Privacy Policy

Last updated: 11 August 2026

Contents

  1. Who we are
  2. What we collect
  3. How we use it
  4. The assistant, and what it sends where
  5. Cameras and recognition
  6. Services you connect
  7. Who else sees your data
  8. How long we keep it
  9. Security
  10. Your rights, export and deletion
  11. Children
  12. International transfers
  13. Changes
  14. Contact

1. Who we are

Viki (“Viki”, “we”, “us”) is a home-management service: a model of your home, and an assistant that watches over it, answers questions about it and operates the devices you have connected to it.

Website vikihome.ai · application app.vikihome.ai · mobile apps for iOS and Android. Privacy contact: privacy@vikihome.ai.

Viki is the data controller for the data described here. Where a household owner invites other members, the owner decides who joins the house and what the assistant is told to do; we act on those instructions.

2. What we collect

2.1 Account

Your first and last name, your email address and a password credential. Authentication runs on Ory Kratos, which we host ourselves; your password is stored only as a hash and is never sent to a third-party identity provider. There is no email confirmation step and no third-party sign-in.

2.2 Your home

What you tell us about the property: its name, its address and the map coordinates you pick for it, its floors and rooms, and the inventory of devices in it. The address and coordinates exist so the assistant can reason about weather, daylight and the local time of day. The apps never read your phone's location. There is no location permission in the iOS app, and no location permission in the Android app.

2.3 Device state and history

Readings and states from the devices and services you connect — a thermostat's temperature, whether a light is on, whether a door is open, an inverter's production, a sensor's history. This is what the model of your home is made of, and it is what the assistant reads before it answers or acts.

2.4 Conversations, photos, files and voice

What you write to the assistant and what it writes back. Each member of a house has their own private conversation; members do not see each other's. If you attach a photo or a file to a message, or record a voice message, we store it as part of that conversation. Voice messages are transcribed to text so the assistant can act on them.

2.5 Cameras

If you connect cameras or a video doorbell, see section 5.

2.6 Subscription

Whether a house has an active subscription, and when it renews. Payment is taken on the web by our payment provider; we never see or store your card details, and the mobile apps do not sell anything.

2.7 Technical logs

Ordinary server logs — IP address, user agent, timestamps, status codes — for security and debugging. The apps contain no advertising SDK, no analytics SDK and no crash-reporting SDK, and they do not read your advertising identifier.

3. How we use it

We use your data only to run the service:

We do not sell your data, we do not use it for advertising or profiling, and we do not use your home data, your conversations, your photos or your camera footage to train machine-learning models — ours or anyone else's.

4. The assistant, and what it sends where

The assistant is powered by a large language model that we choose and operate. You do not supply an API key and there is nothing to configure; the cost of running it is covered by the subscription.

To answer a question or carry out an instruction, the relevant part of the conversation and the relevant state of your home are sent to that model provider, which processes them on our behalf under contract and does not use them for its own purposes. Voice messages are sent to a speech-to-text provider on the same basis. We send the minimum the request needs, and we redact what we can before it leaves.

When you ask the assistant to contact someone — an email to a plumber, a message to a neighbour, a phone call — the message you asked for, and the recipient's address or number, are handed to the corresponding carrier (email, WhatsApp, Telegram or a telephony provider) to deliver. Those recipients do not need a Viki account and are not enrolled in anything by being contacted.

5. Cameras and recognition

Camera support is off until you connect a camera. When it is on, frames are analysed to decide whether something is worth telling you about: an object-detection model first, and then, only for frames that pass it, the assistant, which looks at the frame and decides whether to notify you.

A frame that produced an alert is kept as a thumbnail alongside the alert, so you can see what it was about. Frames that produce nothing are not kept.

Viki does not perform facial recognition. We do not compute or store face templates, faceprints or any other biometric identifier, and we do not match faces between frames or against a database. Where the app lets a household record who someone is, that is a label the household writes by hand, and the person named can withdraw it.

6. Services you connect

Viki talks to third-party home platforms — lighting, climate, energy, cameras, alarms, calendars, mailboxes and others. Nothing is connected until you authorise it, one service at a time, through that service's own login or OAuth screen. We store the resulting access and refresh tokens encrypted, and use them only to read the state and perform the actions the integration exists for. Disconnect a service in Viki, or revoke Viki in that service's own account settings, and we stop and delete the tokens.

Where Viki runs a gateway inside your home, device discovery on your local network is off by default and only runs when you trigger it.

6.1 Google user data

If you connect a Google account, Viki requests only the gmail.send scope: it can send a message you asked for, and it cannot read, search, list, label or delete anything in your mailbox. Viki's use of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements. That data is not used for advertising, not sold, not used to train models and not read by us except where you ask for support that requires it. Revoke access at myaccount.google.com/permissions or by disconnecting the account in Viki.

6.2 Microsoft user data

The same applies to a connected Microsoft account, for which Viki requests only the Mail.Send permission. Revoke it at account.microsoft.com/privacy/app-access or in Viki.

7. Who else sees your data

We do not sell, rent or licence personal data to anyone.

8. How long we keep it

9. Security

No system is perfectly secure. If you think your account has been compromised, write to privacy@vikihome.ai and we will act on it.

10. Your rights, export and deletion

You can ask us to give you a copy of your data, correct it, delete it, restrict or object to how we use it, or hand it over in a portable format; where we rely on consent, you can withdraw it at any time.

Viki can produce, for any person, everything it holds about them across every house — and it can unlink them from it, which deletes what exists only because of them (their conversation, their own notifications, their notes) and strips their name from the household's shared history, which the household keeps.

To delete your account, or part of your data without deleting the account, follow the steps on our account-deletion page. For anything else, write to privacy@vikihome.ai; we answer within 30 days. You may also complain to your local data-protection authority.

11. Children

Viki is for adults. It is not directed at children, we do not knowingly collect data from them, and the app is listed for an adult audience on both app stores. If a child has given us personal data, write to privacy@vikihome.ai and we will delete it.

12. International transfers

Viki is operated from the European Union and your data is held there. Some processors — the language-model provider, messaging carriers — may process data outside the EU; where they do, the transfer is covered by Standard Contractual Clauses or an equivalent safeguard.

13. Changes

If this policy changes we will update the date at the top, and for anything material we will tell you by email or in the app at least 14 days before it takes effect.

14. Contact

Privacy: privacy@vikihome.ai
Everything else: support@vikihome.ai
Web: vikihome.ai