Effective Date: May 25, 2026
At LawnIndex, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application.
1. Information We Collect
Personal Information
We collect the following personal information when you use our app:
- Email Address: Used for account creation, authentication, and communication.
- Lawn Photos: Images of your lawn that you upload for analysis.
- Lawn Data: Scan history, generated lawn grades, diagnoses, and care plans.
- Onboarding Context: Location (region or ZIP), grass type, sun exposure, watering and mowing habits, and goals you share to personalize results.
- User Preferences: Notification settings and unit preferences.
Automatically Collected Information
When you use our app, we may automatically collect:
- Device information (device type, operating system).
- Push notification token (a device level identifier stored when you grant notification permission, used solely to deliver reminders to your device).
- App usage data (features used, interaction patterns).
- Error logs and diagnostic information.
2. How We Use Your Information
We use your information for the following purposes:
- Provide Services: Analyze your lawn photos, generate a lawn grade, and produce a care plan.
- Personalized Recommendations: Use your onboarding context (region, grass type, sun, watering, goals) to tailor the diagnosis and plan.
- AI Analysis: Send lawn photos and onboarding context to large language model providers for analysis.
- Push Notifications: Send care reminders and other app notifications to your device using your push notification token.
- Account Management: Authenticate users and maintain account security.
- Improve Our App: Analyze usage patterns to enhance features and fix bugs.
- Communication: Send important updates about your account or our services.
3. Third-Party Services
We use the following third-party services to operate our app:
Supabase (Database, Authentication & Storage)
- Stores your account information, scan history, and preferences.
- Stores lawn photos you upload for analysis (in secure cloud storage).
- Provides secure authentication services.
- Data is encrypted at rest and in transit.
- Privacy Policy: https://supabase.com/privacy
Cloudflare (API Gateway & Rate Limiting)
- Routes API traffic between the app and our backend, enforces rate limits, and verifies authentication.
- May log request metadata (IP, user agent, timestamps) for abuse prevention.
- Privacy Policy: https://www.cloudflare.com/privacypolicy/
OpenAI and Anthropic (AI Processing)
- Process lawn photos and onboarding context to produce grades, diagnoses, and care plans.
- Data sent: lawn photos, grass type, region, sun exposure, watering and mowing habits, goals.
- Each provider's data usage policy applies.
- Privacy Policies: OpenAI, Anthropic
Lawn grades and care recommendations provided by LawnIndex are estimates generated by AI and may not be fully accurate. They should not be used as a substitute for professional agronomic advice.
RevenueCat (Subscription Management)
- Manages in-app subscription purchases and entitlements.
- Data sent: anonymous app user ID, purchase and subscription status.
- Does not receive your lawn photos or analysis results.
- Privacy Policy: https://www.revenuecat.com/privacy
Firebase (Analytics, Crash Reporting & Push Notifications)
- Firebase Analytics: collects app usage data such as feature interactions, device type, and operating system to help us improve the app.
- Firebase Crashlytics: collects crash logs and error diagnostics to help us identify and fix bugs.
- Firebase Cloud Messaging (FCM): delivers push notifications to your device using your push notification token. Does not receive your lawn photos or analysis results.
- Privacy Policy: https://firebase.google.com/support/privacy
4. Data Storage and Security
We implement industry-standard security measures to protect your data:
- All data is encrypted in transit using SSL/TLS.
- Database information is encrypted at rest.
- Uploaded photos are stored in secure, private cloud storage accessible only through authenticated requests.
- Access to your data is restricted to authorized personnel only.
- We do not sell, rent, or share your personal information with third parties for advertising, marketing, or data brokerage purposes.
- We do not use your data to build advertising profiles or for targeted advertising.
5. Your Privacy Rights
You have the following rights regarding your data:
- Access: Request a copy of your personal data.
- Correction: Update or correct inaccurate information.
- Deletion: Request deletion of your account and associated data.
- Export: Download your scan history.
- Withdraw Consent: Stop using our services at any time.
- Revoke Permissions: Disable camera or photo library access at any time through your device's Settings app.
6. Data Retention
We retain your information for as long as your account is active or as needed to provide services. When you delete your account, we will delete your personal information, including stored lawn photos, within 30 days, except where we are required to retain it for legal compliance.
7. Children's Privacy
Our app is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If we discover that a child under 13 has provided us with personal information, we will delete it immediately.
8. Camera and Photo Library Access
Our app requests access to your device camera and photo library for the following purposes:
- Capturing photos of your lawn for analysis.
- Selecting existing lawn photos from your library for analysis.
Photos are only uploaded when you choose to start a scan. Uploaded photos are stored securely in our cloud storage to support your scan history. You can deny camera or photo access and still use other app features.
9. Location Information
If you choose to share your region or ZIP code, we use it to tailor recommendations (climate, grass type compatibility, seasonal timing). We do not collect precise device location.
10. Data Breach Notification
In the event of a data breach that compromises your personal information, we will notify affected users promptly in accordance with applicable laws. Notification will be sent via email to the address associated with your account and will include the nature of the breach, the data affected, and steps we are taking in response.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Effective Date" at the top. Continued use of the app after changes constitutes acceptance of the updated policy.
12. International Users
Your information may be transferred to and processed in countries other than your own. By using our app, you consent to the transfer of your information to the United States and other countries where our service providers operate.