Privacy Policy

Last updated: August 25, 2026

Operator draft. This is not legal advice and has not been reviewed by a lawyer. The operator is a sole proprietor doing business as Domi Ops (no limited liability company).

Who is responsible

Domi Ops Cloud (domi-ops.com, app.domi-ops.com, demo.domi-ops.com): the sole proprietor doing business as Domi Ops is the data controller for accounts and household data stored on hosted infrastructure.

Self-hosted instances: the person or household who operates that server is the controller. Domi Ops (the project) does not operate a central database for self-hosted deployments and does not see that data.

Information stored

  • Account identifiers (email, username, display name, profile photo)
  • Household content you create (calendar events, shopping and chores, notes, expenses, school work, Drive files, optional health records)
  • Session and authentication cookies (HTTP-only on the app domain)
  • Optional Web Push subscription endpoints if you enable notifications

Processors (when enabled)

  • Google — optional sign-in, Calendar sync, and Drive drive.file (Docs/Picker). See Google's Privacy Policy. OAuth tokens are encrypted at rest on the instance.
  • Object storage — S3-compatible storage (MinIO or a cloud bucket) for uploads.
  • Email — SMTP you or the hosted operator configure (verification and transactional mail).
  • Weather — Open-Meteo using coordinates you provide; no weather account is required.
  • Web Push — browser vendors deliver notifications; subscription keys stay on the instance.
  • Stripe — billing, trials, and invoices when hosted checkout is live. Card details are handled by Stripe, not stored in Domi Ops.

Health module

Optional. Sensitive fields (titles, notes, medication names, dosage, instructions) are encrypted at rest with the instance ENCRYPTION_KEY. Dates, member assignment, and schedule times remain queryable. Access follows per-record visibility and segment ACL — there is no admin override of private health data. Domi Ops is not a healthcare provider and is not HIPAA-compliant.

School module

Homeschool and family coursework only. Domi Ops is not a school of record, not an accredited institution, and does not issue official transcripts to third parties.

Children and household accounts

Households may provision child or student accounts (including username-only members). A parent or guardian who owns or administers the household is responsible for those accounts and for deciding what data is stored.

Sharing inside a household

Members see household-visible content per module permissions. Private notes, Drive objects, and health records are limited to owners and people you explicitly share with (or grant ACL access).

Optional anonymized metrics

Off by default on every household, self-hosted or Cloud. An owner or admin can turn it on in Settings → Privacy. When on, we collect:

  • Technical health — page load speed, JavaScript errors, API response times
  • Feature usage — which modules and actions get used (e.g. "a chore was completed"), never the content of what you created

These events carry a randomly generated id stored in your browser — not your account, household, name, or email — and nothing in our metrics storage links back to household data. Turning it off stops collection immediately; turning it on later starts a new random id, not a resumed history. We do not sell this data, or any data, to anyone, ever — it is used only to find bugs and decide what to build next.

Separately, anyone can send a bug report or feedback from their Profile page at any time, regardless of this setting — that message (and an optional reply email, if you choose to leave one) is sent because you chose to send it, not collected passively.

Retention and deletion

Cloud: email privacy@domi-ops.com to update profile data, revoke Google connections, or request account and household deletion. We will delete or anonymize hosted records within a reasonable time unless we must retain them for legal or billing disputes.

Self-host: the instance operator exports or deletes data by managing PostgreSQL and object storage directly.

Your choices

You can disconnect Google Calendar or Docs, disable Web Push, turn off optional modules (within what the instance enables), and turn anonymized metrics on or off — all in household settings. See also the Terms of Service.

Contact

Cloud privacy questions: privacy@domi-ops.com. For a self-hosted instance, contact the person who administers that server.

Back to sign in