
- JanitorRouter (metered): The subscription includes a $5 credit for a pay-per-token marketplace of 60-plus third-party models. A frontier model costs roughly 2 cents a reply, stacked on top of your subscription. Note that model selection is account-global rather than per chat, so one experiment puts every conversation on the meter.
The Bottom Line
Pros:
- A free tier that combines unlimited explicit text, generation controls and bring-your-own-model support, which we have not found free elsewhere in this wave.
- Granular text controls that competitors paywall: temperature, custom system prompts, prefill, forbidden words.
- Character voices are distinct and genuinely steerable. A custom prompt binds completely.
- You can plug in your own API key or endpoint and use Janitor purely as a front end.
- The cleanest cancel flow we have tested, with zero retention dark patterns.
Cons:
- The $12.99/mo context upgrade does not deliver. History truncates at ~35,500 characters on both tiers.
- Zero automatic cross-chat memory continuity.
- The mobile web browse page is hostile, with 8px fonts and roughly nine in ten tap targets below the accessibility floor.
- No data export anywhere, in a product built on text you generate.
- Retrieval attaches invented detail to facts it recalls correctly.
Try it if: You want absolute control over a text-based AI companion, you are happy to manage the memory boxes by hand, and you intend to pay nothing.
Skip if: You want a visual companion, you want an AI that remembers you automatically across chats, or you play mostly on your phone.
Frequently Asked Questions
Is Janitor AI completely free?
Yes. The base platform offers genuinely unlimited chats and full access to the standard models without asking for a credit card. We encountered no message cap across three weeks of testing.
Is janitor+ worth it?
Not for the reason it is sold. Its headline benefit is “5x more context”, and we measured the paid client transmitting the same ~35,500 characters as the free one. What it does buy is roughly 4x faster replies on desktop web, plus Router access and enhanced swipes.
Can I use Janitor AI on my phone?
Yes, but it is the weakest way to use it. The mobile web browse page puts roughly nine in ten tap targets below the accessibility floor, and the native app stalls and cuts off replies more often than the web client. Paying does not fix it.
Is Janitor AI safe for work?
No. The platform is permissive by design. Unfiltered explicit text is allowed, and the onboarding content filter uses OR logic that will not stop adult-themed cards appearing on your front page.
Does Janitor AI remember past conversations?
Only what you type into the account-wide Persona box or the per-chat Memory box. There is no automatic cross-chat continuity, and within a single chat only the last ~35,500 characters are sent to the model.
Which AI model does Janitor AI use?
Its own in-house model, known to the community as JLLM, and the product never names it in the interface, the pricing page or the help centre. We saw at least two different builds of it in use during testing, one labelled only “unreleased”. If you want to know exactly which model is answering, use the Router or bring your own key, where the model is named.
Can I use my own AI model with Janitor AI?
Yes, and it is free. The Provider control accepts your own OpenAI or Claude API key, or an arbitrary endpoint through its Proxy path. The platform warns that it has no affiliation with any proxy and that your IP and chat logs might be logged, so choose carefully.
What do Reddit, Dcard, and 5ch users say about Janitor AI?
Across Reddit, Dcard, PTT, and 5ch, community consensus matches our lab findings. Users praise Janitor AI for offering unlimited, unfiltered text roleplay with full generation controls for free. The main complaints center on server slowness, lack of memory expansion on janitor+, and model drift during long conversations.