1. Introduction
This Privacy Policy explains how Gurwi LLC (“Clatri”, “we”, “us”) collects, uses, shares, and protects your information when you use the Clatri apps (iOS, iPadOS, Android, macOS, and web) and related services (the “Service”).
Clatri is an agentic AI assistant for money, health, and personal productivity. You talk or type; the assistant can record transactions, manage tasks, track health, and act on your data. Because that information is sensitive, we describe below what we collect, how we collect it, how we use it, who receives it, and what you can control.
By creating an account or using the Service, you agree to this Policy. If you do not agree, do not use the Service.
2. Information We Collect
2.1 Information you provide
- Account information: name, email address, and authentication data through Google Sign-In or Sign in with Apple.
- Profile and onboarding: country, currencies, whether you have a business, tax identifiers you choose to enter, and how you heard about Clatri.
- Financial data: accounts, cards, income, expenses, balances, budgets, debts, savings, investments, and related documents (receipts, invoices, statements).
- Health data: conditions, episodes, medications, prescriptions, body metrics, menstrual-cycle data, medical events, and medical documents you choose to record.
- Personal and work content: tasks, habits, calendar events, notes, spaces, pages, boards, trips, bookmarks, and contacts.
- Media: photos, PDFs, other files, and voice messages you upload or record.
- Chat content: the text of your messages and our replies, including conversation history needed to continue a thread.
2.2 Information collected automatically
- Device information: device type, operating system, language, and identifiers such as an installation or app-instance ID.
- Usage and diagnostics: features used, performance metrics, crash logs, and error reports.
- Push tokens: a device token so we can send notifications you enable (medication reminders, tasks, payments).
- Attribution: if you allow tracking on iOS, or on other platforms as permitted, we may receive campaign and install attribution data.
2.3 Information from services you connect
Only after you take an explicit action in the app:
- Bank connections (Plaid): if you connect a supported bank in the United States or Canada, Plaid Inc. (“Plaid”) collects your bank login in Plaid’s own interface. Clatri never sees or stores your bank password. Plaid then delivers account identifiers, balances, and transactions to Clatri so we can keep your records current. You can disconnect at any time. If you delete your Clatri account, bank connections are disconnected.
- Payments: Apple, Google, and RevenueCat process subscription and credit-pack purchases. We receive entitlement and transaction status, not your full card number.
- MCP / API tokens: if you create a token so an external assistant (for example Claude Desktop, ChatGPT, or Cursor) can call Clatri, that assistant receives the data and permissions you grant. You can revoke a token at any time in Settings.
3. How We Use Your Information
- Provide the Service: store your records, show dashboards, sync across your devices, and run the assistant so it can answer and act.
- AI processing: send the subset of data needed for a request to the AI providers listed in Section 6 so they can generate a response or extract information from a file or recording.
- Connected banks: import and update transactions and balances you authorized through Plaid, which is available only for supported banks in the United States and Canada.
- Notifications: send reminders and alerts you configure.
- Payments: deliver the subscription or credits you bought and restore purchases.
- Security and reliability: authenticate you, enforce access rules, debug crashes, and prevent abuse.
- Improvement: aggregated or anonymized usage statistics to improve the product. We do not sell your personal data.
- Support: respond when you contact us.
- Legal: comply with law or protect rights when required.
4. How We Protect Your Information
Security in Clatri is layered. Not every field is encrypted the same way:
- Transport: connections use TLS/HTTPS.
- Access control: PostgreSQL Row Level Security (RLS) restricts each row to you and people you have explicitly shared an entity with.
- Private storage: files live in a private bucket. Encrypted files are never given a public URL.
- Disk encryption: database and backups sit on encrypted infrastructure.
- System encryption: sensitive financial, health, and administration fields and files are encrypted at rest with AES-256-GCM using a key managed by our backend, so a copy of the database alone is not readable in plaintext.
- Optional user encryption: you may add a personal encryption password in Settings. When enabled, the most sensitive health data is wrapped with a key derived from that password (Argon2id) plus system encryption. We do not store the password or the derived key. If you reset that password without the old one, data protected only by the old key cannot be recovered. This layer is optional; onboarding does not require it.
- Local protection: optional app lock (Face ID, Touch ID, biometrics, or device passcode) and OS secure storage for secrets on the device.
- Optional 2FA: TOTP from Settings → Security.
Encryption protects data at rest. To answer a chat question or process a document, our servers decrypt the subset needed for that request and may send it to an AI provider as described in Section 6. No method of transmission or storage is 100% secure.
5. Administrative Access
Authorized Clatri personnel may access account metadata, logs, and—where technically available—user content to operate the Service, fix bugs, handle support, and produce aggregated statistics. Access is limited to people who need it.
Administrative access does not mean we sell your data. If you have enabled user encryption, we cannot read that protected health content without the key derived from your encryption password. System-encrypted data can be decrypted by the backend in order to provide the Service (including the assistant).
6. AI Processing and Third-Party AI Services
Clatri’s chat, voice input, document reading, and similar features are powered by third-party artificial intelligence APIs. This is sharing of personal data. It happens when you use those features, not merely because the app is installed.
6.1 What data may be sent
Depending on what you do, we may transmit:
- Your messages and the relevant conversation history.
- Voice recordings for speech-to-text, then the resulting text for the assistant.
- Images and documents you upload (receipts, statements, medical files, photos of pills, and similar).
- Entity context the assistant needs to act: for example account names, recent transactions, task titles, or health metrics you asked about.
We send the subset required for that request, not a dump of your entire account on every message. Your full records remain stored in our infrastructure (Supabase).
6.2 Who receives it
Depending on the feature and model in use, data may be processed by:
- OpenAI, LLC — language models and Whisper speech-to-text.
- Anthropic, PBC — Claude language models.
- Google LLC — Gemini language models.
- Hangzhou DeepSeek Artificial Intelligence Co., Ltd. (DeepSeek) — language models.
- Perplexity AI, Inc. — web search used when the assistant looks up public information.
We may change models or add a provider that offers equivalent API processing. We will update this Policy when the list of companies changes in a material way.
6.3 How it is collected, sent, and used
- Collection: when you send a chat message, record voice, upload a file, or ask the assistant to use your records.
- Transmission: from our servers to the provider over encrypted connections (API calls, not consumer ChatGPT / Claude.ai / Gemini App accounts).
- Use by the provider: to return a transcription, extraction, or model output for that request.
- Use by Clatri: to show you the answer and, if you asked, to create or update records in your account.
6.4 Training, retention, and equal protection
We do not sell your content. We do not use your chats, files, or records to train Clatri’s own models. We use API access and we do not opt in to provider programs that train foundation models on customer API data. Providers process the request in order to return a result under their API terms. Those terms are the basis on which we consider they provide protection comparable to this Policy for that processing. Residual logs or short-lived abuse monitoring on the provider side, if any, are governed by that provider’s policy.
6.5 Your permission
Before personal data is sent to a third-party AI service for a request, we rely on the following:
- You accept this Privacy Policy and the Terms of Service when you create an account.
- You choose to use chat, voice, document analysis, or another AI-powered action. Sending that content is your permission to share it with the providers in Section 6.2 for that request.
- If you do not want this sharing, do not use those features. Dashboards and manual entry that do not call the assistant can still be used.
You can stop AI processing at any time by not sending further messages, voice, or files to the assistant. Features that require a model will not work without this processing. This Policy explains the sharing; using an AI feature is the permission to carry it out for that request.
7. Other Sharing
We do not sell your personal information. We share data only as follows:
- AI providers: Section 6.
- Plaid Inc.: only if you connect a supported bank in the United States or Canada, as described in Section 2.3. Plaid is not used for banks in other countries.
- Supabase (infrastructure): database, auth, and file storage, with RLS and encryption as described above.
- RevenueCat, Apple, and Google: subscriptions, credit packs, and restore-purchase status.
- Google and Apple: Sign-In.
- Firebase (Google): crash reporting (Crashlytics) and push delivery (Cloud Messaging).
- Airbridge: install and campaign attribution, including device identifiers where allowed (on iOS, after App Tracking Transparency if you permit tracking).
- People you invite: when you share an entity, they see the content of that entity according to the permission you grant.
- Assistants you authorize: MCP/API tokens you create.
- Legal and business transfers: if required by law, or in a merger or sale of assets, with notice where the law requires it.
8. Retention and Deletion
We keep your data while your account is active and as needed to provide the Service. In Settings you can export data (Excel / ZIP) and delete your account. Account deletion removes your personal data from our systems, except where the law requires a limited retention (for example tax or dispute records) or where backups expire on a rolling cycle. Bank connections via Plaid (United States and Canada only) are disconnected when the account is deleted.
9. Experimental Nature
Clatri is under active development. The assistant can make mistakes, the Service can have downtime, and data loss is possible despite our safeguards. We work to prevent that and to communicate material incidents.
10. Your Rights
Depending on where you live, you may have the right to access, correct, delete, export, restrict, or object to certain processing. You can export and delete from Settings. For other requests, email contacto@gurwi.com.
11. Device Permissions
- Camera: photos of documents, receipts, or pills.
- Microphone: voice messages to the assistant.
- Photo library: images you choose to upload.
- Notifications: reminders you enable.
- Tracking (iOS): only if you allow it, for attribution.
You can revoke permissions in system settings. Some features will stop working.
12. Children
Clatri is not directed at children under 13. We do not knowingly collect personal information from children under 13. If we learn that we have, we will delete it.
13. International Transfers
Gurwi LLC operates the Service and uses processors that may be located in the United States and other countries. Your information may be processed outside your country. We use contractual and technical safeguards described in this Policy.
14. Changes
We may update this Policy. We will change the “Last updated” date and, for material changes, notify you in the app or by email. Continued use after the effective date means you accept the updated Policy.
15. Contact
- Controller: Gurwi LLC
- Email: contacto@gurwi.com
- Website: https://clatri.com
- This Policy: https://clatri.com/privacy