What Housenote keeps, what it doesn’t, and how to take it with you — or erase it.
Last updated July 14, 2026
Housenote (“Housenote,” “we,” “us”) is operated by Housenote, Inc. We make a private social app for close friend groups — privacy isn’t a feature we tacked on, it’s the whole point. This policy covers our iOS app and our website, housenote.co, and is written in plain English. Housenote is currently available to people in the United States only.
๐
housenoteThe short version
Your house is private. Everything you post is visible only to the friends in your house — never public, never searchable, never sold.
We hold very little about you. A phone number to sign in, a display name and emoji, and — only if you add them — a photo and email. That’s most of it.
No ads, no tracking, no data sales. We don’t sell your data, hand it to advertisers, or track you across other apps. There are no third-party analytics or ad SDKs inside the app.
AI stays inside your house. It helps power search and recommendations from what your house shares. Your house’s taste profile is never sold and never leaves your house.
You’re in control. Export or delete anything — including your whole account — from the app, anytime.
Your phone number (used to sign in and verify your account via one-time SMS codes)
Your email address, if you add one โ used for account recovery, necessary account notices (like security alerts), and, optionally, occasional product updates you can unsubscribe from
Your display name and profile emoji (what your friends see)
Your profile photo, if you add one
Waitlist email โ if you sign up on housenote.co before you have an account, we collect your email address to tell you when Housenote is ready and to send occasional updates
Content You Create
Moments and recs โ the text, photos, and links you post to your house feed, including recommendations you share or ask your house for
Rituals โ the recurring prompts you create for your house (their name, emoji, and cadence) and the entries you post to them
Comments and reactions on other people's entries
Attached items โ outfits, books, recipes, products, music, and other links you attach to an entry
Collected items โ when you collect (save) an entry into your personal collection, we store which entries you've collected so we can build your collection back for you
Reports you submit about an entry or person, and feedback you send us
Device & Technical Info
Push notification token, plus your device name, app version, and iOS version โ stored together so we can send you notifications (only if you allow them)
Time zone โ so we can send ritual reminders and other notifications at the right local time
IP address โ logged by our backend infrastructure as part of standard server operations
Usage events โ basic in-app activity (such as which screens and actions you use), tied to your account, your house, and a session, so we can understand how Housenote is used and make it better
What we don't collect: We don't collect your location or GPS data. We don't use advertising identifiers. We don't track you across other apps or websites. We don't use any third-party analytics, advertising, or crash-reporting SDKs inside the Housenote app โ the only outside software bundled into the app is Supabase, our backend.
Some promises we're comfortable making forever, because they're the whole reason Housenote exists:
We'll never sell your data or your house's taste profile.
We'll never share your content or your house's taste profile with advertisers, or let them leave your house. If we ever show a sponsored recommendation, the matching happens inside Housenote โ a brand never sees who you are or what you've shared.
We'll never track you across other apps or websites.
We'll never build an advertising profile of you to sell, share, or use against you outside your house.
We'll never make your house content public, searchable, or visible to anyone outside your house.
We'll never fill your house with untargeted junk, and no brand can ever pay to pose as one of your friends. Anything sponsored is always clearly labeled as sponsored.
If any of this ever changes, it stops being Housenote. These aren't going anywhere.
To run Housenote โ storing your entries, delivering them to the people in your house, and keeping your account working
To power search, discovery, and recommendations inside your house โ using the things you and your house share, including an evolving taste profile for your house, so we can surface relevant items and suggest rituals (see “Recommendations & Shopping” below)
To send you notifications about activity in your houses, which you can manage in settings
To find and fix bugs and technical issues
To understand how people use the app, in aggregate, so we can make it better
To respond when you contact us, submit feedback, or report something
Housenote helps friends share the things they love โ outfits, books, recipes, music, products. So part of the experience is helping you discover, save, and find those things. Here's exactly how that works โ and how we might make money down the line โ because we'd rather just tell you.
Recommendations. We use the things shared inside your house to surface relevant recommendations in search and discovery, and to suggest rituals your house might enjoy. This processing stays inside your house to make your house's experience better โ it's never sold, never shared outside your house, and never used to track you or build an advertising profile that leaves your house.
Your house's taste profile. To do this well, each house has a taste profile โ an evolving sense of what your house is into, updated over time. To build it, we send a sample of what's been shared in your house โ including the text of entries and comments, attached items, and reactions, along with display names โ to our AI provider (the Claude API, from Anthropic). Anthropic processes this content as our service provider, and under their commercial terms they do not use it to train their AI models. The taste profile belongs to your house: it stays inside your house, it's never sold or shared, and it's only ever used to make your own recommendations better. If you'd rather we not build one for your house, email hello@housenote.co and we'll stop.
Organizing what you collect. When you collect an entry, we send its text to our AI provider (the Claude API, from Anthropic) to sort it into a simple category โ like beauty, food, books, places, or fashion โ so your collection is easier to browse. Anthropic processes this as our service provider and doesn't use it to train their models.
Search. When you search inside Housenote, your search text and some of your house's taste context are sent to our AI provider to return relevant results. We also keep a record of searches โ the text and when โ at the house level, to help us improve search. These records are tied to the house, not to your individual account.
How we may make money (planned). We don't do any of this yet, and we'll update this policy and tell you in the app before we do. Down the line, some recommendations may earn us money โ for example, a shared product link could become an affiliate link that pays us a small commission if someone buys through it, or a brand could pay to have a product surfaced to houses whose taste fits. If that ever happens: the price you pay never changes, any sponsored pick is always clearly labeled as sponsored, and the matching happens inside Housenote โ your taste profile and your content never leave your house or reach an advertiser. A brand never sees who you are or what you've shared.
What stays true no matter what. We'll never fill your house with untargeted junk ads, and no brand can ever pay to pose as one of your friends or intrude on your house's private space. Sponsored recommendations, if they ever exist, are labeled and matched on our side โ never a handoff of your data.
We don't sell your data. We don't share it with advertisers. Here are the services that help us run Housenote:
Supabase โ our backend infrastructure. They host our database, authentication, file storage, and server functions. Your data lives on their servers, hosted in the United States.
Twilio (via Supabase Auth) โ delivers the one-time SMS verification codes we send to your phone. Twilio receives only your phone number and the code text; nothing else about your account or content.
Anthropic (Claude API) โ powers your house's taste profile, search, ritual suggestions, and sorting the entries you collect into categories. For the taste profile, we send a sample of shared content (entry and comment text, attached items, reactions, and display names). For search, we send your search text plus some taste context. For collecting, we send the text of an entry you save. Anthropic processes this as our service provider; under their commercial terms they don't use it to train their models, and any data they retain isn't used for training without our permission. Model used: Claude Sonnet.
Apple Push Notification service (APNs) โ delivers push notifications to your iPhone. A notification can include the sender's display name and a short preview of the content, plus IDs used to open the right screen.
Spotify โ when you search for or add music, we query Spotify to find tracks.
Amazon Web Services (AWS Rekognition) โ automated image safety scanning. When you upload a photo, we send it to AWS's image-moderation service to check for content that may violate our guidelines (for example, explicit or violent imagery). AWS processes the image as our service provider and returns safety labels; a flagged image is queued for human review, not automatically removed.
Resend โ delivers trust-and-safety alert emails to our moderation team. When you report content, or our automated scan flags an image, Resend delivers an internal email that can include the report description and a snapshot of the reported content so our team can review it.
Cloudflare โ hosts housenote.co and processes the link paths used when someone opens an invite or deep link.
Affiliate networks (only if we add affiliate links) โ if we introduce affiliate links in the future, an affiliate partner would record referral and purchase data so we could be credited a commission. They would not receive your house content, your messages, or your contacts. We'll update this policy and notify you before that goes live.
We may also share data if required by law or to protect the safety of our users.
This is the big one. Housenote is built for private sharing among close friends.
Everything you post in a house is visible only to members of that house. Your content is not public, not searchable, and not indexed by search engines. Only people who've been invited to and joined your house can see what you share. A house's invite code is visible only to people who are already in that house.
If you're in multiple houses, each house is separate โ members of one house can't see content from another.
To be clear about the line: we do use what's shared inside a house to make that house better for the people in it โ like surfacing a relevant recommendation. We never sell it, never hand it to advertisers, and never show it to anyone outside your house. If a recommendation is ever sponsored, it's labeled, and the matching still happens on our side โ your content never leaves the house. What happens in a house stays in the house.
You own your content. You can delete it, and you can leave. We only hold a limited license to store and display your content so the app can work for you and the people in your house โ nothing more.
No mobile information will be shared with third parties or affiliates for marketing or promotional purposes. Information obtained as part of the SMS consent process will not be shared with third parties.
Housenote uses SMS for one purpose only: sending one-time verification codes to your phone number.
Program name: Housenote two-factor authentication.
When you receive a code: only when you actively request one โ at signup, sign-in, or when verifying a change to your phone number. You initiate each message by tapping “send code” in the app. This is your opt-in.
What's in the message: a six-digit verification code and a short instruction. No marketing, no links, no promotional content.
Message frequency: one message per verification attempt. We never send recurring or marketing SMS.
Message and data rates: message and data rates may apply, depending on your mobile carrier.
Opt out: reply STOP to any verification code to stop receiving SMS from Housenote. Your account remains active and you can recover access via your recovery email, or by contacting support.
Who processes your number: only Housenote and our SMS delivery provider, Twilio. Twilio receives only the phone number and the verification code text; nothing else. Phone numbers are never sold or rented to anyone.
Housenote does not use phone numbers for advertising or profiling โ only for account authentication.
How we store your number
Your phone number is held by our authentication provider (Supabase) so you can sign in. We also keep a one-way, salted hash of it (SHA-256 with a server-side secret) tied to your account, so we can recognize the same number across accounts and so we never need to expose readable phone numbers to other parts of the system. The hash can't be reversed back into your number without that secret, which is never exposed publicly.
Inviting friends
When you invite someone, Housenote creates a shareable invite link and hands it to your phone's standard share sheet โ you choose where to send it (Messages, email, wherever). Housenote does not access your contacts, and we don't receive anyone's phone number or contact details unless they tap your link and join a house themselves.
We keep your information only for as long as we need it to run Housenote. Here's the breakdown:
Account and content. Your content stays in Housenote as long as your account is active.
Deleted entries and comments. When you delete an entry or comment, it's hidden from your house immediately. It remains in our database in a hidden state and is fully removed when you delete your account.
Account deletion. You can delete your account from within the app. When you do, we hard-delete the personal data associated with your account โ your profile, your entries and comments, your attached items (outfits, books, recipes, products, and the links inside them), your collected items, your rituals, your reactions (including ones you've left on other people's entries), your notification settings, your device tokens, and your reports and feedback. Copies of database records may remain in our daily backups for up to 7 days before they roll off. Your uploaded media (photos and audio) isn't part of those backups, so it's removed when deleted, with no backup copy left behind.
Activity notifications. Automatically deleted after 90 days.
Push delivery logs. Automatically deleted after 30 days.
Push tokens. Deactivated when you sign out.
Verification codes. Short-lived; they expire shortly after they're sent.
Security and operational logs. We keep limited logs used to prevent abuse and keep the service running (for example, rate-limiting and access logs), and aggregate analytics, for as long as needed for those purposes.
Search queries. Recorded at the house level (the text and time) to help us improve search, and not tied to your individual account. Kept for up to 12 months, then automatically deleted.
Waitlist emails. Kept until Housenote launches to you, or until you ask us to remove you โ email hello@housenote.co anytime.
Photos and audio recordings you upload are stored securely in our cloud storage. Access to your media requires authentication โ files are served via signed URLs that expire after one hour, so your media isn't publicly accessible.
We strip location and identifying metadata (such as EXIF and GPS data) from your photos and audio recordings on your device, before anything is uploaded โ so where you were never travels with your media.
Your media is yours. We don't sell it, we don't show it to anyone outside your house, and we don't use the content of your photos or recordings to advertise to you. We process your media to store it, display it to the people in your house, and run the features you use.
Housenote is for people 16 and older. By creating an account or using Housenote, you confirm that you're at least 16. We don't knowingly collect personal information from anyone under 16. If we learn that we have, we'll delete it promptly. If you believe someone under 16 is using Housenote โ including someone who was invited into a house โ please contact us at hello@housenote.co and we'll remove their information and close the account.
We do not sell your personal information, and we do not share it for cross-context behavioral or targeted advertising.
Wherever you live in the US, you can:
Access the personal data we hold about you
Correct inaccurate information
Delete your data
Export your data (data portability)
Opt out of the sale or sharing of your personal data (we don't do either, but the right is yours)
Ask about, or opt out of, the automated processing behind your house's taste profile and recommendations
Object to or restrict certain processing, where applicable
To exercise any of these rights, email us at hello@housenote.co. We'll respond within 30 days. We won't charge you or treat you differently for exercising any of these rights.
This section is for California residents and uses the categories defined by the California Consumer Privacy Act (CCPA/CPRA). It restates what's described above in that framework โ it doesn't add new practices.
Categories of personal information we collect
In the past 12 months, we've collected these CCPA categories:
California customer records (Cal. Civ. Code ยง1798.80(e)) โ name, phone number, email address.
Internet or other electronic network activity โ in-app usage events, actions, and search queries (search text is also sent to our AI provider to return results).
Audio, electronic, or visual information โ your profile photo, and the photos and audio recordings you post.
Inferences โ your house's taste profile, drawn from shared content.
We do not collect: protected classifications, commercial or purchase history, biometric information, precise geolocation, professional or employment information, or education information.
Sensitive personal information
We don't collect sensitive personal information to infer characteristics about you. Account credentials are used only to sign you in. We don't sell or share sensitive personal information, and we don't use it for purposes you could limit under the CPRA.
Sources of this information
Directly from you (account details and the content you create); automatically from your device and your use of the app (usage events, device and network information); and from other members of your houses (for example, content or invitations involving you).
Business and commercial purposes
To provide and maintain Housenote; to secure it and prevent abuse; to debug and fix issues; to improve the app; to power search, recommendations, and your house's taste profile; to send you notifications and respond to you; and to comply with law.
Categories of third parties we disclose to
We disclose personal information to service providers acting on our behalf, in these categories: cloud infrastructure and hosting; SMS and push-notification delivery; AI processing (for the taste profile and search); automated image safety scanning; trust-and-safety email delivery; music search; and website hosting. (If we add affiliate links in the future, affiliate networks would be added here, and we'll update this policy first.)
Sale or sharing of personal information
We do not sell your personal information, and we do not share it for cross-context behavioral advertising, as those terms are defined by the CCPA. We have not done so in the past 12 months. We do not knowingly sell or share the personal information of anyone under 16.
Your California rights
You have the right to know and access the personal information we've collected, delete it, correct inaccurate information, opt out of the sale or sharing of personal information (we do neither), limit the use of sensitive personal information (we don't use it in ways that trigger this), and not be treated differently for exercising these rights.
How to exercise them
Email hello@housenote.co. We'll verify your request by confirming details associated with your account, and you may use an authorized agent. We aim to respond within 30 days; the CCPA permits up to 45 days, with a possible extension if needed.
Shine the Light
California's “Shine the Light” law (Cal. Civ. Code ยง1798.83) lets California residents ask about personal information shared with third parties for those parties' own direct marketing. We don't share personal information for that purpose. You can confirm this by emailing hello@housenote.co.
We may update this policy from time to time. If we make significant changes, we'll let you know through the app or by email. The “last updated” date below always reflects the most recent version.