All legal documents

Privacy Policy

What we collect, how we use it, who we share it with, and the choices you have.

Last updated October 10, 2026

This Privacy Policy explains how Kalvri LLC (“Kalvri,” “we,” “us”) handles personal information when you use the Kalvri app and this website (together, the “Service”). We built Kalvri to be honest about what it is — a matchmaking platform — and that honesty extends to your data.

1. Who we are

Kalvri is operated by Kalvri LLC, the controller of the information described here.

Questions about privacy? Contact us at privacy@kalvri.com.

2. What we collect

We collect only what we need to run the matchmaking experience:

  • Account information — your name, email, and (optionally) phone number. Sign in with Apple is supported, and an Apple private-relay email is a valid account email.
  • Profile content — photos, an optional short intro video (and its machine-generated transcript), prompt answers, credentials, service level, rate, availability, languages, and specialties.
  • Care needs — the kind of care a family is arranging (for example, companion care, mobility support, dementia care, or medication comfort), including the care recipient's stated conditions, allergies, and care situation. This is sensitive information and is handled as described in the sensitive-information section below.
  • Trust signals — credential details and, if a caregiver chooses to provide it, the self-reported status of a background check (status only — never a report), and the pass/fail outcome of the optional ID check described below.
  • Messages and ratings — the content of conversations and the ratings and notes people leave. A published review shows its stars, its words and the month it was written — never its author's name, and never the hours booked in the engagement it came from, which count only toward one total of hours shown across all of a person's reviews, rounded down to a milestone so that no one engagement's hours can be read from how it changes — and only once the person reviewed has at least three; below that, the app says how many there are.
  • Usage and diagnostics — in-app events, app and device version, and similar information, collected by our own first-party analytics; plus crash and performance reports from our error-reporting tool (Sentry), configured to minimize personal data (no request bodies, identifiers reduced to an opaque user ID, free-text fields scrubbed before send).
  • Approximate location — the city and state you type. If the optional nearby-matching feature is enabled in your build and you grant the iOS location permission, we also collect a deliberately coarsened point: before it ever leaves your device it is snapped to roughly a 1-kilometer neighborhood grid with added jitter — never your exact address or home coordinate, captured in the foreground only. Declining the permission simply falls back to your typed city/state. We never collect precise GPS location.
  • Identifiers — a user ID and, if you enable notifications, a push token.
  • Purchases — if you subscribe to the Kalvri membership (the optional subscription offered to families once their five free conversations are used; matching itself is free, and a caregiver is never charged), only your entitlement state: which product you have, whether it is active, and when the current period ends, written from Apple's signed record of the transaction. Apple processes the payment; we never see your card number or payment details.
  • Invitations — your own six-letter invite code; if you joined through a friend's code, which account that was and when; how many people have joined through your code; for a family, the number of free conversations that follows from it (five, plus two for each friend, up to twenty; a caregiver's conversations are never walled, so no such figure is kept for them to see); and whether people who know you can find you (Let people who know you find you, on unless you switch it off). How many matches you have made is kept on our servers alone and is never shown to anyone, including the people you match with. This record is server-only: no other user can read it. Every attempt to enter a code is counted as an event, without the letters typed.
  • Contact matching (optional, only if you choose Find people you know, offered in sign-up and under You) — SHA-256 hashes of the phone numbers and email addresses in your address book, computed on your device. They are compared once, server-side, against the phone numbers and email addresses members have confirmed with our sign-in provider, for members who leave Let people who know you find you on, and are never stored, in clear or hashed, beyond that comparison. No name from your contacts ever reaches Kalvri, and their numbers and addresses reach it only as hashes.

3. AI profile drafting and matching personalization

During sign-up you type a short description of your situation in your own words. To turn it into a complete profile, that text and your structured answers are processed by an AI language-model service (Google's Gemini API), which drafts your profile content — you review and can edit everything before it is shown to anyone. The same pipeline produces matching signals that tune your suggestions as you like and pass profiles.

Inputs are passed through a protected-class firewall before scoring: the matching algorithm never reads race, religion, national origin, sex or gender, age or date of birth, disability, or ZIP code. You can turn matching personalization off in Settings at any time, which stops us from using and from recording your preference signals.

4. Optional ID check (processed by Stripe)

A family may ask a caregiver, inside their conversation, to confirm their identity. The check is entirely optional for the caregiver, and declining is a normal, visible choice. If the caregiver accepts, the verification happens on Stripe's hosted flow (Stripe Identity): Stripe collects and processes the government-ID document and the selfie, including any biometric comparison Stripe performs — that data goes to Stripe, not to Kalvri, and Stripe's own privacy policy governs it. Kalvri stores only who asked, when, and the pass/fail outcome — never the document, the selfie, a birthdate, or any biometric template.

Kalvri does not collect, capture, receive, or possess biometric identifiers or biometric information. Any biometric processing in the optional ID check is performed by Stripe under Stripe's own notices and consent.

5. Sensitive and consumer health information

Because Kalvri connects care recipients with caregivers, some of what you enter is health-related: a care recipient's conditions, allergies, and care situation, and a caregiver's care capabilities. We treat this as sensitive information: we collect it from you directly, use it only to match to stated care needs and to operate safety features, never sell it, never share it for advertising, and never feed it to the matching algorithm where it could act as a protected-class signal.

The care recipient is usually not the account holder. When a family enters care-recipient information, the family represents that it is the care recipient's authorized representative and consents on their behalf to this processing for the purpose of finding care. Kalvri is not a HIPAA covered entity or business associate; we nonetheless apply heightened safeguards to this data.

If you live in Washington, Nevada, or another state with a consumer-health-data law, our Consumer Health Data Privacy Policy describes those disclosures and rights in full.

6. How we use your information

  • To create and manage your account.
  • To suggest compatible matches and power the daily match.
  • To display credentials and trust information that help people decide.
  • To keep the community safe — supporting reporting, blocking, and our response to reports.
  • To improve the product through first-party analytics.
  • To send notifications you have turned on.
  • To provide the membership — to verify the entitlement that opens every conversation after a family's first five free ones, and to keep the count of free conversations a family's invitations earn. Matching is free; there is no other paid gate, and a caregiver is never charged or walled.
  • To comply with law and to protect the rights, safety, and property of users and of Kalvri.
We never use protected-class data — such as race, religion, national origin, sex or gender, age, disability, or ZIP code — to rank or suggest matches. See our How Matching Works page.

7. What we don't do

  • We do not sell your personal information.
  • We do not share your personal information with third parties for cross-context behavioral advertising, and we run no advertising or tracking SDKs — so there is no app-tracking prompt.
  • We do not run background checks, and we do not store background-check reports. (See our Background Checks page.)
  • We do not collect your date of birth — age is a protected field our scorer must never see, so we ask only that you confirm you are 18 or older.
  • We do not collect biometric identifiers, precise GPS location, or card or bank numbers, and we never hold the money a family pays a caregiver.
  • We do not upload your address book. If you choose Find people you know — offered once in sign-up, and at any time under You — the app hashes the phone numbers and email addresses in your contacts on your device (SHA-256 of each number in international form, and of each address in lower case with surrounding spaces removed) and sends only those hashes, once, to find members who confirmed one of them with our sign-in provider and who leave Let people who know you find you on (it is on unless they switch it off in Settings). We never receive a name from your contacts, receive their numbers and addresses only as hashes, keep the hashes no longer than the comparison, and never contact anyone in your address book. Because a hash of a phone number or a likely email address can be reversed by guessing, we treat the hashes as the numbers and addresses themselves. The members found are shown to you by first name, photograph and whether they are a family or a caregiver; the rest of your contacts are listed on your phone, each with an Invite button that opens Messages with your invite code, and that list never leaves your phone. Invite from your contacts opens Apple's own picker, and the message is sent from your phone, by you; we see nobody you did not pick. Declining either changes nothing else about the app.

Because we do not sell or share personal information for advertising, there is nothing for an opt-out preference signal (such as Global Privacy Control) to opt you out of — we state that plainly rather than ignore it. You can still exercise the rights below.

8. Sharing and service providers

We share information only with the service providers that help us operate, under agreements that limit their use of it:

  • Supabase — hosting, database, authentication, and file storage.
  • Apple — Sign in with Apple, push-notification delivery, App Store In-App Purchase of the Kalvri membership and App Store Server Notifications about it, and offer-code redemption. Apple is the merchant of record for the membership; our backend verifies Apple's signed record of each purchase before recording it, and the app cannot grant a membership on its own.
  • Google — the Gemini API for AI profile drafting and matching personalization, and Cloud Vision for automated screening of uploaded images.
  • Stripe — the optional ID check (Stripe Identity), where the ID document and selfie go to Stripe, not Kalvri.
  • Resend — email delivery (sign-in codes and, where enabled and consented, transactional and digest email with unsubscribe links).
  • Sentry — crash and performance diagnostics, minimized as described above.
  • Expo (EAS) — app builds, updates, and push-notification relay.

Invitations and the board. If you join through a friend's code, that friend is told your first name and that you joined once you publish a profile, and you see your inviter's first name and photograph. Whoever holds your invite code — the people you send it to, and anyone they pass it to — can see your first name and your first approved profile photograph on the screen that says you sent for them, before they make an account; the photograph reaches their phone as a link that stops working within minutes. A member who has your phone number or email address in their contacts and chooses Find people you know may be shown your first name, photograph and whether you are a family or a caregiver, if you confirmed that number or address with our sign-in provider, your profile is shown, and you leave Let people who know you find you on; switching it off takes you out of every search from then on. How many matches you have made is shown to nobody, not even the people you match with. A review you write is shown to others with its stars, its words and its month, never your name and never the hours booked in your engagement (those count only toward one total across all of that person's reviews, rounded down to a milestone so your hours cannot be read from how it changes), and only once the person you reviewed has at least three. A caregiver who leaves the board switched on (You → On the board) is shown to other caregivers in the same city, and to the people they brought or were brought by, as a first name, a photograph and a count — people brought, hours of care from accepted bookings, families worked with. A family is never shown on any board. The other person in a conversation that is not yet open is told only that it is not open yet, never anything about your purchases.

We may also disclose information if required by law, subpoena, or legal process, or where we believe disclosure is necessary to protect safety, investigate fraud, or enforce our terms. If Kalvri is involved in a merger, acquisition, or sale of assets, information may be transferred as part of that transaction.

9. Your choices and rights

  • Access and export — request a copy of your data from in-app settings.
  • Deletion — delete your account in the app. We hide your profile immediately and permanently purge your data after a 30-day grace period (during which signing back in restores your account).
  • Correction — update your profile and account details at any time.
  • Notifications — turn notifications on or off at any time.
  • Matching personalization — opt out of personalized matching, which stops us from using and from recording your preference signals.
  • Block and report — block or report another person from the conversation.

Depending on where you live, you may have additional rights — such as to access, correct, delete, port, or limit certain processing of your information, and to be free from discrimination for exercising them. We honor these requests as required by applicable law. You may use an authorized agent where the law allows; we may need to verify your identity first.

10. Data retention

We keep your information while your account is active. When you delete your account, we purge your data after a 30-day grace period.

We may retain a limited set of records — such as ratings, audit, safety, and dispute records — for as long as needed to meet legal obligations, resolve disputes, enforce our agreements, and protect the other party's safety record.

11. Security

Access to data is enforced at the database with row-level security; data is encrypted in transit; profile media lives in private storage; and no privileged server keys ship in the app.

No method of transmission or storage is perfectly secure, and we cannot guarantee absolute security. You are responsible for keeping your account credentials confidential.

12. Children

Kalvri is for adults 18 and older. It is not directed to children, and we do not knowingly collect information from anyone under 18. If we learn an account belongs to someone under 18, we remove it.

13. Where your information is processed

Kalvri is operated in the United States and intended for users there. If you access the Service from elsewhere, you understand your information may be processed in the United States, where data-protection laws may differ from those in your location.

14. Changes to this policy

We may update this Privacy Policy from time to time. When we do, we will revise the date at the top and post the updated version here. Material changes will be made conspicuous where required.