Data Policy

Last updated: July 12, 2026

This Data Policy describes what Carakin stores for Android and web, where it lives, and how to export or delete it. Read this before deleting a family.

Same vault on Android and web

Signed-in Android and web clients use the same encrypted family vault. Approve a new device or browser before it can unlock care content. Push reminders are Android-only; schedules and documents are available on both.

What is stored

• Encrypted care entries (check-ins, metrics, medications, appointments, tasks, responses).
• Encrypted document files and profile photos.
• Family metadata (names, roles, membership, invites, join requests).
• Wrapped family encryption keys, device wraps, and optional recovery backups.
• Push notification tokens for Android reminder delivery.
• Subscription / trial status for Family Premium.
• On-device caches (charts, family selection) that expire or clear on deletion.

What is not stored in readable form

Carakin does not store your family decryption key on our servers in plain text. Cloud operators and Carakin staff cannot read encrypted care payloads without a key from an unlocked device in your family.

Document storage limits

Family document libraries have size limits on Free and Premium (total library and per-file caps). Limits exist to prevent abuse of cloud storage. Existing files are not deleted if you exceed a Free cap after a trial or downgrade; new uploads may be blocked until you free space. See pricing for current caps.

How to delete all family data

Only a family admin can delete a family.

On Android: Family settings → Danger zone → Start family deletion.
On web: Settings → delete family flow.

Complete every confirmation step (including typing the family name and DELETE where prompted). This removes cloud family data, encrypted storage files, recovery wraps, invites, and join requests. Local encryption keys on the deleting device are cleared.

After family deletion

Your sign-in account (Google, Apple, Microsoft, or email) is separate from family data. If you no longer want any Carakin account activity, sign out and delete or unlink the account with your identity provider, or contact support@carakin.com for account removal assistance.

Exports

Family admins can export decrypted care data from an unlocked device:

Android: Family settings → Legal & privacy → Export family data
Web: Settings → Export family data

The download is a ZIP of separate plaintext JSON files (members, profiles, medications, appointments, tasks, check-ins, health metrics, task responses, and a documents catalog). Document and photo binary files are not included in the ZIP; download those one-by-one from Documents. Export leaves end-to-end encryption once the files are saved outside Carakin. Before deleting a family, export anything you need. Deletion cannot be undone.

Crash reporting and product analytics

When crash reporting is enabled, stack traces and app version metadata may be sent to Firebase Crashlytics to help fix bugs. These reports do not include decrypted health content.

Product usage analytics (screen or page views, feature actions such as saving a care item by type, and basic error codes) may be sent to Google Analytics / Firebase Analytics on Android and the signed-in web app. Analytics events do not include medication names, notes, documents, or other care content.

On marketing pages at carakin.com, Google Analytics runs only if you accept cookies. See the Privacy Policy.