Woodhouse · kyro.house
Privacy Policy
Last updated September 7, 2026
Woodhouse (kyro.house) is a private assistant that runs one household. It is operated by Kyle Roche for members of that household only. This policy explains what it collects, why, and what happens to it.
Who can use it
Only household members the operator has registered. There is no public sign-up. Children in the household use it under accounts their parents control, with restricted permissions and parental approval on actions.
What Woodhouse collects
- Identity: your name and email from Sign in with Apple, used only to recognize you as a household member and set your role.
- Google data, when you connect a Google account: calendar events, Gmail messages and labels, and Drive file metadata, accessed through Google’s APIs with the scopes you approve. Each person connects their own accounts; nobody else’s Google data is read on your behalf.
- Location: the Woodhouse app reports when your phone enters or leaves the household’s own geofences (home, the work house) so the house knows who is present. Continuous location is not recorded; only arrive/leave events at those places.
- Household memory: things you tell Woodhouse to remember, documents you share with it, and notes it compiles from them. Notes are private to the person by default; sharing with the family is explicit, and a child’s proposal to share waits for a parent.
- Devices and push: device tokens so Woodhouse can send notifications you enable, and the state of home devices it controls (thermostats, pool, lights, cameras, the board).
- Conversations: what you say to Woodhouse and what it replies, kept so the assistant has context.
How it is used
Only to run the household: answering you, managing calendars and mail you asked it to manage, running routines you created, showing the family what it shows on the house’s own screens. Nothing is sold, shared for advertising, or used to train models.
Google user data
Woodhouse’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements. Google data is used only to provide the features you asked for (reading and writing your calendar, searching and organizing your mail, sending mail you compose, reading files you point it at), is never sold, is never used for advertising, and is never transferred to humans except as needed for security or with your explicit consent. You can revoke access at any time from kyro.house/settings (Disconnect) or from your Google Account permissions page.
Where data lives and who processes it
- Hosting and databases: Vercel and Neon (Postgres), in the United States.
- AI models: requests are processed by model providers through Vercel’s AI Gateway (xAI, Anthropic, OpenAI). Prompts include only what is needed for the request; the providers process them to generate a response.
- Home devices and integrations you have connected (for example Sonos, Trane, Pentair, Vestaboard, Eight Sleep, Blink, Alta). Each is contacted only to read or control that device for you.
Retention and deletion
Data is kept while you are a household member. Disconnecting a Google account revokes Woodhouse’s access and deletes the stored connection. Ask the operator to remove your account and your memory, conversations, and device tokens are deleted. Email woodhouse@kyro.house.
Security
Access requires Sign in with Apple. Connections to Google are stored as OAuth grants, never as passwords. Traffic is encrypted in transit. Local-network devices are reached only from inside the house’s own network.
Changes
If this policy changes, the date above changes and household members are told directly. Questions go to woodhouse@kyro.house.
Questions: woodhouse@kyro.house