Privacy Policy
Last updated: June 2026Data We Collect
CareLens collects the minimum data required to provide activity-awareness summaries to family caregivers. We collect:
- Ring account email address (used solely for authentication and transactional notifications)
- Ring device identifiers for cameras you pair to CareLens
- Motion event metadata: timestamps, device ID labels, and motion sub-type (human/animal/vehicle)
- Doorbell button-press metadata
- Per-event snapshots (JPEG images) displayed only to authorized family members
- Family member email addresses for invitation and authentication
- Billing identifiers (Stripe customer and subscription IDs)
We do not collect: precise geolocation, audio recordings, biometric data, health indicators, video clips, or behavioral profiles beyond aggregated event counts.
How We Use Your Data
We use your data exclusively to:
- Authenticate you and authorized family members via magic-link email
- Display your activity timeline and snapshots in the CareLens dashboard
- Generate daily activity summaries using AI (see AI and LLM Use below)
- Send transactional emails (sign-in links, daily digests, account notifications)
- Manage your subscription through Stripe
We do not sell, rent, or share your data with third parties for advertising or marketing purposes.
AI and LLM Use
CareLens uses Anthropic's Claude Haiku 4.5 (claude-haiku-4-5-20251001) to generate daily activity summaries. Activity summaries are derived exclusively from event metadata (timestamps, device labels, event types). We never send Ring snapshot images or video to any AI or machine-learning service.
Specifically:
- What we send to Anthropic: structured event metadata (timestamp, device label, motion type) for the prior 24 hours
- What we never send: snapshot images, user email addresses, family member names, Ring user IDs, or any personally identifiable information
- Anthropic does not train on data submitted to their API under our agreement (see Anthropic's DPA for details)
CareLens does not perform pixel-level analysis on Ring image data. User-configured privacy zones are inherently preserved because no inference is performed on image contents.
Data Retention
We retain data only as long as needed:
- Motion event metadata: 90 days, rolling
- Snapshots: 7 days (Free) / 30 days (Care) / 90 days (Premium), rolling
- Daily AI summaries: 90 days, rolling
- Audit log entries: 1 year, rolling
- Account data (OAuth tokens, email, device pairings): until account deletion
We run automated daily retention sweeps to enforce these limits. Inactive accounts (no login or billing activity for 12 months) receive a warning email followed by a 30-day grace period before deletion.
Your Rights
You may at any time:
- Export your data — download a JSON export of all data CareLens holds about you from Account Settings
- Delete your account — one-click deletion from Account Settings removes all data across all systems within 30 days
- Correct your data — contact us at dev@onishistudios.com
To submit a Data Subject Access Request (DSAR), use the self-service export in Account Settings or email dev@onishistudios.com. We respond within 30 days.
Medical Disclaimer
CareLens is not a medical device. CareLens does not detect medical events (including falls), does not replace professional caregiving services, does not provide health advice or medical monitoring, and is not intended for use in medical emergencies. If you or someone in your care is experiencing a medical emergency, call 911 or your local emergency number.
Third-Party Sub-Processors
We share data with the following vendors solely to provide CareLens services:
| Vendor | Role | Data Shared |
|---|---|---|
| Railway | Cloud hosting (US) | All non-image data |
| Cloudflare R2 | Snapshot storage (US) | Snapshot images only |
| Stripe | Payment processing | Billing identifiers, payment data |
| Resend | Transactional email | Email addresses, summary text |
| Anthropic | AI activity summarization | Event metadata (no images, no PII) |
Each sub-processor is bound by a Data Processing Agreement (DPA). We will update this list if our sub-processors change.
Family Member Access Model
CareLens allows the account owner to invite family members. Invited family members can view the activity timeline, daily summaries, and snapshots for cameras the owner has paired. The account owner can view an audit log of all access events in Account Settings. Each family member can view their own access history. Family members do not have access to billing, account settings, or other family members' access logs.
Law Enforcement Requests
We will only disclose user data to law enforcement when required by a valid, legally enforceable court order, subpoena, or search warrant issued under applicable United States law. We do not voluntarily share user data with government agencies. When permitted by law, we will notify affected users before complying with a request. We will not comply with requests that we believe are legally insufficient or overbroad, and we will challenge such requests to the extent permitted by law.
Law enforcement requests should be directed to: dev@onishistudios.com
Contact
Questions about this Privacy Policy or data practices: dev@onishistudios.com
Onishi Studios — CareLens
United States