Legal

Privacy Policy

Last updated: December 2, 2025

The Short Version

  • We never sell your data. Period. Not to advertisers, data brokers, or anyone else.
  • We can't read your data. Your household information is end-to-end encrypted with keys only you control.
  • Minimal analytics. We collect basic usage metrics to improve the product, not to profile you.
  • You own your data. Export or delete it anytime.

1. Information We Collect

1.1 Account Information

When you create an account, we collect your email address for authentication purposes. Authentication is handled securely on our own infrastructure—your credentials never leave our systems.

1.2 Encrypted Household Data

The core of EstateHelm is your household data: properties, contacts, pets, vehicles, maintenance schedules, and other information you choose to store. This data is end-to-end encrypted using AES-256-GCM before it ever leaves your device. We store only the encrypted ciphertext—we cannot decrypt or read this information.

Your encryption keys are derived from biometric authentication (Face ID, Touch ID, Windows Hello) or a recovery key that only you possess. We never have access to these keys.

1.3 Usage Analytics

We collect anonymized, aggregated usage data to understand how the product is used and improve it. This includes:

  • Feature usage (which screens are visited, not the content)
  • Error reports and crash logs
  • Performance metrics
  • Device type and operating system

We do not collect or analyze the content of your encrypted data. We cannot—it's encrypted with keys we don't have.

2. How We Use Your Information

  • To provide the service: Store your encrypted data, authenticate your account, sync across devices.
  • To improve the product: Analyze usage patterns (not content) to make EstateHelm better.
  • To communicate with you: Send important account notifications, security alerts, and (with your consent) product updates.
  • To provide support: Respond to your questions and help resolve issues.

3. Information Sharing

We Never Sell Your Data

We do not sell, rent, or trade your personal information or encrypted data to third parties. This is a core principle, not a marketing claim.

Third-Party Service Providers

We use minimal third-party services to operate EstateHelm. Currently, this includes an email provider for transactional emails (account verification, password resets).

Your encrypted household data and authentication credentials are stored on infrastructure we control. Any service providers we use are bound by confidentiality obligations and, importantly, because your household data is encrypted before storage, they would only ever see encrypted ciphertext that they cannot decrypt.

Legal Requirements

We may disclose information if required by law, court order, or government request. However, because your household data is end-to-end encrypted with keys we don't possess, we can only provide encrypted data that we cannot decrypt.

4. Data Security

Security is foundational to EstateHelm, not an afterthought:

  • End-to-End Encryption: All household data is encrypted with AES-256-GCM using keys derived from your biometric authentication or recovery key.
  • Zero-Knowledge Architecture: We cannot access your encryption keys or decrypt your data.
  • Device-Bound Keys: Encryption keys are tied to your authenticated devices.
  • Transport Security: All data in transit is protected with TLS.

For a detailed explanation of our encryption architecture, see our Security Guide.

5. Data Retention & Deletion

Your Data, Your Control

We retain your encrypted data for as long as you maintain an active account. You can:

  • Export your data at any time in a standard format.
  • Delete individual items through the app.
  • Delete your entire account and all associated data.

When you delete data or your account, we remove it from our active systems. Some encrypted data may persist in backups for up to 30 days before being permanently deleted.

Cancelled Subscriptions

If you cancel your subscription, your account will remain accessible in read-only mode for at least 1 year, allowing you to view and export your data. After this retention period, we may send a reminder email before deleting the account. We'll always give you notice and the opportunity to resubscribe.

6. Your Rights

You have full control over your data:

  • Access & Export: Download all your data anytime through the app.
  • Correction: Edit your information directly in the app.
  • Deletion: Delete individual items or your entire account through the app.

Since your data is end-to-end encrypted, you manage it directly—no need to contact us. For account-related questions, reach us at [email protected].

7. Contact Us

If you have questions about this privacy policy or our data practices, please contact us:

8. Changes to This Policy

We may update this privacy policy from time to time. We'll notify you of significant changes by email or through the app. Your continued use of EstateHelm after changes take effect constitutes acceptance of the updated policy.

A Note on Transparency

EstateHelm is a young product built by a small team. We don't yet have security certifications or third-party security audits—those are on our roadmap as we grow. What we do have is a genuine commitment to privacy-first architecture: end-to-end encryption that means we can't read your data, not just a promise that we won't. If you have questions or want to discuss our security practices in detail, we're happy to talk—just email us.