Family Agent Privacy Policy
Last Updated: August 27, 2026
Effective Date: August 27, 2026
Family Agent is operated by Family Agent LLC, a limited liability company based in Montgomery, Texas (“Family Agent,” “we,” “us,” or “our”).
This Privacy Policy explains how we collect, use, disclose, retain,
and protect personal information when you visit
myfamilyagent.io, join our waitlist, communicate with us,
or use the Family Agent websites, dashboards, SMS/MMS services, voice
features, integrations, and related products and services (collectively,
the “Service”).
Please also review our Consumer Health Data Privacy Notice, Terms of Service, and SMS Terms. Where required by law, we ask for separate affirmative consent before collecting consumer health data and separate affirmative consent before sharing it.
1. Important Information About the Shared Family Record
Family Agent is designed as a shared family-coordination service. It is not a private messaging channel between an individual and the Family Agent AI.
When a parent or other primary adult using the Service (the “Primary Adult”) authorizes adult family members or other trusted adults, each authorized person may access all information that Family Agent intentionally retains about the Primary Adult in the shared family record (the “Family Record”). This may include health and wellness information, symptoms, medication-related information, appointments, routines, needs, concerns, preferences, requests, schedules, reminders, family updates, AI-generated summaries, and follow-up items.
The Service currently does not provide per-item selective privacy within the Family Record. A user should not submit information about the Primary Adult to Family Agent with an expectation that it will remain hidden from another person who has active, authorized access to that Family Record.
The Family Coordinator has administrative authority to manage people, schedules, rules, and settings, subject to the Primary Adult’s authorization and our access rules. The Family Coordinator does not receive broader access to retained content merely because of that administrative role.
Raw SMS, MMS, voice, and other communications may be processed and temporarily retained to operate, secure, troubleshoot, and improve the Service. Family Agent is designed to preserve substantive details in the Family Record and then delete or redact routine raw message content under our retention schedule. The dashboard may therefore show organized information and summaries rather than a permanent, word-for-word transcript of every communication. Routine raw-message content is generally scheduled for deletion or redaction within 30 days, unless longer retention is reasonably necessary for security, fraud prevention, support, dispute resolution, legal compliance, preservation requested by the user, or another lawful purpose.
The Primary Adult must be told who will have access before authorization is activated. Access is authenticated, logged, and revocable as described below.
2. Personal Information We Collect
Depending on how you interact with the Service, we may collect the following categories of information.
A. Identity, Contact, and Account Information
This includes names, email addresses, telephone numbers, mailing addresses, account identifiers, login credentials, authentication information, profile details, and communication preferences.
B. Family, Relationship, Role, and Authorization Information
This includes family or caregiving relationships, the identity of the Primary Adult, invited and authorized users, Family Coordinator designation, permissions, consent and authorization records, legal-representative status, revocations, access history, and audit logs.
C. Communications and Family Record Content
This includes SMS and MMS messages, uploaded images and documents, voice messages, call recordings or transcripts when enabled and consented to, support communications, requests, reminders, schedules, notes, family stories, memories, preferences, concerns, tasks, summaries, and other content submitted to or generated through the Service.
D. Health, Wellness, and Other Sensitive Information
This may include symptoms, diagnoses disclosed by a user, medication names and schedules, adherence information, appointments, health measurements, mobility information, sleep, nutrition, mood, cognitive or functional observations, caregiver notes, health-related images or documents, patient-portal information, and other information that may reveal a person’s physical or mental health condition.
It may also include other sensitive information a user chooses to submit, such as religious beliefs, precise location, financial details related to family coordination, or information about disability or vulnerability. We collect sensitive information only as reasonably necessary to provide requested features, with consent where required, or as otherwise permitted by law.
E. Connected Account and Integration Information
When a user connects a calendar, patient portal, wearable, email account, pharmacy, transportation service, grocery service, or another third-party service, we may receive account identifiers, authorization tokens, records, events, and other data the user directs the third party to make available. The available information depends on the integration and the permissions granted.
F. Device, Network, and Usage Information
This may include IP address, browser type, device type, operating system, mobile carrier, device identifiers, approximate location derived from IP address, pages viewed, links clicked, session information, timestamps, referral source, message delivery status, crash data, and security logs.
G. Transaction Information
If you purchase a subscription or paid feature, we and our payment processor may collect billing contact information, subscription status, transaction identifiers, payment method type, and limited payment information. We do not ordinarily store full payment-card numbers.
H. Inferences and AI-Generated Information
The Service may organize information, identify possible patterns, generate reminders or summaries, and infer preferences, routines, relationships, or follow-up needs from information submitted to the Service. AI-generated information can be incomplete or inaccurate and should be reviewed in context.
3. Sources of Information
We may collect information:
- directly from you;
- from the Primary Adult, Family Coordinator, authorized family members, and other people who communicate with the Service;
- from devices, browsers, mobile carriers, and messaging platforms;
- from service providers and business partners;
- from connected accounts and integrations you authorize;
- from public sources when permitted by law; and
- through cookies, local storage, logs, and similar technologies.
A person who submits information about someone else must have the authority or permission reasonably required to do so. No one may enroll a competent adult, share that adult’s sensitive information, or authorize access to that adult’s Family Record without the adult’s informed consent, unless the person has verified legal authority to act on the adult’s behalf.
4. How We Use Personal Information
We may use personal information to:
- create, administer, authenticate, and secure accounts;
- operate the shared Family Record and apply family roles and permissions;
- deliver check-ins, reminders, summaries, requested messages, family updates, and other Service features;
- process and respond to SMS, MMS, voice, dashboard, and support communications;
- connect and maintain user-authorized integrations;
- personalize the Service based on disclosed routines, preferences, and family rules;
- generate AI-assisted responses, summaries, pattern notices, and suggested follow-ups;
- process payments and administer subscriptions;
- communicate about the Service, account changes, safety, security, and support;
- send marketing communications where permitted and separately consented to when required;
- understand usage, troubleshoot problems, test features, and improve reliability;
- detect, investigate, prevent, and respond to fraud, abuse, security incidents, unauthorized access, or violations of our Terms;
- comply with law, enforce agreements, protect rights and safety, and respond to lawful requests; and
- create aggregated or deidentified information that cannot reasonably be linked to a person or household.
We do not use personal information to make decisions that produce legal or similarly significant effects concerning employment, housing, credit, insurance, education, or access to essential services.
5. Artificial Intelligence Processing
Family Agent uses artificial intelligence and automated systems to understand communications, retrieve relevant Family Record information, generate responses and summaries, identify possible patterns, and assist with coordination. Users are interacting with an AI-assisted system unless we clearly state that a human is responding.
AI output may be inaccurate, incomplete, delayed, or inappropriate for a particular situation. Family Agent does not diagnose, prescribe, provide medical advice, replace a caregiver, or guarantee that it will recognize or escalate an urgent condition.
Our policy is not to use Family Record content to train a publicly available or general-purpose AI model without a separate, express opt-in. We select and configure AI processors and other service providers to process Family Record content for providing the Service and related security, reliability, or abuse-prevention purposes, subject to applicable provider terms, contracts, and our instructions. We evaluate production AI routes before enabling them and may change providers over time.
We may use deidentified or aggregated information to evaluate and improve the Service, provided we take reasonable measures to prevent reidentification and do not attempt to reidentify it.
6. How We Disclose Personal Information
We may disclose personal information in the following circumstances.
A. To Authorized Family Members
We disclose retained Family Record information to each adult family member or trusted adult who has active authorization for that Family Record. As explained above, authorized users receive full visibility into information intentionally retained about the Primary Adult; per-item visibility controls are not currently offered.
B. To Service Providers and Processors
We may disclose information to vendors that provide hosting, databases, authentication, communications, AI inference, integrations, payments, analytics, customer support, security, logging, document processing, and similar services. These providers may process information only for the contracted purpose and subject to applicable restrictions.
C. To Connected Services at Your Direction
When a user connects or instructs us to communicate with a calendar, patient portal, wearable, transportation service, retailer, clinician, pharmacy, family member, or other third party, we may disclose information as necessary to complete that request.
D. For Legal, Safety, and Protective Purposes
We may disclose information when we reasonably believe disclosure is necessary to comply with law or legal process; protect a person from death, serious bodily harm, abuse, neglect, or exploitation; report suspected abuse, neglect, or financial exploitation of an elderly or disabled person where required or permitted; investigate fraud or security incidents; enforce our agreements; or protect the rights, property, and safety of Family Agent, our users, or others.
E. In a Business Transaction
We may disclose information in connection with a merger, acquisition, financing, reorganization, bankruptcy, sale of assets, or similar transaction. Any recipient remains subject to this Privacy Policy unless users receive legally required notice of a change.
F. With Consent
We may disclose information for another purpose when the person whose information is involved gives valid consent or a verified legal representative authorizes the disclosure.
7. No Sale of Personal or Consumer Health Data
We do not sell personal information or consumer health data for money or other valuable consideration. We do not share Family Record or consumer health data for cross-context behavioral or targeted advertising. We do not permit data brokers to use Family Record information.
If our practices change, we will update this Policy, provide legally required notice, and obtain consent before selling consumer health data.
8. SMS, MMS, Voice, and Call Information
The Service may communicate through recurring automated or manually initiated text messages. Message frequency varies. Message and data rates may apply. Additional details, including instructions to opt out, appear in our SMS Terms.
Replying STOP to an applicable messaging program
withdraws consent for future messages from that program. We may send one
confirmation message. Users can reply HELP for help. A user
may also contact us at support@myfamilyagent.io.
Stopping operational messages may prevent important features from
functioning.
If we record or transcribe a call, we will provide notice and obtain consent when required before recording begins. We do not currently create or use a voiceprint or other biometric identifier to uniquely identify a person. If that changes, we will provide a separate biometric notice and obtain any legally required consent before capture or use.
9. Consumer Health Data
Some information processed by the Service may qualify as “consumer health data” under state law even when it is not protected by the federal Health Insurance Portability and Accountability Act (“HIPAA”). Family Agent is a consumer family-coordination service and is not itself a health care provider, health plan, emergency service, or medical-records system. Users should not assume that every piece of information submitted to Family Agent is covered by HIPAA.
Our Consumer Health Data Privacy Notice describes the consumer health data we collect, how we use and share it, and the rights available to users. Where required, acceptance of this Privacy Policy or our Terms alone does not constitute consent to collect or share consumer health data. We use separate affirmative consent flows.
10. Cookies and Similar Technologies
We may use essential cookies, local storage, and similar technologies to keep users signed in, remember preferences, secure the Service, route traffic, and maintain functionality. We may also use limited analytics to understand site and product performance.
On our public website, we use Google Analytics and Vercel Analytics only after you choose Allow analytics. Google Analytics uses first-party cookies to measure visits, article engagement, and waitlist actions. We do not send form responses, names, email addresses, phone numbers, or Family Record contents to these analytics tools. We remove query strings and fragments from reported page URLs. Advertising personalization is disabled. You can decline or change your choice using Analytics preferences in the footer.
We do not use Family Record or consumer health data for targeted advertising. Browser controls can block some technologies, but doing so may impair the Service. Where required, we provide additional cookie choices before using nonessential technologies.
11. Data Retention
We retain personal information for only as long as reasonably necessary for the purposes described in this Policy, including to provide the Service, maintain a Family Record, comply with law, resolve disputes, prevent fraud, enforce agreements, and protect security.
Retention depends on the category and context:
- Waitlist and marketing information: until consent is withdrawn, the information is no longer needed, or applicable retention rules require deletion.
- Account and Family Record information: while the account is active. After account closure, Family Record information is generally scheduled for deletion or deidentification from active systems within 30 days, unless a verified deletion request requires earlier action or law permits or requires continued retention.
- Routine raw message content: generally scheduled for deletion or redaction within 30 days, subject to the exceptions described in Section 1. Photos, documents, and other attachments that are not intentionally retained as part of the Family Record generally follow the same schedule.
- Consent, authorization, access, transaction, security, dispute, and compliance records: we may retain limited records for as long as reasonably necessary to demonstrate consent and authorization, enforce agreements, prevent fraud, comply with law, and resolve disputes. Our working retention target for these limited records is up to seven years after the relevant account relationship ends, unless a shorter or longer period is required or permitted by law. We minimize sensitive content in these retained records where reasonably practicable.
- Billing and tax records: retained for the period reasonably necessary for accounting, tax, fraud-prevention, and legal obligations, with a working target of up to seven years where appropriate.
- Backups and archives: overwritten or deleted on a rolling schedule. A copy may persist temporarily after deletion from active systems. When applicable law sets a deadline for deletion from archived or backup systems, we will complete deletion within that required period. For qualifying requests under Washington consumer-health-data law, any permitted backup delay will not exceed six months after authentication of the deletion request.
When retention is no longer necessary, we delete, deidentify, or securely isolate the information. Deletion cannot undo information already viewed, copied, exported, or lawfully retained by an authorized family member or other recipient.
12. Security
We maintain administrative, technical, and organizational safeguards designed to protect personal information against unauthorized access, acquisition, disclosure, alteration, loss, and misuse. Depending on the feature and risk, safeguards may include encryption in transit and at rest where appropriate, authentication and access controls, role-based or least-privilege restrictions, logging and monitoring, secure development and deployment practices, vendor oversight, backup and recovery procedures, and incident-response processes. We review these safeguards as the Service changes.
No system is completely secure. Users are responsible for protecting account credentials, securing their devices, enabling required authentication controls, and promptly reporting suspected unauthorized access. SMS and ordinary email may not be end-to-end encrypted.
13. Privacy Rights and Choices
Subject to applicable law and verification, a person may request to:
- confirm whether we process their personal information and access that information;
- correct inaccurate personal information;
- delete personal information;
- obtain a portable copy of information they provided;
- withdraw consent, including consent for consumer health data processing or sharing;
- opt out of the sale of personal information, targeted advertising, or certain profiling;
- obtain a list of third parties or categories of third parties to which consumer health data was disclosed, where required; and
- appeal our decision on a privacy request.
We do not currently sell personal information, use Family Record information for targeted advertising, or engage in profiling that produces legal or similarly significant effects.
To submit a request, email support@myfamilyagent.io. Please describe the request and identify the account, telephone number, or email address involved. We may ask for information reasonably necessary to verify identity, authority, and the correct Family Record. We will not require a person to create a new account solely to submit a request.
An authorized agent may submit a request where permitted by law. We may require proof of the agent’s authority and may verify the request directly with the person concerned.
We ordinarily respond within 45 days. Where permitted, we may extend the response period once by another 45 days and will explain the reason. If we deny a request, we will explain why and describe the appeal process.
To appeal, email support@myfamilyagent.io with the subject line “Privacy Appeal” within 30 days after the decision. We will respond within the period required by applicable law. If an appeal is denied, we will provide information about how to contact the appropriate state regulator or attorney general.
We do not discriminate against a person for exercising a privacy right. Some requests may be limited by another person’s rights, legal obligations, security needs, or exceptions under applicable law. Deleting information needed to operate the Service may require closure or limitation of an account.
14. Revoking Family Access or Authorization
The Primary Adult may revoke an authorized person’s future access by using available account controls or contacting support@myfamilyagent.io. A verified legal representative may act where legally authorized. Revocation becomes effective after we verify and process it, subject to reasonable security measures.
Revocation stops future access through the Service but cannot erase information already seen, exported, copied, or separately retained by an authorized person. It also does not require deletion where retention is legally required or permitted for security, fraud prevention, disputes, or compliance.
The Family Coordinator may manage invitations and access as permitted by the Primary Adult’s authorization and Service settings, but may not override a valid revocation by the Primary Adult or verified legal representative.
15. Children
The Service is intended for adults age 18 and older and is not directed to children under 13. We do not knowingly allow a child under 13 to create an account or directly submit personal information.
Family Record content may incidentally mention or include information about children, such as family names, birthdays, photographs, or memories. A user who submits that information represents that they have the authority or permission required to do so. Contact support@myfamilyagent.io if you believe a child has directly provided information without appropriate consent.
16. U.S.-Based Service and Data Processing
The Service is currently intended for users in the United States. We and our service providers may process information in the United States and other locations where our providers operate, subject to contractual and legal safeguards. Do not use the Service outside the United States unless we have confirmed that it is available in that location.
17. Third-Party Sites and Services
The Service may link to or integrate with third-party services. Their privacy practices are governed by their own notices and agreements. We are not responsible for a third party’s independent practices. Review the permissions and privacy terms before connecting an account.
18. Changes to This Policy
We may update this Policy as the Service, law, or our practices change. We will post the revised Policy with a new “Last Updated” date. If a change materially affects how we use or share sensitive information, we will provide additional notice and obtain consent where required before applying the change.
19. Contact Us
Family Agent LLC
Montgomery, Texas, United States
Privacy and Support: support@myfamilyagent.io