Cayn is a digital service currently in private beta for users in the United States. This policy explains how we handle personal information across our apps, connected services, website, and support channels.
Account and data deletion · Data retention · Contact us
Account information: name, email address, sign-in information, contact details, preferences, shared-access membership, and subscription status. Phone and address details are not required for basic account creation, but may be required for activities involving verification, communications, or documents. Apple or Google may provide identity information when you choose their sign-in services.
Content you provide: financial and property records, receipts, photos, documents, contact details, questions, messages, signatures, responses, and support attachments, together with information extracted from them and corrections you make. This may include information an authorized user provides about someone without a Cayn account. Provide another person's information only when authorized. Camera and photo access is used when you choose to provide images.
Optional financial connections: with your authorization, providers such as Plaid supply account details, balances, transactions, and other permitted financial data, which may include liabilities or investments. We securely store connection tokens, not your bank login credentials.
Optional email connections: if you connect Gmail, read-only access lets us identify and process financial messages and relevant attachments to organize your records. Processing may continue in the background while enabled. This access does not let Cayn send, modify, or delete messages and is not used for unrelated email.
Other authorized information: connected calendar records and relevant information supplied by property or location-data providers. We use the details you provide or authorize to obtain these records.
Verification and electronic records: contact-detail checks, limited-duration access cookies or tokens, submitted signatures or acknowledgments, consent and document versions, timestamps, and related audit evidence. Some verification checks compare information already provided to Cayn; they are not a guarantee of identity.
Technical information: IP addresses, approximate country or region inferred from connection information, app and operating-system versions, device and session identifiers, notification tokens, diagnostic events, and service logs. Device biometrics stay on your device; Cayn does not receive your fingerprint or face template.
We use information to operate the services you request, process and organize authorized records, respond to questions, manage accounts and subscriptions, and deliver requested communications, maintain electronic records, and carry out supported actions you approve. We also provide support, improve reliability, prevent abuse, protect accounts, and meet legal obligations.
AI providers may process submitted images, documents, extracted text, financial descriptions, questions, and relevant records to produce organized information and responses. Automated results may be inaccurate and should be reviewed.
Eligible non-identifying attributes and contributions may improve shared reference information under the applicable confirmation and contribution rules. These contributions do not expose your name, account details, or original images to other users.
We do not sell personal information. Providers process information needed to operate Cayn, including cloud services such as AWS, financial-data services such as Plaid, AI services such as Google Gemini, and sign-in, property-data, communication, subscription, and support providers.
People you authorize may access the information you share with them. Members of a shared workspace and relevant participants or recipients may receive shared records, documents, responses, or signatures. Recipients may keep their own copies. We may also disclose information to comply with law, protect rights and safety, prevent fraud, or as part of a business transfer, subject to applicable restrictions.
Authorized staff use operational and support services, including private Slack channels, to respond to requests and monitor security. Account-creation alerts use limited account and device information, masked email and IP-network information, sign-in method, and approximate country or region; they exclude passwords, verification codes, and bank credentials.
Connected Gmail data is used only for the authorized financial-record service and related security and support. Cayn's use and transfer of information received from Google APIs will adhere to the Google API Services User Data Policy, including its Limited Use requirements.
We use encrypted connections, access controls, and encryption for sensitive stored information and connection tokens. Access is limited according to service and support needs. No system can guarantee absolute security.
We retain account information and saved content while needed to provide the service. Disconnecting an integration stops future access through that connection; previously saved records remain until deleted. New-account security notification records in Cayn expire after 30 days; copies delivered to operational providers follow their applicable retention settings.
We aim to remove primary personal and financial data within 30 days of a verified deletion request. Support attachments and routine diagnostic logs have a retention target of up to 90 days, unless needed for an active investigation. Verification codes and sessions expire according to their security settings.
Limited information may remain for security, fraud prevention, legal compliance, or disputes. Encrypted backups expire according to their recovery periods and are not used for active services after deletion is completed. If an exception affects your request, we will explain the reason and retention period. Deletion cannot recall messages or documents already received or independently retained by another person.
You can edit supported account information, control notifications and device permissions, and disconnect optional integrations. Contact us to request access to or correction of other personal information, including information provided about you by another user, even if you do not have a Cayn account.
To delete your Cayn account and its associated history, open Settings → Delete Cayn Account and confirm the request. This starts automatic deletion and signs you out. Connected bank and email access is revoked before the stored connection credentials and account data are erased. You can also use our Delete Cayn Account page without installing or signing in to the app. Requests sent through that page require confirmation through the registered email address and approval by our team.
Deletion covers your profile and account-owned content, including saved records, files, and conversation history, subject to the retention exceptions above. Content owned by others is not deleted merely because your shared access ends. Deleting your shared records can affect other people's access.
Deleting Cayn does not close your bank accounts or automatically cancel a subscription billed by Apple or Google Play. Manage that subscription with the store that bills you; cancellation is not a prerequisite for submitting a deletion request.
Cayn is not directed to children under 13. If you believe a child has provided personal information to Cayn, contact us so we can investigate and address it.
We will update this page and its effective date when this policy changes. We will provide additional notice of material changes where required.
For privacy questions or requests, email contact@cayn.ai. We may verify that you control the account before disclosing or deleting information. Do not send passwords, verification codes, bank credentials, or full payment-card numbers.