Privacy Policy
Last updated 12 July 2026
Overview
Lifedocket helps you track life-admin deadlines. When you scan a document, we use AI to read dates and details so you can confirm reminders. This policy explains what we store, who can see it, and how you can delete it.
Document storage
By default, uploaded files are not kept after scanning. We extract the fields you confirm (title, dates, notes, and similar) and then delete the original file from our storage.
If you opt in to Keep original in vault when saving a scanned item, we store a copy of the file so you can view and download it later from the item page. Vault files remain until you delete the item (see Deletion below).
Accepted upload types are PDF, JPEG, and PNG. Files are stored in Convex secure file storage and are only accessible through authenticated, signed URLs.
AI processing (Google Gemini)
When you upload a document for scanning, the file is sent to Google Gemini to extract structured fields (title, category, issuer, dates, notes, and policy checklist items where applicable). Processing happens on our servers; the AI provider receives the document content for that one-time extraction.
We do not use your documents to train our own models. You should review Google's terms and data policies for their API if you need provider-level detail. Extracted text is stored as part of your item record in our database.
Space sharing
Items you mark as private are visible only to you, including any vault document attached to that item.
Items shared with your space are visible to all members of that space. If you kept the original in the vault, space members who can view the item can also open the stored document. Use the private lock for passports, medical records, financial documents, or anything you do not want others in your space to see.
Retention
- Extract-and-discard (default): original files are deleted shortly after you save or skip a scan.
- Vault opt-in: originals are kept while the item exists.
- Item data: titles, dates, notes, reminders, and related metadata are kept until you delete the item.
- Failed scans: files from unreadable uploads are deleted when you finish or abandon the batch.
Deletion rights
You can delete any item you own. Deletion is undoable for a few seconds; after that grace period the item and its reminder schedule are permanently removed. If the item had a vault document, the file and its storage blob are purged at the same time.
Skipping a scanned document during review deletes that upload immediately. Starting a new upload discards any unreviewed files from the previous batch.
To request deletion of your account and all associated data, contact us at privacy@lifedocket.app.
Security
Access to your data requires authentication. Document URLs are short-lived signed links issued only after the server verifies you may view the parent item. We use industry-standard hosting (Convex) for database and file storage.
Changes
We may update this policy from time to time. The date at the top of this page shows when it was last revised. Continued use of Lifedocket after changes means you accept the updated policy.