← Homelatch
Privacy Policy
Last updated: July 14, 2026
Homelatch is built so that most of your data never reaches us at all. This policy explains what we do and do not collect, and the choices you have.
The short version. The relay that connects you to your Mac carries only signaling. Your screen, keystrokes, files, and audio flow directly between your own devices, end-to-end encrypted, and never pass through our servers. We do not run facial recognition and we do not collect biometric identifiers.
Who we are
Homelatch ("Homelatch", "we", "us") is a remote-access product operated from Chicago, Illinois, United States. You can reach us about privacy at privacy@homelatch.app.
What we collect
- Your email address, when you sign in. Sign-in is passwordless: we email you a one-time link. We store your email to identify your account and to send you sign-in links and essential service notices.
- Device records. For each Mac or viewer you add, we store a name you choose, a randomly generated device identifier, and a one-way hash of that device's access token. We never store the token itself.
- A hardware fingerprint for trial protection. When you connect your first Mac, its stable hardware identifier is sent to us and stored only as a one-way hash, so a single machine cannot start repeated free trials under different emails. We cannot reverse it back to your hardware ID.
- Basic usage analytics. Our website records page views, clicks, referring pages, approximate device type, and your IP address, to understand what is working. These are first-party measurements sent to our own server. We do not use advertising cookies, and we do not sell or share this data with third parties for their own purposes.
- Anything you send us, such as support emails.
What we do not collect or see
- Your screen, keystrokes, clipboard, files, and audio. These flow directly between your own devices and are end-to-end encrypted. Our relay only helps the two ends find each other; it never receives the content.
- Biometric identifiers. Homelatch forwards camera and microphone as a live media stream. It does not perform facial recognition, does not create a face template or scan of face geometry, and does not collect or store any "biometric identifier" or "biometric information" as those terms are used in the Illinois Biometric Information Privacy Act.
- Advertising or cross-site tracking data. We do not track you across other websites.
Cookies and local storage
We do not use tracking cookies. Our website stores a random, anonymous session identifier in your browser's local storage so we can count a visit once rather than many times. It contains no personal information and is not shared.
How we use your data
- To operate the service: authenticate you, connect your devices, and keep your Macs grouped under your account.
- To send you sign-in links and important notices about your account or the service.
- To prevent abuse, including repeated free-trial farming.
- To understand and improve how the website and product are used.
- To comply with law and enforce our Terms of Service.
Who we share it with
We do not sell your personal information. We share limited data only with service providers who help us run Homelatch, under contracts that limit their use of it:
- Email delivery (Amazon Web Services / Amazon SES) to send your sign-in links.
- Hosting for our relay and website.
- Payment processing when paid plans launch; the payment processor handles your card details, not us.
We may also disclose information if required by law, to protect our rights, or as part of a business transfer.
Your rights and choices
You can delete your account and all of its data from within the app, or by emailing us. Depending on where you live, you may have rights to access, correct, delete, or receive a copy of your personal information, and to opt out of the "sale" or "sharing" of it (we do not sell or share it). To exercise any right, contact privacy@homelatch.app. We will not discriminate against you for exercising these rights.
Data retention
We keep account and device data for as long as your account is active, and delete it when you delete your account. Sign-in links expire in minutes. Usage analytics are kept in rotating logs and then discarded.
Security
Access tokens and hardware fingerprints are stored only as one-way hashes. Traffic to our website and relay is encrypted in transit. No system is perfectly secure, but Homelatch is designed so that the most sensitive data, your screen and its contents, never reaches us to begin with.
Children
Homelatch is not directed to children under 13, and we do not knowingly collect their personal information.
Changes
We may update this policy. We will post the new version here and update the date above; significant changes will be communicated by email or in the app.
Contact and governing law
Questions: privacy@homelatch.app. This policy is governed by the laws of the State of Illinois, United States.