Privacy Policy
Last Updated: July 21, 2026
1. Introduction
CALLA ("we," "us," "our," or "Company") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our CALLA family calendar application (the "App"), including all features, functionality, and services we offer. CALLA is intended for use by adults (parents and guardians); see Section 6.
2. Information We Collect
We collect information in the following ways:
2.1 Account Information
- Email address
- Name
- Password (encrypted)
- Family name and family members
- Profile information (optional photo, emoji, color preference)
2.2 Calendar & Event Data
- Events you create (title, date, time, location, notes, attendees)
- Event reminders and notifications you set
- Recurring event patterns
- Member availability and schedules
2.3 Communication Data
- Co-parent invite emails and access links
- Voice input for event creation — transcribed using your device's built-in speech recognition (on iOS this may be processed by Apple); we do not retain the audio
- Push notification preferences
- Email addresses of invited family members
2.4 Smart Email ("Catch") & AI Event Extraction
CALLA gives each account a private inbound email address. When you (or someone you share that address with) forward or send an email to it, we receive and store that email — including its sender, subject, and full body text — so it appears in your in-app Catch inbox.
- Email content you forward may contain information about third parties (e.g., a school, coach, or other parent who originally sent it). Only forward content you are entitled to share.
- To turn forwarded emails into calendar events, the email text is sent to our AI processing provider, Anthropic (Claude), which extracts dates, times, and event details. Anthropic processes this text on our behalf to return structured event data.
- Photos of flyers you scan are likewise processed by Anthropic for the same extraction purpose.
- We do not keep Catch emails long-term. An email you act on (extract events from, or dismiss) is deleted from our systems immediately. Any forwarded email you do not act on is automatically and permanently deleted within 7 days of when it arrived. Deleting your account also removes all stored Catch emails. See Sections 6 and 7.
2.5 Location & Discovery
- A city and neighbourhood you select from a fixed list (we do not use your device GPS or ask for a precise address). Used to resolve an approximate area for the Discover feature.
- To populate Discover, your approximate area and search terms are sent to third-party providers (SerpApi, Ticketmaster, and the OpenStreetMap/Nominatim geocoding service). These requests do not include your name or account identifiers.
2.6 Device & Usage Data
- Device type, OS version, app version
- Firebase Cloud Messaging tokens (for push notifications)
- A last-active timestamp — the date and time of your most recent sign-in — used to understand overall engagement and to identify long-inactive accounts for deletion (see Section 7). We do not track which features you use, how long your sessions last, or your in-app behaviour.
- IP address (for security and fraud prevention)
2.7 Payment Information
- Subscription status and trial period remaining
- Payment-processor information is NOT stored by us — mobile purchases are handled by Apple App Store or Google Play (via RevenueCat) and web purchases by Stripe
2.8 Invitations & RSVPs
CALLA lets you turn an event into an invitation and share it with guests. When you do, you choose the details that appear on the invitation (such as the title, date, time, location, an optional note, a host/family name, and a design or photo). Sharing generates a private link; anyone who opens that link sees a web page showing those details. The link contains a long, unguessable code, so the invitation is reachable only by the people you share it with.
- Guests do not need a CALLA account. When a guest replies, we collect the information they provide: their name, their response (going, maybe, or can't), the number of adults and children in their party, and an optional note to you. On a gender-reveal invitation, a guest may also submit a "Boy or Girl" guess. We do not collect a guest's email address or phone number.
- The details you include are your responsibility. Only put information on an invitation that you are comfortable sharing with everyone you send the link to, and only share the link with your intended guests.
- Replies are shared back to you. As the host, you can see each guest's response, party size, note, and any guess inside the app.
- So a guest can see and edit their own reply, a small identifier is stored in that guest's own browser (local storage) on their device. This is not an account and is not linked to other information about them.
3. How We Use Your Information
We use the information we collect for the following purposes:
- To provide, maintain, and improve the App and its features
- To authenticate your identity and manage your account
- To enable real-time synchronization of family calendars
- To extract calendar events from emails you forward and flyers you scan, using our AI processing provider (Anthropic/Claude)
- To surface local family activities in Discover based on the area you enter
- To send push notifications and reminders for events
- To create and share event invitations and collect RSVPs from your guests
- To process subscription payments and trial periods
- To detect and resolve conflicts in family schedules
- To communicate with you about your account, app updates, and features
- To comply with legal obligations
- To prevent fraud and ensure app security
- To analyze usage patterns and improve user experience
4. Data Storage & Security
Your data is stored securely using:
- Supabase (PostgreSQL): Encrypted database for calendar events, family data, and user profiles
- Firebase Cloud Messaging: Encrypted push notification tokens
- Row-Level Security (RLS): Database policies restrict each row so only you and the family members you invite can access your data
- Encryption in transit: All network traffic is encrypted via HTTPS/TLS. (CALLA does not provide end-to-end encryption; service providers listed in Section 5 process the relevant data on our behalf.)
- Encryption at rest: Stored data, including forwarded email content and member photos, is encrypted at rest by our database provider
- Authentication: Passwords are hashed by our authentication provider using industry-standard algorithms; session tokens are stored on your device
We implement reasonable security measures, but no transmission over the internet is 100% secure. We are not responsible for unauthorized access due to factors beyond our control.
5. Data Sharing & Third Parties
We may share your information with:
- Family Members: Calendar and event data with co-parents and family members you invite
- Invitation Guests: when you create an invitation and share its link, the event details you include become viewable by anyone who has the link, and the RSVP details a guest submits are shared back to you as the host (see Section 2.8)
- Service Providers (process data on our behalf):
- Supabase — encrypted database & authentication
- Anthropic (Claude) — AI extraction of events from forwarded email content and scanned flyer images
- SerpApi, Ticketmaster, OpenStreetMap/Nominatim — Discover local-activity lookup and geocoding (approximate area + search terms only; no name/account id)
- Firebase Cloud Messaging — push notification delivery
- RevenueCat with Apple App Store / Google Play — in-app subscription processing on mobile
- Stripe — subscription processing for web purchases
- Resend — transactional email (invites, password reset, contact form)
- Vercel — hosting for our website and the public invitation/RSVP pages
- Legal Authorities: If required by law or to protect our rights
We do NOT sell your data, and we do NOT use your data, your family's data, or forwarded email content for advertising. CALLA contains no third-party advertising or analytics-tracking SDKs and does not use mobile advertising identifiers.
6. Children's Information
CALLA is designed for and directed to adults (parents and guardians). Account creation and sign-in are available only to adults; children do not have their own logins or accounts in CALLA.
An adult account holder may add family members, including their children, as calendar records they manage. For a child, an adult may provide a first name, an age or age range, an optional emoji/color, and an optional photo, solely so the family calendar can organize that child's events. This information is entered and controlled by the adult, is visible only to that adult and any co-parent they invite, and is protected by the same access controls as the rest of the account.
- We do not knowingly allow children to create accounts or independently provide personal information to us.
- We do not use any person's information — including information about children — for behavioral advertising, and we do not allow third parties to do so.
- A parent/guardian can review, edit, or delete a child's record at any time in the app, or delete the entire account and all associated data (see Sections 7 and 8).
- If you believe a child has created an account or provided information directly to us without parental involvement, contact us at [email protected] and we will delete it.
Note: an optional, parent-granted login for older teens may be considered in a future release; it is not available at launch, and this section will be updated before any such feature ships.
7. Data Retention
This section is the single authoritative statement of how long we keep your data; our Terms of Service defer to it.
- Active data: retained while your account is active.
- Invitations & RSVPs: an invitation and the RSVPs submitted to it are kept while the event is current and are automatically deleted approximately 12 months after the event date. Deleting an invitation removes its RSVPs, and deleting your account removes your invitations and their RSVPs.
- Forwarded "Catch" emails: an email you do not act on is automatically and permanently deleted within 7 days of when it arrived; an email you extract events from or dismiss is deleted immediately. We do not retain forwarded email content beyond this window.
- On account deletion: your personal data in our live systems (profile, events, members and photos, lists, forwarded "Catch" emails, push tokens) is deleted within 30 days of the deletion request.
- Encrypted backups: deleted data may persist in routine encrypted database backups until those backups age out of their normal rotation (typically within ~30 days); backups are access-controlled and not used to restore deleted accounts.
- Operational & security logs: minimal technical logs (e.g., timestamps, coarse error/abuse signals) may be retained for a short period for security, fraud-prevention, and debugging, then purged. We do not retain forwarded email bodies or member photos in logs.
- Legal retention: we may retain limited records longer where required by law, to resolve disputes, or to enforce our agreements.
- Inactive unconverted trials: if your free trial ends, you do not subscribe, and the account then stays inactive (not signed in) for about 12 months, we email you a deletion warning; if the account remains unsubscribed and inactive for about 14 more days, we permanently delete it and its data. Signing in or subscribing at any point cancels this. This keeps us from holding data — including children's information — for accounts that are no longer used. (Accounts that are part of a family are excluded from automatic deletion and are handled only on request.)
- Subscription independence: apart from the inactive-trial cleanup above, retention and deletion are not contingent on your subscription status.
8. Your Rights & Control
You have the right to:
- Access your personal data
- Correct inaccurate information
- Request deletion of your account and data
- Control who has access to your calendar
- Opt out of push notifications
- Export your event data
To exercise these rights, contact us at [email protected].
9. Cookies & Tracking
CALLA does not use cookies or tracking pixels. Session tokens are stored locally on your device for authentication purposes only.
10. Third-Party Services
Our app uses the following third-party services:
11. Data Breach Notification
In the event of a data breach affecting your personal information, we will notify affected users and any applicable regulator as soon as feasible and as required by applicable law (for Canadian users, in accordance with PIPEDA), via email and/or in-app notice.
12. International Data Transfer
Your data may be transferred to, stored in, and processed in countries other than your country of residence, which may have different data protection laws. By using CALLA, you consent to such transfers.
13. Changes to This Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or in-app notification. Your continued use of the App constitutes acceptance of the updated policy.
14. Contact Us
For questions about this Privacy Policy or your data, contact:
Email: [email protected]
Website: getcalla.ca
© 2026 CALLA. All rights reserved.