Privacy Policy for Aroida
Last Updated: May 26, 2026
1. Introduction
Welcome to Aroida ("we," "our," or "us"). We are committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, store, and share your data when you use our mobile application (the "App").
2. Information We Collect
We collect information to provide you with plant identification, health diagnosis, and care management services.
A. Account Information
- Anonymous Users: If you use the App without signing in, we create an anonymous User ID to sync your data. You do not need to provide an email or name.
- Registered Users: If you choose to sign in via Apple or Google, we collect the basic authentication information they provide (such as your email address and name) to link your data across devices.
B. User Content (Your Garden)
- Plant Data: We store the photos of your plants, their nicknames, species information, and care logs (e.g., watering history, notes).
- AI Analysis Data: Photos you take for Identification or Health Checks are uploaded to our servers and third-party AI providers to process the results.
C. Device and Usage Data
- We may collect standard device information (model, OS version) and crash logs to help us improve the App's stability.
3. How We Use Your Data
We use your data to provide and improve core app features, including plant identification, health diagnostics, and personalized care support.
- Feature Delivery: We process relevant account, content, and usage data to operate requested app functions and return analysis results.
- De-Identified Data & Case Studies: We may aggregate and de-identify data collected through Health Check and Plant Identification features (including plant photos, symptom selections, and diagnostic results). This de-identified data may be used for internal AI quality improvement, botanical research, and the creation of public educational materials, case studies, and marketing content (including, without limitation, programmatic SEO pages, community posts, de-identified diagnostic case examples, and before-and-after or other treatment-progress showcases on social platforms, where permitted by applicable law). We implement industry-standard technical and organizational measures designed to prevent personally identifiable information (PII), such as your name, account details, or precise location, from being attached to these public cases. For de-identified datasets, we publicly commit to maintain and use such data in de-identified form and not attempt to reidentify it, except where strictly necessary to test and validate our de-identification controls. Where de-identified data is shared, we contractually require recipients to apply equivalent non-reidentification protections.
4. How We Store and Sync Your Data
A. Local-First & Cloud Sync
Our App follows a "Local First" architecture. This means your data is stored locally on your device for fast access. However, to ensure you don't lose your data and to support synchronization across multiple devices, your encrypted data is automatically synced to our cloud database.
B. Image Storage
All images you upload (including your garden photos and AI analysis photos) are securely stored in Cloudflare R2, a cloud storage service.
5. How We Share Data with AI Service Providers
To deliver intelligent plant features, we work with specialized third-party AI platform providers, data processors, and secure model-hosting or routing partners. We only share the minimum contextual data and assets required to complete your requested analysis.
- Image-Based Analysis & Diagnostics: When you use identification, diagnostic, or optimization features, submitted images, related sensor/context signals, and optional prompts may be processed by computer vision and multi-modal AI systems.
- Personalized Care Guidance: For conversational support and care recommendations, your relevant care history, notes, and questions may be processed by generative AI models to produce tailored suggestions.
To support reliability and feature flexibility, requests may be routed through industry-standard AI infrastructure and model platforms (including, but not limited to, systems using models such as OpenAI GPT, Google Gemini, Anthropic Claude, and similar AI service providers).
These third parties act as data sub-processors under contractual obligations and are not permitted to use your personal data for their own marketing purposes or to train their public foundational models using your personal records.
6. Data Retention and Account Deletion
This section explains your rights to control your data.
A. Deletion of Personal Data
You can request to delete your account at any time via the App settings. Upon deletion:
- Your account credentials (email, authentication links) are permanently removed from our database.
- Your personal profile, "My Garden" list, and personal journals are permanently deleted.
B. Retention of De-Identified AI Data
We retain personal data for as long as needed to provide the App and meet legal obligations. We may retain de-identified copies of images and diagnosis logs submitted through Identification and Health Checks in accordance with our internal retention standards and applicable law. Crucially, this retained data is de-identified:
- Direct personal identifiers are removed or transformed before long-term retention.
- Retained records are separated from account-level identifiers and are not used to directly identify you.
- When you delete your account, account-linked personal data is deleted, while previously de-identified records may be retained and used for the purposes described in Section 3, where permitted by applicable law.
7. Your Rights (GDPR & CCPA)
Depending on your location, you may have the following rights:
- Right to Access: You can view your data within the App.
- Right to Rectify: You can update your plant information at any time.
- Right to Erasure: You can delete your account and personal data.
- Right to Withdraw Consent: You can stop using AI features at any time.
8. Children's Privacy
Our Service does not address anyone under the age of 13. We do not knowingly collect personally identifiable information from anyone under the age of 13.
9. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page.
10. Contact Us
If you have any questions about this Privacy Policy, please contact us at:
- Email: support@aroida.com
- Website: https://aroida.com