Privacy, made concrete
You decide where data goes.
Everyday control stays between your Apple device and Home Assistant. If you enable Assistant, iCloud sync, or background notifications, CasaRay shows which additional service that feature uses.
“The CasaRay app” means software running on your Apple devices. “We” means Evotec Services, the publisher. The app needs access to your Home Assistant data to work. We do not receive your credential or a browsable copy of that home data. Optional external routes are explicit: notifications use the CasaRay relay and Apple Push, the experimental Assistant uses OpenAI under the ChatGPT account you authorize, and Assistant settings or explicit home memories use Apple iCloud only when you enable their sync switch.
Can the app see my home?
Yes, on your device. CasaRay reads the rooms, devices, state, cameras, and energy information your Home Assistant account permits so it can show them to you.
Can Evotec see my home?
No. We do not have your Home Assistant token, live inventory, camera feeds, or a CasaRay dashboard that exposes your house. Optional notification and Assistant routes are handled separately below.
Can Evotec control it?
No. We do not have your Home Assistant credential or a CasaRay remote-control account. Actions go from your device to the Home Assistant address you configured.
Do camera feeds reach you?
No. The app loads snapshots and streams from your configured Home Assistant or camera route to your device. They do not pass through CasaRay servers.
Separate routes
Everyday control is direct.
External services are optional.
State, controls, camera views, and energy data use the Home Assistant address you choose. CasaRay-operated servers are not part of this route.
When CasaRay is closed, Apple delivers remote notifications through Apple Push. Home Assistant cannot send an alert straight into a closed app, so the relay passes it to Apple. It handles the alert in memory and does not save it.
Chat, voice audio, selected images, and the home context needed for your request are processed by OpenAI under the ChatGPT account you authorize. OpenAI does not receive your Home Assistant token and does not connect directly to your home. CasaRay applies your local control policy before sending actions to Home Assistant.
CasaRay synchronizes your selected Assistant model, reasoning, voice, listening and response preferences, plus explicit home-memory entries. Home Assistant and ChatGPT credentials, conversations, control authorization, diagnostic logs, and privacy permissions stay device-local.
What goes where
A concrete data map.
No vague “we value privacy” promise—this is what the current product actually does.
Complete policy
Privacy Policy
Effective date: August 26, 2026
CasaRay is a local-first smart-home controller for Home Assistant and optional Apple Home accessories. It is designed to control your own smart-home devices through your own providers and Apple devices.
Data stored on your devices
CasaRay may store Home Assistant server settings and metadata, app preferences, rooms, device state, camera state, energy state, favorites, display preferences, compact companion snapshots for widgets, Apple Watch, CarPlay, Shortcuts, and App Intents, and—when Assistant is used—bounded local conversations and selected image attachments, explicit home-memory entries, model and voice preferences, and bounded support diagnostics.
Sensitive credentials
Home Assistant access tokens and ChatGPT OAuth tokens are stored locally in the Apple Keychain. The ChatGPT sign-in page is presented by OpenAI in a secure browser session; CasaRay does not receive or store the password entered there. ChatGPT tokens are stored as device-only Keychain items and are not synchronized through iCloud. CasaRay does not intentionally add stored Home Assistant or ChatGPT tokens to widgets, Shortcuts, App Intents, app-group state, notification relay requests, screenshots, Assistant prompts, diagnostic exports, or support messages. Exact text a user chooses to type, speak, or place in a text control is not secret-scanned and may contain a credential the user mentioned.
Home Assistant and provider connections
CasaRay connects to the Home Assistant URL you provide. It may use HTTPS, WebSocket, and standard Apple networking APIs to test the connection, load state, receive live updates, show camera snapshots or streams, and send service calls. If your Home Assistant address or a camera route uses a third-party remote-access service, that service has its own privacy terms.
If you opt in to Apple Home, CasaRay requests Apple's HomeKit permission and reads only the homes and accessories that Apple's framework makes available to the app. Your selected accessories are normalized on your device. Supported controls and protected camera sessions use Apple's HomeKit framework directly; CasaRay does not turn Apple Home camera pixels into a reusable server URL. You can disconnect Apple Home from CasaRay Settings without changing your Home Assistant configuration.
Your smart-home data
CasaRay does not sell your data, run advertising tracking, or upload your Home Assistant token, device list, smart-home state, camera data, energy data, location data, or preferences to the CasaRay notification relay.
Experimental Assistant and OpenAI
Assistant is offered only where the underlying OpenAI service is supported. Before Assistant sign-in or any OpenAI request, CasaRay combines the current App Store storefront reported by StoreKit with a coarse two-letter country derived from the request IP at CasaRay's Cloudflare network edge. A missing, unknown, or unsupported result fails closed, including a mainland-China network used with a non-Chinese storefront. The edge necessarily receives the request IP; the app reads only the country field, does not retain it, and does not request precise location, language, region format, SIM, or Home Assistant location. Operational edge or origin logs may contain the IP and are retained for up to 14 days. The rest of CasaRay and non-AI CasaRay Plus features remain available.
CasaRay Plus can provide an optional experimental Assistant through a separately eligible ChatGPT account on iPhone, iPad, Mac, Apple Watch, and CarPlay. Watch and CarPlay voice use the paired iPhone runtime rather than storing separate ChatGPT credentials. When you use Assistant, CasaRay sends OpenAI the text you type, voice audio and resulting transcripts during a voice session, images you deliberately attach, the current conversation context, and the portion of your normalized home context needed to answer the request or use a selected tool. Depending on the request, that context can include home, floor, area, room, device, and entity names; current or recent state; available actions and options; action results; camera activity metadata without camera images; and bounded diagnostic evidence.
CasaRay never sends OpenAI your Home Assistant access token. OpenAI does not receive a direct connection to Home Assistant and cannot control the home independently. The model can request a normalized CasaRay tool; CasaRay checks the local subscription entitlement, room and device access rules, confirmation policy, current state, and requested action before the app sends anything to Home Assistant.
If you enable Share redacted Home Assistant error logs, Assistant may send a bounded, locally redacted log excerpt to OpenAI when a diagnostic request needs it. This setting is off by default. Automated redaction can reduce common secrets but cannot guarantee that every private value in a custom log line will be removed.
If you separately enable Allow public web search, Assistant can ask OpenAI's search tool for current public information and return source links. CasaRay sends your latest request exactly as received; the model cannot add a separate search query. CasaRay does not silently attach your configured home location, coordinates, people, device state, credentials, or diagnostic logs. Search results are outside information, not permission to control your home.
Assistant requests are processed under the ChatGPT account and workspace you authorize. OpenAI controls service availability, model and voice availability, account limits, retention, residency, and other data-handling rules. Those rules can vary by account or workspace and may change. Review the OpenAI Privacy Policy, OpenAI Terms of Use, and the data controls available for your ChatGPT account before enabling Assistant.
Assistant conversations and diagnostics
CasaRay keeps a bounded conversation list, selected image attachments, and explicit home memory on the device so you can reopen useful context. If you opt in to Sync Assistant with iCloud, CasaRay also writes the selected model, reasoning, voice, listening and response preferences, plus explicit home-memory entries, to Apple's iCloud key-value storage so those choices can follow you across your Apple devices. The sync is off by default. Home Assistant and ChatGPT credentials, conversations, control authorization, diagnostic logs, and privacy permissions are excluded from that snapshot and remain device-local. Disabling the switch stops CasaRay from publishing or applying further iCloud changes on that device.
Conversations are separated by the active ChatGPT account and Home Assistant home. Assistant support diagnostics are also local. They can include exact transcript text, normalized tool arguments, room and device names, action counts and outcomes, model and voice settings, and stage timings. They do not intentionally add recorded audio, image bytes, stored Home Assistant credentials, stored ChatGPT tokens, request authorization headers, or full private URLs. Exact conversation and text-control values can still contain secrets a user mentioned, so every export is marked accordingly and should be reviewed before sharing.
Assistant diagnostics are bounded to 500 recent events, 1 MB, and 7 days. CasaRay does not upload them automatically. Preparing a support report creates a protected local export; CasaRay keeps at most three recent exports and removes exports older than 24 hours the next time a report is prepared. Evotec receives a report only if you deliberately share it.
People, places, and directions
CasaRay can display the current person and zone locations provided by your Home Assistant instance. Viewing this map does not use this device's location. CasaRay requests foreground location access only after you tap Distance or Route. Distance is calculated on your device. When you request Route, the start and destination coordinates are sent to Apple Maps to calculate directions. CasaRay does not store location history or track in the background.
Why background notifications use a relay
When CasaRay is not running, Apple delivers remote notifications through Apple Push Notification service. Home Assistant cannot send an alert straight into a closed app, so CasaRay provides a small relay that passes the alert to Apple. This route is optional: without it, everyday home control remains direct, but CasaRay cannot show new Home Assistant alerts while the app is closed.
CasaRay can receive Home Assistant notifications while the app is not running. When you enable this feature, CasaRay sends a random installation identifier, the Apple Push Notification service device token, the app identifier, and the APNs environment to the CasaRay notification relay. The relay stores a one-way hash of the installation identifier, a random receiver identifier, the APNs device token, a receiver authentication token, the app identifier, the APNs environment, update timestamps, and daily delivery counters.
Home Assistant sends notification titles, messages, and notification metadata to the relay. The relay processes this content in memory, forwards it to Apple Push Notification service, and does not persist the notification content. Notification receiver paths are excluded from reverse-proxy access logs. Registration and health requests may produce operational logs containing an IP address, timestamp, request path, status code, and user agent. Production relay access logs are configured for deletion after 14 days.
The app renews active registrations periodically. Replaced receiver credentials remain active for up to 15 minutes. Active registrations expire after 180 days without renewal. CasaRay requests deletion when notification delivery is disabled or Home Assistant setup is cleared.
Data use
CasaRay does not operate an advertising network, sell your data, or use your data for third-party tracking. It does not upload your Home Assistant token, device inventory, camera data, energy data, or preferences to the notification relay.
Purchases and Apple services
Apple handles CasaRay Plus subscriptions and payment through the App Store. CasaRay does not run another checkout and does not receive your card or payment details. The app checks with Apple on your device only to learn whether Plus is active. When you enable Assistant iCloud sync, Apple also processes the bounded sync snapshot described above under your iCloud account. Apple may process purchase, download, iCloud, crash, diagnostics, and analytics information according to Apple's policies and your Apple settings.
Feedback and support
If you contact support or send feedback, the information you provide may include your email address, screenshots, crash logs, Assistant support diagnostics, device model, operating system version, Home Assistant version, CasaRay version, and details you choose to include. Diagnostic exports can contain conversation text and home, room, device, and entity names. Review them before sharing. Do not send production Home Assistant or ChatGPT tokens in support requests.
Delete or revoke data
- Before deleting CasaRay, use Clear Setup in CasaRay's Home Assistant settings. This removes the locally stored Home Assistant credential and requests deletion of the relay registration.
- Revoke CasaRay's credential in your Home Assistant profile to invalidate it on the server.
- Disable CasaRay notification delivery separately if you want to keep the Home Assistant connection but remove relay delivery.
- Use Sign out in Assistant Settings to delete the ChatGPT OAuth tokens stored by CasaRay. You can also change or revoke access through your OpenAI account or workspace controls.
- Disable Sync Assistant with iCloud to stop further Assistant preference and explicit-memory synchronization on that device. Copies already synchronized are governed by your Apple iCloud account and Apple's retention controls.
- Delete individual Assistant conversations from the conversation list, clear explicit home memory in Assistant Settings, and clear Assistant support diagnostics before sharing or removing the app if you do not want to keep them locally.
- After clearing or revoking access, delete CasaRay to remove its remaining app data from that device.
Deleting the app alone is not a complete credential-removal step. Apple platforms may preserve Keychain items across app deletion and reinstallation. If CasaRay cannot send the relay-deletion request before it is removed, the inactive registration expires under the retention period above.
Contact
For privacy questions, use the CasaRay support page.
Publisher: Evotec Services sp. z o.o., Poland