Privacy policy
This policy explains what Lighthouse collects, why, who helps us run it, and the choices you have. Lighthouse is run by Eduardo Bilbao. Questions: support@yourlighthouse.app.
The short version: your information is used to run the app for you. We don’t sell it, we don’t show ads, and we don’t use tracking or analytics tools.
What we collect
- Your account: your email address. If you sign in with Google, Google also shares your name and profile picture, which our sign-in provider keeps with your account.
- What you put in the app: tasks, projects, notes and journal entries, routines, goals and vision-board pictures, the people and companies you add (with any contact details, notes and photos you enter), properties, loans and documents, inventory items, and anything you forward to your personal capture email address.
- Photos you attach: if a photo contains the place it was taken, we keep that location and look up the street and town so the note can show it.
- Voice: when you speak to the app, the recording is sent to be turned into text and is not kept. We keep what it created (for example the task or note) and, for journal entries, the written text. If you use the Siri shortcut, Apple turns your words into text on your device or Apple’s servers (under Apple’s privacy policy) and Lighthouse receives only that text.
- Assistant conversations: your messages with the AI assistant, kept so you can continue a conversation. They are deleted automatically 30 days after the last message, and you can delete one sooner.
- Your Google Calendar, only if you connect it (see the next section).
- Notifications: the messages the app sends you, and the details your device needs to receive them.
- Settings: your time zone, notification times and display choices.
- AI usage: how much of your AI allowance you have used (amounts only).
- Technical records: our servers record requests (including your IP address and the time) to keep the service running and secure.
We don’t collect advertising identifiers, we don’t track your location, and we don’t use cookies for anything except keeping you signed in and remembering your display choices.
Google Calendar and Google sign-in
Signing in with Google only shares your basic profile (email, name, picture). Connecting your Google Calendar is a separate, optional step. When you connect it, you allow Lighthouse to:
- See and manage events on your calendars (Google calls this “calendar.events”), and
- see the list of your calendars (“calendarlist.readonly”), so you can choose which ones to show.
What we read. From your main calendar and any other calendars you choose: each event’s title, description, start and end time, whether it is all-day, location, the guests’ email addresses and replies, and the event type, from 30 days ago to one year ahead, refreshed about every 15 minutes. From your list of calendars: each calendar’s name, colour and which one is your main calendar.
What we change. Only events on your main calendar, and only when you add, edit or delete an event in Lighthouse (by hand, by voice or by asking the assistant). Other calendars you choose are read only.
How we use it. Only to show and manage your own events in the app, remind you about them and include them in your daily summary. When you ask the assistant about your schedule, the events it needs (title, time and location) are sent to our AI provider to answer you. Google data is never used for advertising, never sold, never used to train AI models, and never read by a person unless you ask us to for support, it is needed for security, or the law requires it.
Lighthouse’s use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
How it is stored. We keep a copy of your events in our database so the app can show them. The keys Google gives us to reach your calendar are stored encrypted.
Disconnecting. In Settings → Google Calendar → Disconnect, we cancel our access at Google and delete those keys, and syncing stops. Events already copied stay in the app until you delete them or your account; email us and we will delete them for you. You can also remove access at any time from your Google Account’s permissions page.
How we use your information
- To run the app’s features for you and show your information back to you.
- To send the reminders, summaries and reports you turn on.
- To run the AI features when you use them: understanding what you type or say, the assistant, and summaries of emails you forward.
- To keep the service working and secure, and to fix problems.
- To reply when you contact us.
We don’t sell your information, share it for advertising, or use it to build profiles for anyone else.
Services that help us run Lighthouse
These companies handle data for us, only to provide their part of the service:
- Railway runs the app’s servers.
- Supabase stores the database, sign-in and uploaded files.
- Anthropic (Claude) powers the assistant, understanding what you type or say, and email summaries. It receives the text needed for each request and the details the assistant looks up for you.
- OpenAI turns voice recordings into text.
- Twilio SendGrid receives the emails you forward to the app and sends the emails you choose to get.
- Apple, Google, Mozilla and Microsoft deliver phone and browser notifications (the notification’s title and short text). If you use Siri, Apple also turns your spoken words into text.
- Google provides sign-in, Google Calendar and the app’s fonts.
- OpenStreetMap turns a photo’s location into a street and town name.
Under their business terms, Anthropic and OpenAI do not use the data we send them to train their models. We may also share information if the law requires it, or to protect the safety of people or the service.
Security
Everything travels over encrypted connections. Each account can only reach its own information, our providers encrypt stored data, and your Google keys are encrypted separately. No service can promise perfect security, but we work to protect your information and will tell you if a problem affects it.
How long we keep it
We keep your information while you have an account. When you delete something in the app, it is removed; some uploaded files can stay in storage until your account is deleted. Assistant conversations are deleted 30 days after their last message. To delete your account, email support@yourlighthouse.app from the email address you sign in with. We will delete your account, everything in it and your uploaded files within 30 days, and cancel our access to your Google Calendar.
Your choices and rights
- Ask for a copy of your information, or ask us to correct or delete it.
- Disconnect Google Calendar at any time.
- Turn notifications and email copies on or off in Settings.
- The AI features only run when you use them.
Email support@yourlighthouse.app and we will answer within 30 days. Depending on where you live (for example California or the European Union), you may have more rights; we honour those requests too.
Children
Lighthouse is not meant for children under 13, and we don’t knowingly collect their information. If you think a child has given us information, email us and we will delete it.
Changes to this policy
When this policy changes, we update the date at the top. If a change is important, we will tell you in the app before it takes effect.
Contact
Eduardo Bilbao, Lighthouse · support@yourlighthouse.app · Support