Privacy Policy
Fammai is built on a simple principle: your home's video stays in your home. Camera streams, recordings, and AI inference happen on the device on your network — they never leave it. This policy explains exactly what stays local, what leaves, and why.
01Introduction & Scope
This Privacy Policy applies to the Fammai hardware device, its on-device AI software and Daily Brief features, the Fammai website at fammai.com, any companion applications, and optional cloud services we may offer. It is operated by Prizmox Inc. ("we," "us," "our").
02Information We Collect
We collect information in the following categories:
- Account Data: Email address, name, and payment information when you reserve a device or purchase. A Fammai account is not required for core device function.
- Device Telemetry: Hardware health metrics (temperature, uptime, storage usage), firmware version, and error logs. This is opt-in and can be disabled entirely from the device dashboard.
- Usage Analytics: Aggregate statistics on feature usage (e.g., number of cameras connected, brief frequency, alert categories enabled) to improve the product. No video, audio, image content, or descriptive text from your home is included.
- Payment Data: Processed by our payment provider (Stripe). We do not store credit card numbers.
- Website Analytics: Standard pixel and cookie data from the Fammai website (page views, referrer, UTM parameters) to measure marketing effectiveness.
03On-Device vs. External Processing
This is the most important section of this policy.
What stays on your Fammai device (always):
- All video and audio streams from cameras you connect to Fammai
- All recorded footage stored on the device's local NVMe storage
- All AI inference output — scene descriptions, alert reasoning, Daily Brief text
- All Ask-Fammai conversation history and the local index Fammai builds about your home
- All connected camera credentials, network identifiers, and discovery metadata
- All user-defined rules, schedules, privacy zones, and approval gates
What is sent outside the device (only in these specific cases):
- Push notifications you authorize: If you enable mobile push for alerts, only a short text summary (e.g., "front door opened") and a wake signal are routed through the platform's push service (Apple APNs / Google FCM). No video, no images.
- Firmware and model updates: The device periodically checks for updates. Only version numbers and hardware identifiers are transmitted — no home data.
- Optional cloud routing (Bring Your Own Key): If you explicitly enable routing to a cloud LLM (Anthropic, OpenAI, Google, or another provider), only the specific text query you choose to route is sent, using your API key. We are not in the loop, and we do not see the query or the response. This is off by default.
- Remote access you turn on: If you enable remote viewing while away from home, an end-to-end encrypted relay carries the stream between your device and your phone. We cannot decrypt the stream.
What is never sent anywhere:
- Your raw camera streams or recorded footage
- Stills, thumbnails, or AI-generated descriptions of your home
- Your Daily Brief content, Ask-Fammai history, or local index
- Faces or biometric identifiers — Fammai does not perform facial recognition, by permanent commitment
04AI Data Processing & Model Training
We do not use your home's data to train AI models. Your video, audio, recordings, and on-device AI output are yours. They are stored locally on your Fammai device and are not accessible to us.
If you explicitly enable optional cloud routing using your own API key, that provider's own data policies apply to the text you choose to route. We select default-supported providers whose API terms state they do not train on API inputs by default (Anthropic, OpenAI API). You can review each provider's data policy in your device dashboard before enabling routing.
05How We Use Your Information
We use the limited data we collect to:
- Process reservations, orders, account management, and customer support
- Deliver firmware and on-device model updates (over-the-air) and security patches
- Improve product performance based on aggregate, anonymized telemetry (if you opt in)
- Send product updates and security notifications (you can opt out of non-critical communications)
- Comply with legal obligations
06How We Share Your Information
We do not sell your personal data. We never have and never will.
We share data only with:
- Payment processors: To process reservations and purchases (Stripe)
- Shipping and fulfillment partners: Name and shipping address only, for device delivery
- Cloud model providers (if you opt in, with your own API key): Only the specific text query you route, only when you've enabled routing, only to the provider you've configured
- Hosting and infrastructure: For the Fammai website and account management (not device data)
- Legal compliance: If required by law, subpoena, or court order
07Data Retention & Deletion
On-device data: Stored on your device until you delete it or until the rolling-storage window overwrites it. You have full control. Factory reset erases everything.
Account data: Retained while your account is active. Upon account deletion, we remove your data within 30 days, except where legal retention is required (tax, warranty records).
Telemetry data: Anonymized and aggregated. Individual device telemetry is not retained beyond 90 days.
08Data Security
Your Fammai device encrypts stored footage at rest. All network communications use TLS 1.3. The device is on your network, behind your firewall, under your physical control. We cannot remotely access your device or its contents — not for support, not for diagnostics, not for any reason. There is no Fammai-operated server that holds your video.
09Children's Privacy
Fammai is a household device intended for adult purchase and configuration. We do not knowingly collect personal information from children under 13 through our website or services. Children may appear in cameras connected to a Fammai device; that footage stays on the device and is not transmitted to us. Account holders are responsible for the configuration and use of their device, including any privacy zones for sensitive rooms.
10Your Rights
Depending on your jurisdiction, you may have the right to:
- Access, correct, or delete your personal data we hold about you
- Export your data in a portable format
- Opt out of telemetry collection
- Withdraw consent for non-essential data processing
- Lodge a complaint with your local data protection authority
11U.S. State Privacy Rights
If you are a California resident (CCPA/CPRA), you have additional rights including the right to know what data we collect, request deletion, and opt out of data sales. We do not sell personal data. For requests, email privacy@fammai.com.
12EEA/UK Rights (GDPR)
If you are in the EEA or UK, our legal bases for processing are: contract performance (order fulfillment), legitimate interest (product improvement via anonymized telemetry), and consent (marketing communications). You may contact our Data Protection Officer at dpo@fammai.com.
13International Data Transfers
Your device data stays on your device — no international transfer. Account and website data may be processed in the United States. We use Standard Contractual Clauses where required for cross-border transfers.
14Changes to This Policy
We will notify you of material changes via email and a prominent notice on our website at least 30 days before they take effect.
15Contact
All inquiries: hello@fammai.com