1. Information covered by this policy
Information you provide
- Account and profile details, such as your name, email address, authentication information, timezone, and settings, when the app becomes available.
- Personal gifting profiles you create about people in your life, including names, relationship details, birthdays and occasions, preferences, interests, items best avoided, notes, gift ideas, gift history, and optional photographs.
- Your own “My DARO” profile and any fields you deliberately choose to share.
- Messages you send to Éléonore, DARO’s AI concierge, and the recommendations associated with those conversations.
- Information you send when you contact us or request updates.
Information generated through use
The service may generate records needed to provide its features, such as gift status history, reminder settings, saved ideas, shared-profile import records, conversation records, and limited operational or security metadata. The current architecture records AI usage metadata such as model outcome, token counts, latency, attempts, and estimated cost; it is designed not to place message content in those usage logs.
Website and infrastructure information
Our hosting and infrastructure providers may process standard technical request information needed to deliver, protect, and troubleshoot the service. We do not currently claim that advertising cookies, affiliate tracking, or live affiliate partnerships are active. If those practices change, we will update this policy and provide notices or choices required by law.
2. Information about gift recipients
DARO lets a user record information about another person who may not have a DARO account. The user who creates that profile is responsible for entering information lawfully and respectfully, limiting it to what is appropriate for thoughtful gifting, and honoring the recipient’s privacy. Recipient profiles are user-owned records; they are not public by default.
If someone believes DARO contains information about them, they may contact us. We may need to verify the request and the relationship to the account that supplied the information. Legal rights and our ability to act may depend on the circumstances.
3. How we use information
- Provide and personalize DARO’s relationship, occasion, reminder, gifting, journal, sharing, and account features.
- Generate and save AI-assisted gift ideas at the user’s direction.
- Maintain security, prevent abuse, enforce limits, diagnose failures, and improve reliability.
- Respond to support, privacy, or legal requests.
- Operate future product discovery and affiliate-link features as described below.
4. Éléonore and third-party AI processing
When you ask Éléonore about a person, DARO sends a third-party AI provider the conversation context and a limited context block for the one recipient in focus. Under the current architecture, that context may include the recipient’s name, relationship, inner-circle status, likes, items best avoided, up to 500 characters of private notes, relevant occasions, gift ideas and prior gifts, the date in your timezone, and recent exchanges in that conversation.
The current architecture is designed not to send recipient portraits or photo paths, account email addresses, user or account identifiers, unrelated recipient profiles, unrelated conversations, or authentication secrets in that AI request. AI output may be inaccurate or unsuitable; review it before relying on it.
5. Optional sharing
Sharing is off by default. If enabled in the app, you select which eligible fields from your own profile appear through a share link. Birth years, internal identifiers, private notes, gift history, conversations, and recipient records are not part of the public view under the current architecture. A separately selected photo may be shared only while the link and photo permission remain active.
You can stop sharing or rotate the link to prevent future access through earlier links. Revocation is not retroactive: someone may already have seen, saved, or copied shared information. If another DARO user imports a shared profile, that import is a one-time copy in the importer’s account; later edits, link rotation, or stopping sharing do not automatically update or delete the imported copy.
6. Affiliates and retailer links
DARO may in the future use affiliate links. If activated, we may receive a commission when you follow a qualifying link and complete a purchase. The planned architecture may record limited click data, such as product, provider, retailer, link type, surface, timestamp, and an opaque non-personal reference for attribution. It is designed not to send recipient profile data to the retailer or affiliate network for that click. Retailers and affiliate networks process information under their own policies.
7. Disclosures and service providers
We may disclose information to vendors that help us host, secure, support, analyze, or operate DARO, and to an AI provider when you use Éléonore. We may also disclose information when reasonably necessary to comply with law, protect rights or safety, investigate abuse, or complete a business transaction subject to appropriate protections. We do not list specific subprocessors here because the production vendor list is not yet final.
8. Retention and deletion
We retain information for as long as reasonably needed to provide the service, maintain security, resolve disputes, comply with law, and enforce agreements. Fixed retention periods have not yet been finalized.
The current app architecture includes permanent deletion of individual recipient profiles and an account-deletion flow. Account deletion is designed to erase user-owned collections, portraits, refresh tokens, and active share links. Some information may need to be retained where required by law or for legitimate security and dispute-resolution purposes. Deleting or revoking your copy does not erase information another user previously imported or independently recorded.
9. Security
We use administrative and technical safeguards appropriate to the service’s design, including account-scoped access controls and protected storage for authentication credentials. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.
10. Your choices and privacy rights
You may update app profile information, manage reminder and sharing settings, delete eligible records, stop or rotate sharing, and request account deletion through available controls. You may also contact us to ask about access, correction, deletion, or another privacy concern.
Depending on where you live and whether a particular law applies to Rendeavored and the processing at issue, you may have rights to know or access, correct, delete, or obtain a copy of personal information; opt out of certain sale, sharing, targeted advertising, or profiling; limit certain uses of sensitive information; and appeal a denied request. We will not discriminate against you for exercising applicable rights. We may verify requests and apply legal exceptions. DARO does not currently represent that it sells or shares personal information as those terms are defined by California law.
11. United States service and policy changes
DARO is currently intended for the United States. If information is processed in another jurisdiction by a service provider, applicable contractual and legal protections will be used as required. We may update this policy as the service, vendors, or law changes. We will post the revised date and provide additional notice when required.
12. Contact
Rendeavored Group, LLC operates DARO / Gifts by DARO. Use our contact route for privacy questions or requests. Please do not include passwords or highly sensitive information in ordinary email.
