Privacy Policy

Last updated: March 25, 2026

1. Information We Collect

When you use Care Assistant Pro, we may collect the following information:

  • Account information: Name, email address, and password when you create an account.
  • Phone number: If you choose to enable SMS notifications, we collect your mobile phone number.
  • Usage data: Information about how you interact with our platform, including shift records, clock-in/out times, and scheduling data.
  • IP addresses: We record your IP address when you grant or revoke SMS consent for security and audit purposes.
  • Payment information: When you subscribe to a paid plan, payment details such as credit card or bank account information are collected and processed directly by our payment processor, Stripe, Inc. We do not store your full payment card details on our servers.

2. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve our platform and services.
  • Send service-related notifications, including shift updates, schedule changes, and important operational alerts.
  • Send SMS notifications if you have opted in to receive them.
  • Process subscription payments and manage your billing relationship.
  • Maintain audit trails for regulatory compliance.
  • Respond to your inquiries and provide customer support.

3. SMS and Mobile Phone Numbers

Mobile phone numbers are collected optionally and used solely for service notifications related to shift management, scheduling updates, and care coordination.

We will not share or sell your mobile information with third parties for promotional or marketing purposes.

SMS consent is optional and can be revoked at any time by replying STOP to any message or updating preferences in your account settings.

When you grant or revoke SMS consent, we record a timestamp and your IP address to maintain an audit trail for compliance purposes. This information is never displayed to other users.

4. Data Sharing

We do not sell your personal information. We share your information only with the following third-party service providers who assist us in operating our platform, and only to the extent necessary to provide our services. Each provider is contractually obligated to protect your information.

  • Stripe, Inc. — payment processing. Payment information you provide is subject to Stripe's Privacy Policy at stripe.com/privacy.
  • Telnyx LLC — SMS delivery services.
  • Resend — transactional email delivery.
  • Google Cloud Platform — cloud infrastructure, database, and application hosting.

5. Payment Processing

We use Stripe, Inc. to process subscription payments. When you provide payment information, it is transmitted directly to and stored by Stripe. Care Assistant Pro does not store your full payment card number, CVV, or bank account details on our servers.

By providing payment information, you agree to Stripe's Privacy Policy (stripe.com/privacy) and Terms of Service (stripe.com/legal).

6. HIPAA and Protected Health Information

Care Assistant Pro provides software tools to home care agencies that may handle protected health information (PHI) as defined under the Health Insurance Portability and Accountability Act (HIPAA). Care Assistant Pro acts as a Business Associate to these customer agencies.

PHI handled through our platform on behalf of customer agencies is governed by Business Associate Agreements (BAAs) entered into with each customer, and is not subject to the personal information practices described in this Privacy Policy. Customer agencies remain the Covered Entity responsible for their own HIPAA compliance obligations with respect to their clients and patients.

7. Cookies

We use essential cookies solely to maintain your login session while you are using the platform. We do not use tracking, advertising, or analytics cookies. By using Care Assistant Pro, you consent to our use of session cookies as described here.

8. Data Security

We implement reasonable technical and agencyal measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. Passwords are stored using industry-standard one-way hashing. All data is transmitted over encrypted connections (HTTPS). Payment information is handled exclusively by Stripe and is never transmitted to or stored on our servers in full.

9. Data Retention

We retain your personal information for as long as your account is active or as needed to provide services. If you request account deletion, we will remove your personal information within 30 days, except where retention is required by law or for legitimate business purposes such as regulatory compliance or billing records.

10. Your Rights

You have the right to:

  • Access the personal information we hold about you.
  • Request correction of inaccurate information.
  • Request deletion of your account and personal information.
  • Opt out of SMS notifications at any time.

To exercise any of these rights, please contact us using the information in Section 12 below.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy on this page with a revised "Last updated" date. Your continued use of the platform after any changes constitutes your acceptance of the updated policy.

12. Contact Us

If you have any questions about this Privacy Policy or wish to exercise your rights, please contact us: