AI.ngel Privacy Policy
Last updated: 10 October 2026 · App: AI.ngel (Android ai.ngel, iOS com.architrone.aingel) · Developer: Architrone
What AI.ngel is
AI.ngel is a home patient monitoring app. It connects your phone to an AI.ngel bedside unit, which uses a camera and a smart watch to watch for warning signs and to send alerts to the people looking after the patient. It is a research prototype and not a medical device.
Information the system handles
- Camera picture. The bedside unit analyses the live picture on the unit itself to look for face changes, hand signs and a hand on the chest. The live picture is shown in the app on your own network or your private remote connection. Video is not stored continuously.
- Face data for recognising the patient. When you save a patient, the unit keeps a face template and the patient's calibration on the unit only, so it can recognise them later. You can delete a patient at any time in the app.
- Health readings. Heart rate, SpO₂, a blood-pressure estimate and wrist skin temperature come from the smart watch over Bluetooth to the unit. The unit stores readings, alerts and events in its local database and deletes them after 14 days by default.
- Health profile. The patient type (for example stroke or heart) and usual readings that you enter, stored on the unit.
- Names and accounts. The patient's name, the names of helpers you invite and, only if you enter one, a helper's e-mail address. Sign-in tokens are stored in hashed form on the unit and on each phone.
- Test recordings. Only if you use the Recording Studio, with the person's consent: short labelled clips used to test and tune the system. They stay on the unit and on the computer used for tuning, and are never shared.
What leaves your home
- Phone notifications. Alerts to locked phones may be sent through a notification service (ntfy). These messages contain only the name you choose for the unit (for example "Home") and a short alert text such as "Check on them now". They contain no video, no face data and no health readings unless you choose to switch reasons on. Choose a unit name that shows nothing personal.
- Remote access (optional). If you set up Tailscale to watch from another network, the connection between your phone and your unit is end-to-end encrypted by Tailscale. We do not receive that data.
- App stores. Google Play and the Apple App Store handle downloads and updates under their own privacy policies.
Nothing else is sent to us or to any other company. We do not run a cloud service for AI.ngel data.
Permissions the app asks for
- Local network: to find and talk to your bedside unit.
- Notifications: to show alerts and patient requests.
- Running in the background (Android): so alerts keep working while the screen is off.
The app does not use your phone's camera, microphone, location, contacts or photos.
Who can see the information
The admin who set up the unit sees everything. Helpers only see the patient's open requests and recent solved ones. You control who has access and can remove a helper at any time.
Keeping and deleting data
Readings and events are kept on the unit for 14 days by default. You can delete a patient, a helper or test recordings in the app. Resetting the unit deletes everything stored on it. Because the data is on your own unit, we cannot see, copy or delete it for you.
Delete your account and data
AI.ngel accounts and data are stored only on your own bedside unit, so you can delete them yourself at any time:
- A helper account: the admin opens the app, goes to Setup → People who can help, and taps Remove next to the helper. The helper is signed out and their name and sign-in are deleted from the unit.
- A patient and their face data: Setup → Patients → Forget. The saved face is deleted.
- Signing out on a phone: Setup → Sign out deletes the sign-in from that phone.
- Everything (admin account, patients, readings, recordings): reset the bedside unit. All data on it is deleted.
Readings and events are deleted automatically after 14 days. We do not hold a copy of your account or data, so nothing is kept by us after you delete it. If you need help, contact us through the developer contact on the store listing.
Children
AI.ngel is meant to be set up by adults caring for a patient. It is not directed at children.
Security
The unit requires sign-in after an admin is set up. Helper IDs work once and expire after 24 hours. Keep the unit's setup code private.
Changes
We will update this page if the way AI.ngel handles information changes, and change the date at the top.
Contact
For questions about privacy, contact Architrone through the developer contact details shown on the AI.ngel store listing.