Hubdy

Privacy Policy

Last updated: [EFFECTIVE DATE — e.g. June 13, 2026]

This policy is provided for transparency. [LEGAL ENTITY NAME, e.g. Hubdy, Inc.]is the operator of Hubdy (“Hubdy,” “we,” “us”). Bracketed items are completed by the operator.

This Privacy Policy explains what information Hubdy collects, how we use and share it, the choices you have, and the rights available to you under laws including the Children's Online Privacy Protection Act (COPPA), the California Consumer Privacy Act as amended (CCPA/CPRA), other U.S. state privacy laws, and the EU/UK General Data Protection Regulation (GDPR) where applicable.

1. Who we are

Hubdy is a family-organization app (chores, calendar, groceries, messaging, rewards, and related features). The data controller/operator is [LEGAL ENTITY NAME, e.g. Hubdy, Inc.]. You can reach us at [privacy@hubdy.org] or [MAILING ADDRESS].

2. Information we collect

We collect the information needed to run the app for your household:

3. How we use information

4. How we share information (subprocessors)

Your data is stored in your household and is not accessible to other households. We share data only with vendors who help us operate Hubdy, under contractual confidentiality and security obligations:

We may also disclose information if required by law, to protect rights and safety, or in connection with a business transfer, with notice where required.

5. AI assistant

When a member invokes the assistant (for example, by mentioning “@hubdy”), relevant household context — such as chores, upcoming events, the grocery list, and recent messages in that conversation — is sent to our AI provider to generate a response. This data is processed to answer your request and is not used to train third-party models under our provider arrangement. You can avoid sending data to the assistant by not invoking it.

6. Children's privacy (COPPA)

Hubdy is designed for families and is intended to be set up and managed by a parent or legal guardian. Child profiles are created and controlled by the household's parent/guardian account. By creating child profiles or inviting a child, the parent/guardian represents that they are the child's parent or legal guardian and consent to our collection and use of the child's information as described here.

Features that involve higher-sensitivity data — the AI assistant, chat, media uploads, and voice — are off by default for child profiles and can only be enabled by a verified parent/guardian through our consent process. Before enabling these, the parent/guardian is shown a direct notice describing what is collected from the child, that the AI assistant is powered by a third-party provider (Anthropic), and the parent's rights to review, delete, or revoke. We verify the parent/guardian before consent is granted. We collect from child profiles only the information needed to operate the features the parent has enabled, and we do not knowingly use children's data for advertising.

A parent/guardian may review a child's collected information (including AI conversation logs), revoke consent, or delete the child's data at any time from Settings → Members, or by contacting us at [privacy@hubdy.org]. Revoking consent disables the affected features for that child. See Section 7 for how long children's data is retained. [Operator: confirm your verifiable-parental-consent method and retention periods with counsel before launch.]

7. Data retention

We retain household data while your account is active. To honor the principle of keeping information only as long as needed, we automatically and permanently delete children's higher-sensitivity data on the following schedule:

These deletions run on an automated daily schedule and are recorded in an internal audit log. A parent/guardian may also delete a child's data, or the entire household (Settings → Privacy → Delete household data), at any time. When data is deleted — automatically or on request — it is removed from our active systems promptly; residual copies may persist in our infrastructure provider's encrypted backups for a limited period under their standard rolling backup schedule before being overwritten, and are not restored. Retention periods may be adjusted to comply with legal obligations or to reflect counsel's guidance.

8. Security

We protect data in transit with TLS/HTTPS and at rest with industry-standard encryption provided by our infrastructure providers. Access between households is restricted by row-level security. No method of transmission or storage is perfectly secure, but we work to protect your information and limit internal access.

9. Your privacy rights

Depending on where you live, you may have rights to access, correct, delete, or receive a portable copy of your personal information, and to opt out of certain processing. Hubdy does not sell personal information or use it for cross-context behavioral advertising.

To exercise any right, use the in-app tools (Settings → Privacy: Export all data, Delete household data) or email [privacy@hubdy.org]. We will verify your request and respond within the time required by applicable law.

10. International data transfers

We operate in the United States, and your information may be processed there. Where required, we use appropriate safeguards for cross-border transfers.

11. Cookies & similar technologies

We use strictly necessary cookies and local mechanisms to keep you signed in and to operate core features. We do not use third-party advertising or cross-site tracking cookies.

12. Changes to this policy

We may update this policy from time to time. We will revise the “Last updated” date and, for material changes, provide additional notice as required by law.

13. Contact us

Questions or requests: [privacy@hubdy.org] · [LEGAL ENTITY NAME, e.g. Hubdy, Inc.] · [MAILING ADDRESS].

← Back to Hubdy