Privacy Policy

What we collect, why we never read your mail, and what we're required to do if we're legally compelled to hand it over.

Effective 2026-09-07

Draft, not yet reviewed by legal counsel. This page describes our real, current data practices and intent honestly and in plain language. It is not yet a lawyer-reviewed legal instrument — treat it as our current, good-faith commitment, and expect it to be formalized (and possibly revised) with real legal review before CarePyre scales beyond its initial community deployment.
Overview

The short version

CarePyre provides community members and their case workers, clinicians, and other support providers with durable email accounts and phone service that survive whatever crisis brought someone to us. We built this policy around one real, honest tension: we don't look at your email, but we are a real organization subject to real legal process — if we are served with a valid subpoena or court order for a specific account's contents, and that account isn't encrypted, we are legally required to comply. That's exactly why we forcefully encourage everyone to turn on PGP encryption (see "Encryption" below) — once your mail is encrypted with a key only you hold, we have nothing readable to hand over even if compelled.

What we collect

We do not read the contents of your email. CarePyre staff do not open, scan, or review your mail as a matter of course. Automated spam/abuse filtering may process mail content the same way any mail provider's spam filter does.

Who can create or manage an account on your behalf

If you're a participant, a provider you're working with (a case worker, clinician, or other support staff member CarePyre has vetted) may create and manage your CarePyre email account for you. This is intentional — many people arrive at CarePyre without the time, stability, or access needed to set up their own account, and we'd rather meet people where they are than put that burden on them during a crisis.

Access controls (least necessary, not everyone sees everything)

Encryption

Every connection to your mailbox (webmail, IMAP, the console) is encrypted in transit via TLS. Whether your stored mail is also encrypted at rest is up to you:

We forcefully encourage encryption. We do not require it (yet). Nothing currently blocks you from using an unencrypted mailbox — we'd rather you have a working account today than no account while you sort out a PGP key. But we will keep reminding you (a persistent notice appears in the console until a key is on file) because the difference is real: an encrypted mailbox is one we structurally cannot hand over readable, even under a subpoena.

When we disclose data

We do not sell your data, and we do not share it with advertisers. We disclose account data only:

Where legally able to, we will make a reasonable effort to notify the affected account holder before complying with a legal demand for their data.

A note on health information and HIPAA

CarePyre is a technology and infrastructure provider, not a health care provider. If a provider using CarePyre-issued accounts is a HIPAA covered entity (for example, a licensed clinician or health care organization) and uses those accounts to communicate protected health information, that provider's own HIPAA obligations apply to how they use the service — and CarePyre may need to enter into a Business Associate Agreement with that provider, consistent with HIPAA's own requirements for organizations handling protected health information on a covered entity's behalf. We take this seriously and are building our technical safeguards (encryption, least-necessary access, audit trails, and the data export/deletion tools described below) with that real possibility in mind — but this paragraph is a description of our approach, not a legal determination that CarePyre is or isn't a HIPAA business associate in any given relationship. If you're a provider with questions about whether a BAA applies to your use of CarePyre, please reach out (see "Contact" below) before sending anything you consider protected health information through an unencrypted account.

Your rights over your own data

Data retention

We keep your account and mail for as long as your account is active. If your account is closed or you request deletion, we follow the deletion process described above. Security and access logs are retained for a limited period for abuse investigation and are not kept indefinitely.

Changes to this policy

We'll update the date at the top of this page when we make changes, and we'll make a reasonable effort to notify active account holders of any change that materially affects how their data is handled.

Contact

Questions about this policy, or want to exercise your access/deletion rights? Reach us through the contact form on carepyre.org.