Kynlo

KYNLO PRIVACY POLICY

Effective August 17, 2026 (supersedes the edition effective July 10, 2026)

1. Overview

Kynlo is your household’s concierge. Everything it knows, it knows so it can carry your family’s week — and for no other reason. This page says what we hold, where it lives, what we will never do with it, and how we protect it.

2. Information We Collect

Account Information

Your name and email address, your authentication method, and your settings.

Family and App Content

Family member names and rough ages, schedules, tasks, checklist items, events, routines, meals, shopping lists, decisions, and notes — and anything you write or say to the concierge, including messages you dictate or text to it.

Calendar Integrations

Calendar events from calendars you choose to link (Google, Apple, or a subscription link). Read-only — we never write to or share your external calendars. Inside your family, a connection you mark “busy only” shows other members that the time is taken without showing them what the event is.

Photos You Send

Photos you capture or text to Kynlo (a flyer, a form) are read once to extract dates and fees, then discarded — the photo itself is never stored.

Phone Numbers

Your phone number, if you enable text messages, so the letter and the concierge can reach you by SMS.

Usage Information

Basic usage and device information, used to keep Kynlo reliable. We run no third-party analytics and no advertising trackers — see section 15.

Kynlo Local Profile

If you post to Kynlo Local, we hold the display name, profile photo, short bio, and general location you choose for your Village profile. This profile is public — see section 7.

Your Own OpenAI Key, If You Give Us One

Nothing asks you for one, but a family may choose to run its inquiries on its own OpenAI account. If you do, we hold the API key you enter: checked once with OpenAI to confirm it works, stored encrypted (AES-256-GCM), never written to our logs, shown back to you only as its last four characters, and used only for that family’s own inquiry runs. Delete it in Settings and it is gone from our database; without one, inquiries simply run on our account instead.

3. How We Use Information

To provide features, sync calendars, support family sharing, maintain security, and keep Kynlo working — and for no other reason. We do not use your family’s information to advertise to you or to build a profile of you.

4. AI Processing

We use artificial intelligence to provide features like daily suggestions, weekly summaries, and helpful insights. To do this, AI processes your family's tasks, routines, schedules, and decisions. The concierge’s judgment runs on OpenAI’s API — the content needed to write your letter or sort your week is processed there, and under our agreement with OpenAI it is not used to train their models. If your family has given us its own OpenAI key (section 2), the inquiries you run on it go to OpenAI through your account rather than ours, so it is the terms of your own OpenAI account that govern those runs, not our agreement. Everything else — your letter, the daily concierge — always runs on ours.

  • No Model Training: We never use your family’s data to train AI models, and our agreement with OpenAI keeps what we send from training theirs. Inquiries run on a family’s own OpenAI key are the one case we cannot promise for: those are covered by that account’s own terms with OpenAI.
  • Strictly Scoped: AI context is restricted entirely to your family. There is no cross-family data access.
  • Private Storage: All AI-generated content (such as summaries and suggestions) is stored securely within your family's private space.
  • Consistent Protection: If we change AI service providers in the future, these same strict privacy protections will continue to apply.

5. How Kynlo Uses Google User Data

If you sign in with Google or connect a Google Calendar, here is exactly what we access and why:

  • Your basic Google profile (name, email address, profile picture) — used only to create and sign you into your Kynlo account.
  • Your Google Calendar events, read-only — used only to show your schedule inside Kynlo, spot conflicts, send you reminders about your own events, and write your family’s daily letter. We keep a synced copy of your events in our database so your dashboard loads instantly; it is refreshed from Google and deleted when you disconnect the calendar or delete your account. We never write to, edit, or share your Google Calendar.

We do not sell Google user data, use it for advertising, or transfer it to third parties except the service providers named on this page acting on our instructions. No human at Kynlo reads your Google data except with your explicit permission (for example, if you ask for support), where necessary for security or to comply with law. We do not use Google user data to develop, improve, or train generalized artificial-intelligence or machine-learning models; event details are processed by OpenAI’s API solely to produce your own family’s brief, and under our agreement that content is not used to train their models.

Kynlo’s use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

You can withdraw Kynlo’s access to your Google data at any time — disconnect the calendar in Kynlo’s settings, or revoke access at myaccount.google.com/permissions.

6. Sharing Information

We share data within your family group, with the service providers named in section 12 under confidentiality, or when required by law. One part of Kynlo is public by design — Kynlo Local, described next.

  • We never sell your data, to anyone, for anything.
  • We show no ads and share nothing with advertisers.
  • We never hold your passwords for other services, and we never touch your payment credentials at any store. The one exception is a credential you create for us yourself: the OpenAI API key described in section 2, if you choose to run inquiries on your family’s own account. A key like that is not a password — you mint it yourself, it signs you in nowhere, it reaches nothing but the OpenAI account you made it for, and you can revoke it at OpenAI or delete it here at any moment.
  • The concierge acts only on your word — every act it takes on your behalf is recorded in your Household Book, where you can see it and stop it.

7. Kynlo Local Is Public

Kynlo Local — the Village Post — is a public part of Kynlo. What you post there is not private to your family and not limited to signed-in members.

Anything you publish to Local — notes, questions, answers, lists and collections, place reviews and claims, and guides — is visible to anyone on the internet. That includes people who are logged out and have no Kynlo account, and search engines and other crawlers, which may index and cache it. These pages are served as ordinary web pages at kynlo.life/local/…, so they can appear in search results and be linked or shared by anyone.

Your Village profile is published alongside your posts: the display name you chose, your profile photo if you added one, and the short bio and general location on your profile. Your email address, your phone number, your family's calendar, tasks, lists, meals, and everything else inside the app are never published to Local.

Please treat every Local post as a public statement. Do not include your home address, a child's full name, school, schedule, or photograph, or anything else you would not put on a public noticeboard.

You can edit or delete your own Local posts at any time. Deleting a post removes it from the Village; copies already cached or indexed by third parties such as search engines are outside our control, though we will ask the major engines to drop a removed page on request.

If you delete your Kynlo account, we anonymize your public Village profile: the display name becomes “Former member,” and your photo, bio, and location are erased from the pages that show them. Posts you contributed may remain in the Village, but they are no longer attributed to you by name or picture. To have specific Local content removed as well, write hello@kynlo.life before or after you delete the account.

8. Children's Privacy

Kynlo is built for parents, and account holders must be adults (18 or older) — see Terms section 3. Information about children (names, ages, activities) is entered and controlled entirely by their parents or guardians; children do not create accounts of their own without a parent adding them, and we collect nothing from children directly. Parents control permissions. Family members added as children or caretakers cannot participate in Kynlo Local at all: they cannot post publicly, and no public Village profile is created for them.

9. Data Retention

We retain data while accounts are active or as needed to provide the Service. Disconnecting a calendar removes its synced events. Deleting your account removes your personal information — name, email, sign-in methods and phone numbers — and anonymizes your public Village profile; your family’s shared history stays for the members who remain, and what you published to Kynlo Local stays in the Village with your name and photo taken off it, as described in section 7. Deleting the whole family, from Settings, erases everything the family holds.

10. Your Rights

You can correct anything Kynlo believes in the Household Book. You may access, update, or delete information and disconnect integrations at any time, and you can ask us to delete your family’s data entirely — write to hello@kynlo.life and it will be done, fully and promptly. Deleting your account also anonymizes your public Kynlo Local profile, as described in section 7.

11. How We Protect It

We use reasonable safeguards, though no system is fully secure. Here is what that means in practice:

  • Encryption in transit: every connection to Kynlo — and every call we make to Google, OpenAI, Telnyx, Resend, and Stripe — is encrypted with TLS (HTTPS).
  • Encryption at rest: our database is encrypted at rest by our hosting provider (AES-256).
  • Access control: every request is authenticated and scoped to your family — one household can never read another’s data, and roles inside a family (parent, child, caretaker) limit what each member sees.
  • Credentials and tokens: Google OAuth tokens are stored server-side, never exposed to your browser, and destroyed when you disconnect. Service credentials live in protected environment configuration, never in code.
  • Verified messages: incoming webhooks (texts, payments) are cryptographically signature-checked and rejected otherwise.
  • Minimal hands: production data access is restricted to what is required to operate the service — there is no browsing of family data.
  • Deletion: disconnecting a calendar removes its synced events. Deleting your account removes your personal information — name, email, sign-in methods and phone numbers — and anonymizes your public Village profile; your family’s shared history stays for the members who remain, and what you published to Kynlo Local stays in the Village with your name and photo taken off it, as described in section 7. Deleting the whole family, from Settings, erases everything the family holds.
  • Breach notice: if a security incident ever affects your data, we will notify you promptly.

12. Where It Lives

Your family’s data is stored in our database (hosted on Neon) and served from our servers (hosted on Railway), both in the United States. Text messages are delivered by Telnyx. Email we send and receive is handled by Resend. Push notifications are delivered by Apple and by your browser’s push service. Subscriptions are processed by Stripe. The concierge’s judgment runs on OpenAI’s API — the content needed to write your letter or sort your week is processed there and is not used to train their models under our agreement. If your family has connected its own OpenAI account, your inquiry runs go to OpenAI through that account and under its terms; the key itself is held, encrypted, in the same database and nowhere else.

13. Text Messages

If you opt in to SMS, message frequency varies and message & data rates may apply. Reply STOP at any time to unsubscribe, or HELP for help. Phone numbers collected for SMS consent are never shared with third parties or affiliates for their marketing.

14. Payments

Subscriptions are processed by Stripe. We never see or store card numbers.

15. Cookies

Kynlo sets one first-party cookie: a session cookie that keeps you signed in. That’s it. We use no advertising cookies, no analytics cookies, and no third-party trackers. The one exception is payments: on screens where you subscribe or manage billing, Stripe (our payment processor) loads its own code, which may set Stripe cookies for security and fraud prevention.

16. Changes

If we ever change how any of this works, this page changes first — and the date above with it. We may update this policy with notice for material changes.

17. Contact

Questions belong at hello@kynlo.life.

The letter is free, forever — kynlo.life/letter.