Privacy Policy
Effective date: April 9, 2026
1. Who we are
Caret ("we," "us," "our") operates the website caret.se and the Caret application. This policy explains how we collect, use, store, and protect information when you use our services.
2. Information we collect
Account information
When you create an account we collect your name, email address, and a password (securely hashed and managed by our authentication provider). You may optionally add a profile picture.
Project and product data
Caret stores the content you create inside the application: projects, captures (text notes and uploaded documents), insights, opportunities, briefs, goals, assumptions, personas, chat messages, decision log entries, and release notes. This is your data — we do not sell it.
Feedback portal submissions
If you enable a public feedback portal, visitors who submit feedback may optionally provide their name and email. We also collect the submitter's IP address and browser user-agent for abuse prevention.
Billing information
Payment details (card number, billing address) are collected and processed directly by our payment processor. We store only a reference identifier, your plan type, and subscription status — never your full payment credentials.
Usage and analytics
We collect anonymized, aggregate usage analytics (page views, performance metrics) to improve the service. We do not use third-party advertising trackers.
Cookies
We use essential cookies to manage your authentication session. We do not use cookies for advertising or cross-site tracking.
3. How we use your information
- To provide, maintain, and improve the Caret service.
- To authenticate you and secure your account.
- To process payments and manage your subscription.
- To generate AI-powered summaries, insights, briefs, and recommendations from your project data. Your content is sent to third-party AI providers solely for processing your requests — it is not used to train their models.
- To send you in-app notifications (such as weekly digests) when enabled.
- To detect and prevent fraud, abuse, and security incidents.
4. Third-party service providers
We share limited data with trusted service providers who help us operate Caret:
- Authentication and database provider — stores your account, session, and project data.
- AI providers — process your content to generate summaries, insights, and recommendations. Data is sent only when you trigger an AI feature. We do not permit AI providers to use your data for model training.
- Payment processor — handles billing, card processing, and subscription management.
- Hosting and analytics provider — serves the application and collects anonymized performance metrics.
We do not sell, rent, or share your personal data with advertisers or data brokers.
5. Data retention
We retain your data for as long as your account is active. If you delete your account, we will remove your personal data and project content within 30 days, except where we are required by law to retain it longer. Anonymized, aggregate analytics may be retained indefinitely.
6. Data security
All data is transmitted over HTTPS. Authentication credentials are securely hashed. Access to production systems is restricted to authorized personnel. While no system can guarantee absolute security, we apply reasonable technical and organizational safeguards to protect your data.
7. Your rights
Depending on your jurisdiction, you may have the right to:
- Access, correct, or delete your personal data.
- Export your data in a portable format.
- Withdraw consent for optional data processing.
- Object to processing or request restriction of processing.
To exercise any of these rights, contact us at 1medotube@gmail.com.
8. Children
Caret is not intended for use by anyone under the age of 16. We do not knowingly collect personal data from children.
9. Changes to this policy
We may update this privacy policy from time to time. Material changes will be communicated via the application or email. Continued use of Caret after changes take effect constitutes acceptance of the revised policy.
10. Contact
If you have questions about this privacy policy or your data, contact us at 1medotube@gmail.com.