Privacy Policy
Effective: September 18, 2026 · Version 2.0 · AWS production stack
Calyndra is a communication-intelligence platform. Caly is the speaking companion persona. This product supports everyday AAC communication. It does not diagnose, treat, or replace licensed professionals.
Operating entity contact fields are configurable for the organization running this deployment. Pre-formation deployments should treat legal entity naming as provisional until counsel confirms.
What we collect
On your device (browser local storage):
- Communication preferences (motor/access settings, theme band)
- Optional session UI state needed to resume a board
- Caregiver consent acknowledgements when recorded in the app
On the Calyndra API host (Lightsail App_Data, when features are used):
- Board / vocabulary configuration caregivers create
- Communication-pathway summaries (how communication happens — not identity)
- Optional growth letters and digests a caregiver explicitly generates
- Assent-gated evolution settings caregivers approve
Cloud services used only as configured:
- AWS Polly — speech audio for Caly band voices (text of spoken phrases)
- AWS S3 — media assets and operational heartbeats (no child identity required)
- MongoDB Atlas — optional dual-write when an Atlas URI is configured
- AWS Bedrock — optional caregiver-letter polish only; never AAC intent inference
We do not use legacy Microsoft cloud AI hosting or table storage for this production stack.
What we do not collect
- Child names, photos, diagnoses, or medical records as product requirements
- Advertising identifiers or behavioral ranking against other learners
- Silent clinical inferences about autism, emotion, intelligence, or caregiver quality
How we use data
- Provide AAC communication, play, routines, stories, and caregiver transparency tools
- Keep motor-safe layouts stable and adaptations assent-gated
- Operate hosting, speech, and media services
We do not sell personal data. We do not use learner interactions to train general public foundation models.
Caregiver control
- Clear browser site data to remove local preferences
- Use in-app export/copy where available for professional sharing
- Request deletion/export of server-side App_Data artifacts via the privacy contact
Children's privacy
Calyndra is designed for caregiver-supervised use. Minimize identity linkage. Assume records may one day be reviewed by the individual who was once a child.
Security
API traffic uses HTTPS. Access to operational data should be role-bounded. Report concerns to the privacy contact.
Contact
Privacy: privacy@calystracaly.com
Support: support@calystracaly.com