PRIVACY & DATA USE

Ring Data & Privacy

Last updated: July 30, 2026

This notice explains how PixoraHQ Planner handles customer data when a customer connects a Ring account. It supplements the PixoraHQ Privacy Policy.

Data we process and why

  • Ring account ID and encrypted OAuth tokens: Link the authorized Ring account, authenticate requests, and maintain the connection.
  • Camera ID, name, online status, and capabilities: Show authorized cameras and determine whether live viewing is available.
  • Webhook event type, subtype, device ID, request ID, and timestamp: Prevent duplicate events, create a limited household activity summary, and deliver notifications when enabled.
  • Temporary WebRTC offers, answers, and session IDs: Establish and close a customer-requested live viewing session.
  • Notification preference: Remember whether the household wants Ring event notifications.

Planner does not receive a customer’s Ring password. Planner does not record or retain live video or audio, download Ring recordings, store snapshots, perform facial recognition, or collect biometric data through the Ring integration.

AI model training

PixoraHQ does not use Ring customer data, video, audio, images, event metadata, or account information to train artificial intelligence or machine-learning models. Planner does not apply automated video analysis to Ring live streams.

Retention periods

  • Encrypted Ring account identifiers and OAuth credentials are retained while the Ring connection remains active. They are removed when the customer disconnects Ring, Ring revokes the integration, or the associated Planner account is deleted.
  • WebRTC signaling and session identifiers are used only for the active live session and are not retained as video history.
  • Full webhook payloads are processed in memory and are not stored. Request IDs and timestamps used to prevent duplicate notifications are retained for approximately 24 hours, with no more than 200 recent records.
  • Limited Ring event summaries may appear in Planner’s household activity history. Planner retains up to 500 combined household activity entries; older entries are displaced as new activity is added and are removed when the account is deleted.
  • Pending OAuth authorizations are valid only during the short account-linking window and are removed when linking completes or stale records are pruned during a later linking attempt.

Service providers and data sharing

Ring data is not sold, rented, or shared for behavioral advertising. Data is exchanged with Ring/Amazon as necessary to provide the authorized integration. PixoraHQ uses Render to host Planner’s private server and the customer’s browser push provider may process a limited notification title and message when notifications are enabled. These providers process data only to deliver their respective services. PixoraHQ may also disclose information when required by law, to protect customers or the service, or as part of a business transaction subject to appropriate safeguards.

Privacy rights and deletion requests

Customers may request access, correction, export, restriction, objection, or deletion of applicable personal data by emailing info@pixorahq.com. Include the email address used for the Planner account and describe the request. PixoraHQ may verify the requester’s identity before acting. Requests are handled subject to applicable law and information that PixoraHQ is legally required to retain.

Opt-out choices

Customers can disable Ring notifications, stop a live session, or disconnect Ring at any time under Planner → Household → Cameras. Disconnecting Ring removes Planner’s saved Ring authorization credentials. Customers may also request deletion of the Planner account by contacting PixoraHQ.

Effect of opting out of AI training

There is no service impact because PixoraHQ does not use Ring customer data for AI model training. No separate AI-training opt-out is required for Ring data.

Human access to customer data

PixoraHQ personnel do not routinely view Ring customer data and cannot view live Ring video through Planner’s server because the server does not receive or store the media stream. Authorized personnel may access limited account or event metadata only when reasonably necessary for customer support, security, abuse prevention, legal compliance, or service maintenance.

Customer control and review

Customers choose which cameras to share when authorizing Planner through Ring. Within Planner, authorized household owners and adults can view camera availability, start or stop a live session, enable or disable notifications, and disconnect Ring. Because Planner does not retain footage or images, recorded media must be reviewed and managed through Ring’s own services.

Changes to AI or detection capabilities

Planner currently performs no AI analysis or detection on Ring video. If PixoraHQ introduces a feature that materially changes how Ring data is processed, this notice will be updated and customers will receive additional in-product or email notice when appropriate. Any feature requiring additional data or consent will not be enabled without the required authorization.

Data storage locations and systems

The following diagram shows the systems involved in Planner’s Ring integration and identifies what, if anything, each system stores.

Data flow between systems

All Planner API exchanges use HTTPS/TLS. Live media uses encrypted WebRTC and is not routed to Planner’s persistent storage.

  1. 1
    Account linking

    Ring sends a short-lived authorization code to Planner. Planner exchanges it with Ring for OAuth credentials and stores those credentials encrypted on its private disk.

  2. 2
    Camera information

    The customer’s browser requests cameras from Planner. Planner retrieves the authorized camera ID, name, status and capabilities from Ring and returns them to the signed-in browser.

  3. 3
    Events and notifications

    Ring sends signed webhook events to Planner. Planner verifies the signature, suppresses duplicates, creates a limited activity summary and, when enabled, sends a limited message through the browser’s push provider.

  4. 4
    Customer-requested live view

    The browser sends a temporary WebRTC offer through Planner to Ring, and Planner returns Ring’s answer. Encrypted live video and audio then flow between Ring and the customer’s browser. Planner does not record or store the media.

  5. 5
    Disconnection and deletion

    Disconnecting Ring removes the saved Ring authorization credentials. Deleting the Planner account removes the associated integration data from Planner’s active storage, subject to applicable legal requirements.

Contact

Questions about this notice or Planner’s Ring integration may be sent to info@pixorahq.com.