PadoBack to Pado

Privacy Policy

Pado is your cat’s everyday notebook. This page explains, in plain language, what we store, why, who can see it, and what you can do about it.

Effective September 3, 2026 · Operated by Xiaoyang Wang (Aspen Labs)

The short version

  • We store what you put in Pado: your account, your household, your cats’ profiles, the care log, notes, photos and documents, reminders, and your conversations with Paw.
  • Paw’s answers are generated by a third-party AI model. Your question, any photos you attach, and relevant records about your cat are sent to the provider to write the reply. Your name and email are not.
  • We don’t sell personal information, we don’t show ads, and we don’t track you across other apps or websites. There is no analytics or advertising code in Pado.
  • Only people you invite into your household can see its cats and records. Share links you create can be opened by anyone who has the link, until they expire or you turn them off.
  • You can export everything as a JSON file and delete your account from inside Pado at any time.
  • Questions or requests: support@pado.pet.

Who we are

Pado (listed on the App Store as “Pado Pet”) is operated by Xiaoyang Wang (Aspen Labs), based in the United States. It runs at www.pado.pet, as an iOS app, and as a Mac app that wraps the website. They all use the same account, so this policy covers all of them.

For anything about your data, write to support@pado.pet.

What we collect

Almost everything Pado stores is something you typed, tapped, or uploaded on purpose. Here is the full list.

  • Account. Your email address, a display name, and your language and time-zone preferences. Passwords are handled by our sign-in provider (Supabase Auth); we never see them. If you sign in with Google, Google sends us your name, email address, and profile-picture link.
  • Household. The households you belong to, your role in each (owner, caregiver, or viewer), and the invite links you create.
  • Cat profiles. Name, breed, sex, birthday, weight history, color and markings, microchip number, medical notes, conditions, and a photo — whatever you choose to fill in.
  • Care records. The care log (meals, water, litter, meds, weight, symptoms, play, grooming, vet visits, notes), medications and dose history, vaccinations, clinic contacts, the things you chose to watch, daily routines, and the reminders you set.
  • Photos and documents. Photos attached to log entries or Paw questions, and documents you upload to a cat’s records. They live in private storage that only your household can reach.
  • Paw conversations. The questions you ask Paw, any photos you attach, Paw’s replies and urgency assessment, the close-out summary, and Paw’s short memory notes about each cat (facts about the cat, which you can view, edit, or clear on the cat’s profile).
  • Notifications. If you turn on reminders on a device, we store the push address your browser gives us (a push subscription with its keys and the browser’s user-agent string) so we can deliver them. Your quiet-hours preference is stored in your profile.
  • Technical logs. Standard server logs from our hosting provider (IP address, browser type, pages requested, timestamps), error reports, and an AI usage log (which feature ran, the model, token counts, latency, and cost). We use these for security, debugging, and to keep the service affordable — never for advertising.

What we don’t collect

  • No precise location — Pado never asks for your GPS position.
  • No contacts, calendars, or health data from your phone.
  • No advertising identifiers and no tracking across other apps or websites. Pado contains no analytics or advertising SDKs.
  • No payment card numbers. Pado is free today; if we offer paid plans, Apple or our payment processor handles the card and we only learn that the purchase happened.
  • No audio. Voice input on the web uses your browser’s built-in speech recognition (which the browser’s vendor may process); Pado receives only the resulting text.

How we use it

We use your data to run Pado for you, and for nothing else:

  • To show you and your household the care log, records, calendar, and reminders you set up.
  • To generate Paw’s answers, the daily brief, follow-up suggestions, and Paw’s memory notes (see the next section).
  • To deliver reminders to the devices where you turned notifications on, and by email if email reminders are enabled for your account.
  • To keep the service secure, prevent abuse, apply the usage limits of the free plan, and fix problems.
  • To answer you when you contact support.
  • To meet legal obligations, if any apply.

We do not use your data for advertising, we do not sell it, and we do not use it to train AI models.

Paw and AI processing

Paw is an AI assistant. When you ask Paw something, Pado assembles a small package about that cat and sends it, together with your message, to a third-party model provider that generates the reply. That package is:

  • The cat’s profile: name, species, breed, sex, birth date, weight, medical notes, current conditions, and active medications as you entered them.
  • The last 7 days of that cat’s care log (up to 30 entries: the kind of entry, when it happened, and any note).
  • Paw’s memory notes about the cat, the conversation so far, your new message, and any photos you attached to it.
  • The symptoms or topic you selected when you started the conversation, and the language you use Pado in.

Your name, your email address, and account identifiers are not part of that package. A few other features use the same provider the same way: the daily brief on Today (built automatically once a day from yesterday’s and today’s records for the cats in your household), the close-out summary of a conversation, follow-up question suggestions, and the memory update that runs after a conversation is closed.

Our AI provider today is Google (the Gemini API). Pado is also built to work with Anthropic (the Claude API); if we switch or add a provider, we will update this page. Providers process this data under their API terms to generate the response; we do not use your data to train AI models.

Paw’s replies are general information generated by a model, not veterinary advice. Only a licensed veterinarian who has examined your cat can tell you what is wrong and what to do. If your cat may be in danger, contact a veterinarian or an emergency clinic right away.

Who can see your data

Nobody sees your data unless you share it, a service provider needs it to run Pado, or the law requires it.

Your household

Everyone you invite into a household can see that household’s cats, care log, records, reminders, and Paw conversations, plus the display names of the people who logged entries. Owners and caregivers can add and edit; viewers can only look. You can remove members, leave a household, or delete a household you own at any time.

Share links

You can create share links for a cat card, a sitter care sheet, or a Paw summary. Anyone who has the link can open it — no account needed — until it expires or you turn it off. A link contains only what that page shows; your uploaded documents are never included, and sitters never see Paw conversations.

Service providers

We rely on a small number of companies to run Pado. They process data only on our instructions:

  • Supabase — database, sign-in, and private file storage.
  • Vercel — hosting for the website and its API.
  • Google — the Gemini API that generates Paw’s replies (see above), and Google sign-in if you choose it.
  • Anthropic — the Claude API, supported as an alternative model provider (this page will name it as current if we switch).
  • Apple — App Store and TestFlight distribution of the iOS app, and billing if you ever buy a plan inside it.
  • Resend — sends reminder emails when email reminders are enabled.
  • GitHub — hosts the Mac app downloads; the Mac app asks GitHub for the latest version when it starts.

We may also disclose data if the law requires it, to protect people or animals from harm, or as part of a merger or acquisition (we would tell you first). We do not sell personal information, and we never share it with advertisers or data brokers.

Cookies and on-device storage

Pado uses a few cookies and browser-storage entries, all of them to make the app work. None are for advertising or tracking:

  • A session cookie set by our sign-in provider, so you stay signed in.
  • A language cookie (pado_locale) that remembers English or 简体中文.
  • On-device preferences such as light or dark mode, accent color, sidebar state, and which routines you skipped today. These stay on your device and are not sent to us.
  • On iOS, your session token is stored in the device’s Keychain.

Because there is no third-party tracking, there is no cookie banner and nothing to opt out of.

How long we keep it

We keep your data for as long as your account exists, so your cat’s history is there when you need it. Specifically:

  • Care records, photos, documents, and Paw conversations stay until you delete them or delete your account.
  • Share links stop working when they expire or when you turn them off.
  • Push subscriptions are removed when you turn notifications off or when a device stops accepting them.
  • When you delete your account, your profile and every household only you own — with its cats, records, conversations, and reminders — are deleted immediately. Uploaded files become unreachable at that moment; leftover copies are purged from file storage and backups during routine cleanup.
  • Server logs are kept for a short time by our hosting provider. AI usage log rows are kept for cost accounting but are unlinked from your account when it is deleted.

Security

We take reasonable measures to protect your data:

  • Everything travels over HTTPS.
  • Every database table is protected by row-level security, so each request can only read the households you belong to.
  • Photos and documents live in private storage buckets; the app fetches them with short-lived signed links.
  • Passwords are hashed and managed by Supabase Auth; we never see or store them.
  • Paw’s writes happen on our servers, never from the browser.

No system is perfect. If we learn of a breach that affects you, we will tell you as quickly as we can.

Your choices and rights

You are in control of your data:

  • See and export it. Me → Export my data downloads everything in your households as one JSON file. Uploaded files are listed in it and can be downloaded from each cat’s Records tab.
  • Correct it. Edit your profile, cats, and records directly in the app.
  • Delete it. Delete individual entries any time, or delete your whole account from Me → Delete account on www.pado.pet (type DELETE to confirm). Households you share with others keep going without you; ownership passes to another member.
  • Notifications. Turn reminders off per device from Me → Notifications & app, or in your browser or device settings.
  • Sharing. Turn off any share link and leave any household from the app.
  • AI features. Paw answers only when you ask it something. The daily brief on Today is generated automatically once a day from your recent records; if you would rather it were not, tell us at support@pado.pet.

California residents

If you live in California, the CCPA/CPRA gives you the right to know what personal information we collect and how we use it (this page), to access it, to correct it, to delete it, and not to be discriminated against for exercising those rights. Pado does not sell personal information and does not share it for cross-context behavioral advertising, and we do not use or disclose sensitive personal information for anything other than providing the service.

Use the tools above, or email support@pado.pet from the address on your account. We verify requests by matching that address and reply within 45 days. You may also ask someone to make a request on your behalf; we will ask them for proof that you authorized it.

Children

Pado is for adults (18 and over) and is not directed to children. We do not knowingly collect personal information from anyone under 13. If you believe a child has created an account, email support@pado.pet and we will delete it.

Where your data lives

Pado is operated from the United States, and our providers host your data there. If you use Pado from elsewhere, your data is transferred to and processed in the United States, where privacy laws may differ from those of your country.

Changes to this policy

If we change this policy in a meaningful way, we will post the new version here with a new effective date and, for significant changes, tell you in the app or by email. The date at the top tells you when it last changed.

Contact

Xiaoyang Wang (Aspen Labs) · support@pado.pet. Help is on the support page; the rules for using Pado are in the Terms of Service.