Privacy policy
Last updated: 30 September 2026
On this page
Who we are
This policy explains how Memowrist (“we”) collects, uses, shares and deletes personal data. It covers the Memowrist watch app, the Memowrist phone app and our cloud service.
- Privacy questions and requests: [email protected]
- General questions: [email protected]
- Data Protection Officer (under Singapore’s Personal Data Protection Act, the PDPA): Calvin Christofan Ng, [email protected]
How Memowrist works
Memowrist has two apps:
- A watch app for Wear OS watches. It is worn by an older person, often someone living with dementia. In this policy we call them the wearer.
- A phone app for family caregivers. We call them caregivers.
The watch talks to our cloud over the internet. It uses home Wi-Fi, or the internet of a phone that the watch is connected to.
A caregiver links their phone to the watch by typing in a code that the watch shows.
What we collect and how long we keep it
We store the data below in our database. Our database is run by Supabase, in Singapore.
| What we store | How long we keep it |
|---|---|
| Caregiver's display name, and phone number (optional) | Until the caregiver leaves or deletes their account |
| Wearer's nickname, language and time zone | Until the wearer's data is deleted |
| Emergency contacts a caregiver types in (name and phone number) | Until edited or deleted |
| Medication names, times and dosage text a caregiver types in | Until edited or deleted |
| Fall-detection and wellness settings | Until edited or deleted |
| Alerts: the type (help button, possible fall or heart-rate alert), the time, the watch's location at that moment, and heart rate | 90 days |
| The watch's latest location, battery level and service status | Replaced with each update. Deleted when the watch is removed. |
| Location history | Not stored in our cloud |
| Records of medication taken or missed | 90 days |
| Chat session times | 90 days |
| Short chat summary (up to 3 sentences), mood, and whether a concern was flagged | Summary: 30 days. Chat session record: 90 days. |
| Remembered facts from chats ("memory"), such as favourite topics | Until a caregiver deletes them. Families can turn memory off. |
| Daily recap for caregivers | 30 days |
| Push-notification tokens and device identifiers | Until the device is removed, or after 90 days without use |
| Automatic database backups | Kept by our database host for a short time (currently up to 7 days) |
Caregivers do not create a username or password, and we do not ask for their email address. The phone app signs in with a random account ID that stays on the phone.
Chat audio and transcripts
- We do not store chat audio.
- We do not store full chat transcripts.
- The text of a chat is held only briefly in server memory. We use it to write the short summary and the remembered facts. Then we discard it.
While the wearer is talking, their voice is sent to a voice provider to create replies. See who we share data with.
Location
- We keep only the watch’s latest location. Each new update replaces the old one.
- When there is an alert, we save where the watch was at that moment, as part of the alert. Alerts are kept for 90 days.
- We do not store location history in our cloud.
How we use data
We use personal data only to run Memowrist. For example:
- to send alerts to caregivers’ phones
- to show the watch’s location on a map in the phone app
- to run the voice companion on the watch
- to write short chat summaries, remembered facts and daily recaps for caregivers
- to keep the details caregivers enter, such as emergency contacts, medication times and settings
We do not sell personal data. We do not use it for advertising. We do not use analytics or advertising identifiers.
Data sent outside Singapore
Some of our service providers are in the United States. We use them only to run Memowrist.
We require them to protect the data, as Singapore’s PDPA asks us to do when data is sent overseas.
Consent
The caregiver who sets up the watch confirms one of these two things:
- they have the wearer’s consent, or
- they are allowed to act for the wearer.
Caregivers also type in details about other people, such as emergency contacts. Please let those people know.
You can withdraw consent at any time. Email [email protected].
Your choices and rights
In the phone app, caregivers can:
- turn memory off
- delete remembered facts
- delete all data about the wearer
- delete their own account
By email to [email protected], you can ask us to:
- show you the personal data we hold about you
- correct your data
- delete your data
- stop using your data (withdraw consent)
We will reply within 30 days.
Deleting your data
- In the app: Settings > “Delete my account”.
- Without the app: email [email protected].
Full steps are on our delete your account page.
Records that are past their time limit (see the table above) are deleted automatically every day. Deleted data leaves our automatic backups within about 7 days.
Keeping data safe
- Data is encrypted when it travels between the apps and our cloud.
- Our database host encrypts the data it stores.
- Database access rules let a caregiver see only the wearer they are linked to.
- The secret keys for our service providers stay on our servers. They are not inside the apps.
- A caregiver can unlink a lost watch in the phone app. It then loses access straight away.
- Only the Memowrist team members who run the service can access the database.
No system is perfectly safe. If a data breach affects you, we will tell you as the PDPA requires.
Safety and medical notice
For adults only
Memowrist is for adults. Caregivers must be 18 or older. The watch is for the adults they care for. Memowrist is not for children.
Changes to this policy
If we change this policy, we will update the date at the top of this page. If we make an important change, we will tell users.
Questions? Email [email protected].