Bennett
Home Product Try now

Privacy Policy

Last updated: July 9, 2026

The short version. Bennett collects the data it needs to run your household assistant: account details, household content such as calendars, lists and medication schedules, subscription status, and an audio stream while you use voice. We don't sell your data or share it with advertisers. OpenAI does not use Bennett's API inputs or outputs to train its models by default.

You can delete your account in Bennett's Settings or contact privacy@trybennett.com.

Who this covers

This policy covers the Bennett iOS app and trybennett.com. It applies to anyone who uses Bennett, including the household member talking to the device and any family members who share the household.

What we collect

Account information

When you sign up, we collect your email address. We use it to send you a one-time login code (we don't store passwords), to notify you about your account, and to contact you when you ask us to.

What you tell Bennett

Bennett is an assistant — its job is to remember things for you. We store the to-dos, grocery items, meal plans, calendar events, notes, and conversation memory your household creates. This data is scoped to your household and is not visible to other households.

Medication and wellness information

If your household uses medication features, we store the medication names, notes, schedules, and adherence states that household members enter. This is health-related information and we treat it as sensitive. Bennett does not connect to clinical health records, diagnose conditions, or provide medical treatment or emergency monitoring.

Voice

When you talk to Bennett, your microphone streams audio directly from your device to OpenAI's voice service over an encrypted connection. The audio does not pass through Bennett's servers. OpenAI returns transcripts and assistant responses, and Bennett's servers receive the text and tool requests needed to update your household. Quick-add dictation is transcribed on the device and is unavailable when on-device recognition is not supported.

Calendar (optional)

If you connect Google Calendar, we store an encrypted access token so Bennett can read and write events on the calendar you authorize. We only access the dedicated "Bennett (Household)" calendar Bennett creates, not your other calendars. You can disconnect at any time from Settings, which deletes the token.

Use of Google user data

Bennett's use and transfer of information received from Google APIs to any other app adheres to the Google API Services User Data Policy, including the Limited Use requirements. Specifically: we access only the dedicated "Bennett (Household)" calendar that Bennett creates; we use this data solely to provide calendar features inside the app; we do not transfer or sell it to third parties; we do not use it for advertising; and no humans read it except as necessary for security, to comply with the law, or where you have given your explicit consent.

Usage information

We log basic usage events server-side — when a request to Bennett happens, how long voice sessions last, which model handled the request — so we can monitor the service and track our own costs. These logs are tied to your account but don't contain conversation content.

Subscription information

Apple processes Bennett Monthly purchases. Bennett receives and stores transaction identifiers, product, subscription status, renewal status, and expiration dates so we can provide paid access. We do not receive your payment-card number.

What we don't collect

  • No advertising identifiers, no tracking pixels, no analytics SDKs.
  • No device location, contacts, photos, or browsing history.
  • No payment-card numbers, clinical health records, or biometric data.
  • No data from anyone under 13. Bennett is not designed or marketed for children.

Who else sees your data

We use a small number of trusted services to operate Bennett. Each one only receives what it needs to do its job, and we contractually require them to handle your data securely.

  • OpenAI — processes voice conversations and powers Bennett's assistant. OpenAI does not use API inputs or outputs to train its models by default. Its standard abuse-monitoring logs may retain API content for up to 30 days.
  • Google — only if you connect Google Calendar. We use Google's Calendar API to read and write events on the calendar you authorize.
  • Resend — sends transactional emails (login codes, account notifications). Resend receives your email address and the email body.
  • Fly.io — hosts our backend in the United States. Fly receives the same data as our application.
  • Apple — distributes Bennett, processes Bennett Monthly purchases, and provides subscription status. Apple handles payment information under its own policies.
  • Cloudflare — hosts trybennett.com (this website) and routes traffic. Cloudflare may receive standard web request metadata.

We do not sell your data, and we do not share it with advertisers, data brokers, or any other third parties beyond the operational providers above.

How long we keep it

Account data, household content, and calendar integrations remain while the relevant account or household is active. Usage and voice-session records are deleted after 90 days. Expired login codes, sessions, invitations, and OAuth state are cleaned up on a rolling schedule.

Deleting your account removes your account and data belonging only to you. If other members share a household, that household and its content remain for them and ownership transfers to another member. Deleted data can remain in encrypted backups until those backups expire, no later than 90 days. Deleting your Bennett account does not cancel an Apple subscription; cancel Bennett Monthly in your Apple Account settings to stop future renewals.

You can request a copy or deletion of your data at any time by emailing privacy@trybennett.com.

How we protect it

Everything Bennett sends or receives travels over HTTPS/TLS. Sensitive fields such as OAuth tokens and conversation memory are additionally encrypted at the application layer with AES-256-GCM using keys we control. Voice audio between your device and OpenAI uses SRTP, an encrypted real-time protocol.

No system is unbreakable, but we treat the data your family trusts us with as seriously as you'd want us to.

Your rights

Wherever you live, you can:

  • Ask us what data we have about you.
  • Ask us to correct something that's wrong.
  • Ask us to delete your account and the data tied to it.
  • Withdraw consent for optional integrations (like Google Calendar) at any time.

Email privacy@trybennett.com for any of the above. We aim to respond within seven days.

Children

Bennett is intended for adults. It is not designed for and is not directed to children under 13. We do not knowingly collect personal information from children. If you believe a child has used Bennett, contact us and we will delete the account.

Changes to this policy

We may update this policy as Bennett changes. When we make a material change, we'll update the "Last updated" date at the top and provide any notice required by law.

Contact

Privacy questions, data requests, or anything else: privacy@trybennett.com.

General hello: hello@trybennett.com.

Bennett

© 2026 Bennett. Built with care.

hello@trybennett.com

Bennett is a general wellness and household-assistance product. It is not a medical device and is not intended to diagnose, treat, cure, or prevent any disease or condition. If you have concerns about a family member's health, consult a qualified clinician.