Privacy policy

The formal version.

Last updated 29 July 2026

The short, human version lives on our about page and everything there is true. This page is the fuller account: exactly what we collect, where it goes, who processes it, and how to have it removed. GotIt Guides is run by James Cook in Sydney, Australia. If anything here is unclear, email hello@gotitguides.com and a real person will answer.

What we collect

Your guides. Whatever you choose to put in a guide: text, photos, videos, contacts, routines and log entries. If you import notes, a document or a photo, we keep only the guide it produced, not a separate copy of the upload.

Account details. You don't need an account to create or view a guide. If you sign in with Google to use the dashboard, we hold your email address and display name.

Emails you give us. If you ask us to email your guide links to you, we use that address to send them. If you join the updates list, we hold that address until you unsubscribe.

Feedback. Anything you type into a feedback box, plus an email address if you include one.

Anonymous analytics. Our analytics are first party and anonymous: which pages are viewed, a random per-browser identifier, and the referring site's domain only (for example "facebook.com", never a full address). We use no ad networks, no tracking pixels and no third-party analytics, and we never sell or share data for marketing.

Who can see a guide

Guides are unlisted. They never appear in Google or any other search engine (we tell crawlers to stay out, and no guide address is ever listed anywhere on this site), and they are not browsable. Anyone who has the link can open the guide, so share it like you'd share a house key.

Locked guides. Add a guide code and the contents are encrypted on your device before they are stored (AES-256; the key is derived from your code and never leaves your device). We store unreadable ciphertext: we could not read a locked guide if we tried, and we cannot recover one if the code is lost. Only the guide's title and emoji stay readable, so the person you share it with knows what they've received.

Unlocked guides. Guides without a code are stored in readable form. In practice that means the operator could access them for support or maintenance, though we never browse guide content. If your guide contains anything sensitive, lock it.

Link previews. When a guide link is shared in a messaging app, the preview shows only the title, subtitle, emoji, section titles and section count. Body text, contacts, medication details and photos are never included in previews.

Edit access. Editing requires the guide's private edit link. The edit secret is verified on our servers and stored only as a cryptographic hash; it is never sent to anyone viewing the guide.

AI features

When you use an AI feature (turning notes, photos or documents into a guide, or polishing wording), the content you provide is processed by Anthropic's Claude API to produce the result. Anthropic does not use API data to train its models. Voice recordings made with "Talk it out" are transcribed by OpenAI's Whisper API. In both cases the processing is transient: what we keep is the guide you end up with, which stays under your control like any other guide. The AI never adds information you didn't provide, and for veterinary discharge guides it is specifically instructed to flag anything unclear rather than guess.

Where your data lives

Guides, accounts and analytics are stored on Amazon Web Services in Sydney, Australia (ap-southeast-2), encrypted at rest and in transit. Some processing involves partners outside Australia:

  • Anthropic (United States) — AI guide building and polish, as above.
  • OpenAI (United States) — voice transcription for "Talk it out", as above.
  • Cloudflare Stream — hosts videos you upload to a guide.
  • Resend — delivers the emails we send (your links, updates you asked for).
  • Google — sign-in for the dashboard, if you choose to use it.

These are the only third parties that touch your data, and each receives only what its job requires.

Email

We email you your guide links when you ask us to. Product updates go only to account holders and people who joined the updates list, and every one includes an unsubscribe link that works. We never email the people you share guides with.

Retention and deletion

Guides stay published until deleted, because a care guide that vanishes mid-house-sit helps no one. Removing a guide from your dashboard takes it off your dashboard; to delete the guide itself, email us its link and we'll delete it, no questions asked. Deleting your account removes your dashboard and its saved records. Analytics events carry no personal data and are kept in aggregate.

Security

Everything travels over HTTPS and is encrypted at rest. Edit secrets are stored hashed and verified server-side. Guide links and edit secrets are generated with a cryptographic random number generator. Public endpoints are rate limited. Locked guides are end-to-end encrypted on your device. No system is perfect; if you believe you've found a security issue, please email hello@gotitguides.com and we'll respond quickly.

For vet clinics

Clinics using GotIt Guides for discharge instructions act as the data owner, with us as their service provider. Two companion documents cover that relationship: the one-page security & privacy overview (plain English, for clinic staff) and the data processing summary (storage, subprocessors, retention and deletion, in detail).

Your rights

You can ask us at any time what we hold about you, ask for a copy, or ask for it to be corrected or deleted. Email hello@gotitguides.com. We handle personal information in line with the Australian Privacy Principles. If we make a material change to this policy, we'll note it here with a new date at the top.