Privacy Policy
How we collect, use, and protect your information
Version 3.0 · Last updated July 11, 2026
Overview
This Privacy Policy explains how Caire collects, uses, stores, and discloses personal information when you use our AI mental health services.
Caire is an AI system for mental health support. It is not a licensed therapist and does not diagnose or treat any condition. You are always told you are talking to an AI, and we design the service so this is never ambiguous.
This policy should be read together with our Terms of Service.
Information We Collect
- Account information (email, authentication identifiers, profile preferences)
- Conversation data (messages and optional voice interactions). This includes conversations held without an account: anonymous session content is stored on our servers in the same way as account conversations
- Health and biometric data (only if you explicitly connect a wearable or health source — see Health & Biometric Data below)
- Usage and diagnostics data (performance, reliability, abuse prevention, and security)
- Legal/compliance records (terms acceptance timestamps, consent records)
How We Use Data
- Provide, secure, and maintain the Services
- Detect abuse, fraud, and safety threats
- Comply with legal obligations
- Improve product quality and reliability
- Produce aggregated, anonymised service evaluation reports, including for academic publication or conference presentation
Training policy: By default, conversation content is not used to train foundation AI models. We only use conversation content for training/fine-tuning if you explicitly opt in.
Service evaluation & aggregated reporting: We may publish or present aggregated, fully anonymised summaries of service outcomes (for example, group-level changes in self-reported questionnaire scores such as PHQ-9, GAD-7, PSS, WHO-5, and Mini Z2, engagement patterns, and feature usage) for service evaluation, quality improvement, academic publication, or conference presentation. All such reports are group-level only; no individual user is identifiable, and free-text conversation content is never included in published outputs.
Health & Biometric Data
Health data is special-category data under UK GDPR (Article 9). We only read it with your explicit, separate consent — connecting a wearable or health source is always opt-in and never required to use Caire.
- What we read: activity and recovery summaries such as heart-rate variability, resting heart rate, sleep duration and quality, steps, and active energy — from sources you connect (for example Apple Health, Health Connect, or a wearable provider)
- How we use it: descriptively only. Caire may show you patterns between your self-reported mood and your health data. It never uses health data to diagnose, infer, or treat any condition
- Control: you can disconnect a source at any time, which erases the biometric data we hold from it. Withdrawing health data consent stops all reading immediately
- Retention: biometric data is kept for a maximum of 12 months from the last ingestion, then deleted automatically
Third-Party Processing
We use third-party service providers to process data on our behalf for core service delivery, security, authentication, infrastructure, analytics, and support operations. Our current sub-processors:
- Supabase — database and authentication
- Qdrant — vector search infrastructure
- Open Wearables — wearable and health data integration
- Cloudinary — profile image hosting
- PostHog (EU) — product analytics
- Resend — transactional email
These providers are contractually required to protect personal data and process it only for permitted purposes.
Data Residency & International Transfers
Customer data is primarily stored in the United Kingdom.
Some service providers may process data in the US, UK, or EU. Where transfers occur across borders, we use contractual and legal safeguards appropriate for those transfers.
Retention
- Active account data: retained while your account is active
- Deleted chat sessions: retained up to 30 days before permanent deletion
- Biometric data: maximum 12 months from last ingestion; erased immediately when you disconnect the source
- Account deletion requests: a 24-hour cooling-off period applies (you can cancel during it), then core account data is deleted within 30 days
- Backups and operational logs: removed on a rolling schedule after deletion workflows complete
Your Rights
Depending on your jurisdiction, you may have rights to access, correct, delete, or restrict processing of your personal data, and rights to object or request portability where applicable.
You can exercise the main rights yourself, in the app: Settings → Data Control lets you download a machine-readable export of your data and delete your account. Deletion has a 24-hour cooling-off period during which you can cancel.
For anything else, you can submit privacy requests by emailing [email protected].
Contact
Caire is a product of Lemniscate Labs, which is registered as a data controller with the UK Information Commissioner's Office (ICO), registration number ZC143406.
If you have questions about this Privacy Policy, contact [email protected].