Tentunit Assistant Mobile – USA -Privacy Policy

Tentunit, Inc., a Delaware corporation
Effective 13 September 2026  ·  Version 1.0
help.tentunit.com/privacy-policy

Tentunit, Inc. operates Tentunit Assistant, our iOS app; business.tentunit.com, our web app for property managers; and Tuni, the automated assistant in both. This policy covers all of them, along with any other Tentunit app that links to it.

It explains what we collect, why we collect it, who sees it, and what control you have.

Tentunit is available only in the United States.

If you’re a resident, read this first

Your property manager can read the full conversation you have with Tuni, along with any issue that is escalated to them. This is how the product works — the point is to get your problem in front of the person who can fix it.

It also means Tuni is not a private or neutral channel. Anything you say about a dispute, about rent, about other residents, or about your own circumstances is visible to the person who manages your building.

If you need to raise something you would not say directly to your property manager, use a different channel.

Who this covers

Property managers and landlords. You create an account, set up a project, upload documents to the knowledge base, and receive issues raised by residents.

Residents and tenants. You join a project with an access code and chat with Tuni. You never create a Tentunit account. This policy still covers you.

What we collect

From property managers

Name, email, and phone number if you provide it. Project and building information. Documents you upload to the knowledge base, and their contents.

Payment is processed by Stripe. We never receive or store your card number.

From residents

  • A device identifier, which keeps your session attached to a project without requiring an account.
  • The messages you send to Tuni, including anything you choose to put in them.
  • Your triage answers — issue category, description, and follow-up notes.
  • The resulting issue record, once your report is resolved or escalated.

We do not ask for your name, phone number, or email address. If you type them into a message, we have them, and so does your property manager.

We also don’t ask for health information, immigration status, or other sensitive details — but people describe real problems in their own words, and those descriptions sometimes contain them. We do not use anything in your messages to advertise to you, to profile you, or to infer characteristics about you.

Automatically

IP address, used for rate limiting and abuse prevention only. Timestamps. Basic usage and error logs.

Diagnostics and analytics

When the app crashes or hits an unexpected error, a technical report goes to Sentry. Before the report leaves your device, we strip session tokens, email addresses, access codes, and device identifiers from it. What remains — the error, the call stack, app version, iOS version, device model — is not connected to you.

The app also includes Google Analytics for Firebase, which measures which screens are opened and whether actions succeed. This is off by default. It collects nothing unless you turn it on under Settings → Privacy, and turning it back off resets the measurement identifier on your device.

Analytics never captures message content, issue content, or building addresses.

What we don’t do

  • We do not sell personal information.
  • We do not share personal information for cross-context behavioral advertising.
  • We do not read your device’s advertising identifier (IDFA).
  • We do not track you across other apps or websites.
  • We do not collect your location. The app requests no location permission of any kind.
  • We do not use your information for advertising.

How we use information

To run the chat and triage flow, and to answer questions from documents your property manager uploaded. To show property managers the issues raised in their buildings so they can act on them. To keep the service working and secure. To handle billing. And, where you have enabled analytics, to understand which parts of the app are used so we can improve them.

We use conversations to improve how Tuni answers. When we do this, we work with content that has been stripped of identifying information, we do not attempt to reidentify it, and we require anyone we work with to do the same.

How Tuni works

Messages you send to Tuni are processed by a third-party AI service — currently Google’s Gemini API — to generate follow-up questions and attempt an answer from your property manager’s documents. We use it under commercial terms that do not permit the provider to use your content to train its models.

If we change AI providers, we will update this policy before the change takes effect.

Tuni is automated. No one at Tentunit reads your messages in the ordinary course of running the service. Your messages go to your property manager when an issue is escalated, as described above.

Automated decisions

Tuni decides which reports to answer directly and which to escalate to your property manager. That is the only automated judgment it makes.

Tuni does not make decisions about your tenancy, your lease, your eligibility for housing, or anything else affecting your housing status. Those decisions are your property manager’s, made by a person.

If you want your report to reach your property manager directly without going through triage, say so in the chat and it will be escalated.

Who we share with

Your property manager, for residents, as described at the top of this policy.

Service providers who operate parts of the product for us: Google (AI processing), Vultr (application servers), Neon (database hosting), Mailgun (email delivery), Stripe (payments), Sentry (crash reporting), and Google Firebase (analytics, where enabled). They act on our instructions and may not use your information for their own purposes. We keep this list current and will post changes here before they take effect.

Where the law requires it, as described below.

We require valid legal process before disclosing personal information to law enforcement or a private party, and we push back on requests that are overbroad or improper.

Conversations in this product can become evidence in housing disputes. If we receive a subpoena or similar demand for your information, we will notify you before responding unless we are legally prohibited from doing so, so that you have an opportunity to object.

How long we keep information

Your device session as a resident lasts 30 days. It ends sooner if you leave the project or your property manager revokes access.

Conversations and issue records outlast the session, so that your property manager keeps a record of what was reported. They are retained for the life of the project and deleted when a property manager purges a project’s chat history or deletes the project, which removes everything tied to it.

Property manager account information is kept while the account is open. Billing records are kept for seven years for tax and accounting purposes. IP and error logs are kept for 30 days.

Your choices and rights

Depending on where you live, you may have the right to know what information we hold about you, get a copy of it, correct it, delete it, and not be treated differently for asking.

Property managers: email us at the address below. We verify against your account. You can also delete your account from within the app, which removes your account information and your projects.

Residents: email us at the address below. Because you don’t have a login, we verify against your device or session rather than a password. If we cannot verify that a request is really yours, we will tell you why rather than simply not responding.

Some information may be retained after a deletion request where we are required to keep it, or where it exists in your property manager’s records as part of a resolved issue.

We will acknowledge your request within 10 days and respond within 45 days. If we need more time, we’ll tell you.

Children

Tentunit is for adults. You must be 18 or older to use the service, and property managers agree to distribute access codes only to adults on the lease.

We do not knowingly collect personal information from children under 13. If we learn that we have, we delete it. If you believe a child has used the service, email us at the address below.

Security

Information is encrypted in transit. Access is limited by role and logged. Payment card data never reaches our systems. Crash reports are stripped of identifying fields before they leave your device.

No system is perfectly secure. If a breach affects your information, we will notify you as required by the law of your state.

Where information is stored

Our application servers run on Vultr in the United States. Our primary database is hosted on AWS in Ohio. Email delivery runs through Mailgun’s US infrastructure. Document storage and AI processing run on Google and AWS infrastructure in the United States.

Business transfers

If Tentunit is acquired, merges, or sells assets, personal information may transfer as part of that transaction. The acquiring party remains bound by this policy until it provides notice of any change, and we will notify you before your information becomes subject to a materially different policy.

Changes to this policy

We will update the effective date when this policy changes, and notify you in the app for material changes. Previous versions are archived and available on request.

The current version of this policy is always published at help.tentunit.com/privacy-policy. If you are reading a downloaded copy, check there for the version in force.

Contact

Tentunit, Inc. is a Delaware corporation and is responsible for the information described in this policy.

[email protected]

Residents can also reach us in the app under Settings → Legal → Contact.