Last updated: May 25, 2025

Privacy Policy

RoomsAI is committed to protecting your privacy. This policy explains what data we collect, how we use it, and your rights as a user.

1. Information We Collect

We collect information to provide and improve RoomsAI's smart home control and AI design features. Types of information collected include:

Account Information
Name, email address, and password when you create a RoomsAI account. You may sign in with Apple or Google, in which case we receive limited profile information from those providers.
Device & Usage Data
Information about how you use the app, including features accessed, commands sent to smart home devices, and interaction patterns that help us improve AI responses.
Smart Home Device Data
Device names, states, and control history for connected smart home devices. This data is essential for providing voice and AI control features.

2. How We Use Information

Information collected is used solely to operate and improve RoomsAI. We use your data to:

  • Provide core app functionality including smart home control and AI design features
  • Personalize your experience based on device preferences and usage patterns
  • Process voice commands and natural language queries through our AI engine
  • Send important service notifications, security alerts, and product updates
  • Diagnose technical issues, improve performance, and fix bugs
  • Comply with legal obligations and enforce our Terms of Service

We do not sell your personal information to third parties. We do not use your data for advertising targeting.

3. Data Storage & Security

Your data is stored on secure servers with industry-standard encryption. We implement multiple layers of protection:

AES-256 Encryption
All data at rest encrypted with AES-256
TLS 1.3 in Transit
All data transfers use TLS 1.3 protocol
SOC 2 Infrastructure
Hosted on SOC 2 certified cloud infrastructure
Access Controls
Strict role-based access to production data

Data is retained for the duration of your account plus 90 days after deletion, unless required longer by law.

4. Smart Home Device Data

RoomsAI integrates with smart home platforms to enable natural language control. When you connect a smart home platform:

  • We store device names, room assignments, and current states to enable control
  • Command history is retained for 30 days to improve AI responses and enable undo functionality
  • Device credentials and OAuth tokens are encrypted and stored separately from device data
  • We request only the minimum permissions necessary to control your devices
  • You can disconnect any integration at any time from Settings to Integrations

Device data is never shared with third parties and is used exclusively to power RoomsAI features.

5. Third-Party Services

RoomsAI uses select third-party services to power certain features. Each has been evaluated for privacy compliance:

AI Processing
Natural language commands and requests are processed via cloud AI APIs or local AI models. Queries are not stored beyond processing. We use data minimization - only what is needed is sent.
Coming Soon - Smart Home Platforms
Platforms like Sonos, HomeKit, SmartThings, Tuya and Philips Hue are accessed via official APIs with OAuth authentication. Their own privacy policies govern data on their platforms.
Analytics
We use privacy-focused analytics to understand feature usage. This data is aggregated and anonymized. No personally identifiable information is included.
Crash Reporting
Crash reports help us identify and fix bugs. Reports include device model, OS version, and stack traces. No personal data or room photos are included.

6. Apple & iOS Permissions

RoomsAI requests only the permissions it needs. Here is exactly what each permission is used for:

Camera
Used to capture room photos for AI design analysis. Photos are only processed when you explicitly request a design suggestion.
Photo Library
Allows selecting existing room photos for design analysis. Access is read-only and limited to photos you select.
Microphone
Used for voice commands to control smart home devices. Audio is processed and not stored after the command is executed.
Notifications
Used to send automation alerts, device state changes, and important service notifications. Manageable in iOS Settings.
HomeKit
Required to read and control your HomeKit devices. Data stays on your device and iCloud - we access it only to execute commands you send.
Local Network
Enables discovery and control of local smart home devices on your Wi-Fi network. No data leaves your local network for local control.

7. Account Information

Your RoomsAI account information is protected and under your control:

  • Passwords are hashed using bcrypt - we cannot read your password
  • Sign in with Apple uses Apple's privacy relay - we may receive a private relay email address
  • Account data can be exported at any time from Settings, Account, Export Data
  • You can delete your account and all associated data from Settings, Account, Delete Account
  • Account deletion is permanent and completed within 30 days, with a confirmation email sent

8. Cookies & Analytics

Our website (roomsai.ai) uses minimal cookies. Our iOS app does not use browser cookies.

Essential Cookies
Required for the website to function, including session management and security tokens. These cannot be disabled without affecting site functionality.
Analytics Cookies
Used to understand how visitors use our website. Data is aggregated and anonymized. You can opt out by adjusting your browser cookie settings.

We do not use advertising cookies or cross-site tracking technologies.

9. Your Rights

Depending on your location, you may have the following rights regarding your personal data:

Access
Request a copy of all personal data we hold about you
Correction
Request correction of inaccurate or incomplete data
Deletion
Request deletion of your data, right to be forgotten
Portability
Receive your data in a structured, machine-readable format
Restriction
Limit processing of your data in certain circumstances
Objection
Object to processing based on legitimate interests

To exercise any of these rights, contact us at info@aicorpinc.ai. We respond to all requests within 30 days.

10. Contact Us

For privacy-related questions, data requests, or concerns about this policy:

Response TimeWithin 30 days for all data requests

11. Policy Updates

We may update this Privacy Policy to reflect changes in our practices, technology, or legal requirements. When we make material changes:

  • We update the Last updated date at the top of this page
  • We notify users via in-app notification and email for significant changes
  • We provide a summary of what changed for full transparency
  • Continued use of RoomsAI after notification constitutes acceptance of the updated policy

We encourage you to review this policy periodically. Previous versions are available upon request.