Privacy Policy

Last updated: July 27, 2026

Overview

IoT Parrot ("we", "our", "the app") is operated by Lurawood Labs LLC. This policy explains exactly what data we collect, why we collect it, who else receives it, and how you can delete it. We collect only what the service needs to work — there is no advertising, analytics, attribution, or crash-reporting SDK in the app.

Data We Collect

Data We Do Not Collect

Your MQTT messages

If you use your own ("bring your own") MQTT broker, messages travel directly between your hardware, the app, and your broker. We are not in that path and we do not receive or store those messages. There are four exceptions, all of which follow from features you choose to turn on:

How We Use Your Data

Your data is used solely to:

Third-Party Services

IoT Parrot uses the following third-party services:

Maps and address lookup

Map widgets display coordinates that your devices publish over MQTT — not your phone's location. Two things leave your account when you view one: the tile requests your device makes to OpenStreetMap (which expose your IP address and the area you are viewing), and, on tiers with the address readout, a server-side reverse-geocode request containing your device's coordinates to Google's Geocoding API.

Dashboard sharing

When you share a dashboard with another IoT Parrot user, they receive read access to that dashboard, to the devices its widgets reference, and to the connection details for the broker(s) those devices use — including the broker username and password, which their app needs in order to connect. Anyone you share with can therefore reach other topics on that same broker, and revoking the share does not invalidate credentials they have already received. If you need to fully withdraw access, change the password on your broker. Only share dashboards with people you trust.

Data Storage and Security

Your data is stored on Google Cloud infrastructure, and our server-side services run in the United States. All connections to our services use TLS. Access to your documents is enforced by Firebase Authentication and per-user Firestore security rules, and MQTT broker passwords are encrypted at rest with Google Cloud KMS rather than stored in plain text. No system is perfectly secure, but we design for least privilege and store as little as the features allow.

Data Retention and Deletion

Your data is retained for as long as your account is active, except where a shorter limit is stated above: alert history is capped at your most recent 100 fire events on Maker and 500 on Pro, and data-stream values are deleted after 30 days. You can delete your account yourself, at any time, from Settings → Delete Account in the app. Doing so permanently deletes your user record and everything under it — brokers, devices, dashboards, schedules, NFC automations, alert rules, alert history, data streams, and push tokens — plus the shares and schedules that reference you, and your sign-in record. If you have a managed broker, its credentials are deprovisioned at the same time. Any active subscription is cancelled.

Two things intentionally survive account deletion:

If you want a support ticket removed sooner, email support@iotparrot.com and we will delete it.

Your Rights

Depending on where you live, you may have the right to access, correct, export, or delete the personal data we hold about you, and to object to certain processing. Most of your data is directly visible and editable in the app, and account deletion is self-service as described above. For anything else, contact support@iotparrot.com and we will respond within a reasonable period.

Children's Privacy

IoT Parrot is not intended for children under 13. We do not knowingly collect data from children under 13. If you believe a child has provided us with personal data, contact us and we will delete it.

Changes to This Policy

We may update this policy from time to time. We will notify users of significant changes through the app or by email.

Contact Us

If you have questions about this privacy policy, contact us at support@iotparrot.com.