Privacy
PlantParlourLast updated 18 September 2026
PlantParlour is made by two people who keep plants. We built it for ourselves first, and we have tried to write this the way we would want it written for us: plainly, and without burying anything. PlantParlour is operated by Bond Creative Studios, LLC, a Colorado limited liability company, which is responsible for the information described on this page.
What we keep
- Your account. Your email address, and either a password or your Google sign-in. Passwords are hashed by our authentication provider — we never see yours. If you sign in with Google we receive your email address and name, nothing else: not your Google password, not your contacts, not anything else in your Google account.
- Your plants. Whatever you put in: nicknames, species, when you acquired a plant and who from, notes, your care log, photos and their captions, and which plants came as cuttings from which.
- Your display name, and a handle if you claim one.
That is the whole list. There is no analytics, no advertising, no tracking pixels and no third-party cookies anywhere in PlantParlour. We do not buy information about you, and we do not sell or rent yours to anybody.
Where it lives
Your records are stored in a Postgres database and file storage run by Supabase, hosted in the United States (US East). The site itself is served by Vercel. A copy of your plants is also kept on the device you use, so the app works when you have no signal.
About your photos
We want to be straight about this one. Photos are stored at long, random web addresses. Nobody can browse them and nobody can guess them — but anyone who has the address can open the photo without signing in. So a photo is unlisted rather than private.
In practice this only matters if a link escapes. Still: treat a photo the way you would treat an unlisted video. If you would mind a stranger seeing what is in the background, crop it or photograph the plant somewhere else.
What is public, and only when you say so
Nothing you keep is visible to anyone else until you choose to publish it.
- Publishing a plant creates a tag link with 32 random characters in it. Anyone holding that link can read that one plant: its species, dates, notes, care history and photos. It is unlisted, not secret. Unpublishing stops the link working.
- Unlisted means we keep it out of search. Search engines are told not to list a tag page and not to index the photographs on it, and the crawlers that collect text to train AI models are refused it outright. What we cannot control is a link once you have sent it: anyone you give it to can pass it on, and a tag link posted somewhere public is public.
- Claiming a handle creates a conservatory page at plantparlour.org/@yourhandle. That page is public and meant to be found and shared. It shows only the plants you have already published, plus your display name and the date you joined. Because it is meant to be found, it is open to search engines and to AI crawlers in the ordinary way. If you would rather not be findable, publish plants without claiming a handle — the tag links work either way.
Plants you have not published never appear on either, and are never shown to another keeper.
When you ask the AI
Identifying a plant from a photo, and generating a care guide, both use Anthropic's Claude API.
- Identifying sends the photos you chose to Anthropic. Generating a care guide sends the species name only — no photo, nothing about you.
- Anthropic processes them to produce the answer. Under their commercial terms, inputs sent through the API are not used to train their models.
- We record how many tokens each request used and what it cost, per day. We do not keep a copy of the conversation.
- Care guides are cached and shared between keepers: the guide for a Monstera deliciosa is about the species, not about you or your plant, so the first keeper to ask generates it and everyone else reads the same one.
Who else is involved
Four companies, each doing one job:
- Supabase — stores your records and photos, and handles sign-in.
- Vercel — serves the website.
- Google — only if you choose to sign in with Google.
- Anthropic — only the photos or species names you send for analysis.
Nobody else. We will not hand your records to anyone else unless the law genuinely requires it.
What you can do
- Change or delete any plant, photo, note or care entry, whenever you like.
- Unpublish a plant, and its tag link stops working.
- Give up your handle, and the conservatory page goes with it.
- Delete your account entirely. Email bondcreativestudios@gmail.com from the address you signed up with and we will erase the account and everything in it — plants, photos, care history — within 30 days. There is no self-service button for this yet; we would rather say so than pretend otherwise.
- Ask for a copy of everything we hold on you, and we will send it.
When you report a bug
While PlantParlour is still being tested there is a Report a bug button on your account screen. Pressing it sends us whatever you typed, plus a technical record of what the app was doing: which screens you opened, whether syncing was working, any errors it hit, your browser and screen size, and how many plants are on this device.
It does not send your photos, your notes, or what any of your plants are. Email addresses and access tokens are stripped out of that record before it leaves your device. Nothing is sent unless you press the button.
If something goes wrong
We take reasonable care to keep your records safe, but no system is perfect and we are not going to pretend otherwise. If your information is ever caught up in a security breach, we will tell you — by email, within 30 days of working out what happened, as Colorado law requires — and we will say what we know rather than what sounds best.
Children
PlantParlour is not intended for children under 13, and we do not knowingly keep information from them. If you believe a child has made an account, email us and we will remove it.
Changes
If we change how any of this works we will update this page and change the date at the top. If a change is significant, we will say so in the app rather than hoping you notice.