Heirloom

Privacy

Last updated June 26, 2026. Maintained by the Heirloom team.

What Heirloom is

Heirloom is a maintenance journal for the things you own — vehicles, appliances, home systems, and the like. You give it your items and their service history; it gives you a quiet timeline of what's due, what's overdue, and what's on schedule.

What we collect

  • Account information. Your email address and password (hashed) when you sign up. Optional display name and avatar when you fill them in.
  • Your items. Whatever you enter: name, make, model, year, mileage, hours, photos, warranty dates, service intervals.
  • Service history. Logs you write and receipts you upload. Files you upload are stored privately and signed URLs are issued only to you.
  • Notification preferences. Thresholds (days, miles, hours) and channel choices (email today; push and SMS planned).
  • Usage data. Standard server logs (timestamps, paths, HTTP status) and minimal error reports. No third-party advertising trackers.

How we use it

  • Run the product — show your items, compute statuses, send reminders.
  • Keep accounts secure — sign in, password reset, abuse prevention.
  • Improve the product — diagnose errors, plan changes.

We do not sell your data and we do not show ads.

Subprocessors

Heirloom runs on a small set of trusted services. Each only sees the data needed to do its job.

  • Lovable Cloud / Supabase — database, authentication, file storage, transactional email infrastructure.
  • Lovable AI Gateway — parses receipts and answers manual questions. Receipt images and manual text are sent to the model and not retained beyond the request.
  • Google Maps — address autocomplete for service centers and item locations. Used in the browser; subject to Google's terms.

How long we keep your data

Until you delete it. Delete an individual item from its detail page, or your entire account from Settings → Danger zone — the latter wipes every item, log, receipt, intervaling rule, reminder, and preference attached to you, removes your files, and deletes your account.

Your choices

  • Edit your profile and account on Settings.
  • Change your notification preferences any time on Settings.
  • Export by request — email us and we'll send your data.
  • Delete your account from Settings → Danger zone.

Security

Data in transit is encrypted with TLS. Files are stored in private buckets and access is gated by row-level rules. We do our best, but no service is perfect — if you find a vulnerability, please email us before disclosing publicly.

Children

Heirloom is not directed at children under 13.

Changes

We'll update this page when meaningful changes happen. Material changes get a note via email.

Contact

Questions, requests, or concerns: hello@heirloom-keeper.com.