Privacy Policy
Last updated August 9, 2026
Who we are
“OpenHouse” (“we”, “us”) is a sign-in and lead-capture app for real-estate agents, available on iPhone and iPad and on the web at app.openhousekiosk.com. The service is operated by Amenti Labs. You can reach us about privacy at contact@openhousekiosk.com.
Two roles: agents and their visitors
For the visitor information an agent captures at their open house, the agent is the data controller and OpenHouse acts as a processor on the agent’s behalf — it is the agent’s relationship with their visitor, and the agent decides how that information is used. For an agent’s own account and how they use the app, OpenHouse is the controller. This distinction shapes the rights below: a visitor exercises their rights through the agent who signed them in, while an agent exercises theirs directly with us.
Information we handle
Visitor sign-in information — captured by an agent when a guest signs in:
- Name, email address, and (optionally) phone number.
- Buying/selling interest and the guest’s answers to the agent’s qualifying questions (for example timeframe, financing, whether they have a home to sell).
- Marketing-contact consent, including the exact opt-in wording the guest agreed to and the time they agreed — kept as proof of consent.
- An optional disclosure-acknowledgment signature, and whether the guest verified control of their email at sign-in.
Agent account information — name, email, a securely hashed password (handled by our authentication provider), team membership and role, and branding you set.
Subscription information — your OpenHouse Pro / team subscription status and the transaction identifiers needed to keep features unlocked. Solo purchases are made through the Apple App Store; team subscriptions are billed on the web through Stripe. In both cases your card details are handled by Apple or Stripe directly — we never receive or store your full payment-card number.
Product-usage analytics — app and feature events plus basic device/app metadata, used to understand how the app is used and to improve it. This analytics data is not linked to visitor identities and is not used to track you across other apps or sites.
Where analytics does and does not run. Product analytics runs only in the signed-in agent area of the app, and it identifies the agent who holds the account. It does not run on the pages an open-house visitor actually sees: the self sign-in link, the QR sign-in page, the shared contact card, shared documents, printable sign-in sheets, and event recaps are all free of analytics and session recording. If you signed in at an open house as a visitor, none of your keystrokes or contact details were recorded by an analytics provider.
How information is stored and synced
Local-first, offline by default. Sign-in and event data is captured on the agent’s device in an encrypted on-device database protected by iOS Data Protection. The kiosk works fully offline — no connection is required to sign visitors in.
Cloud sync is optional. When an agent turns on cloud sync, or joins or creates a team, their events, leads, and settings sync to OpenHouse’s cloud (hosted on Supabase) so they’re backed up and available across that agent’s devices — and, for a team, to the agent’s teammates according to each member’s role. Access is enforced by row-level security so an agent only ever sees their own data or their team’s data.
Service providers we rely on
We use a small set of vetted providers to run the service. They process data only to provide their function to us, under their own security and privacy commitments:
- Supabase — cloud database, authentication, and file storage for synced accounts and teams.
- Mixpanel — product-usage analytics in the iOS app (not linked to visitor identities).
- PostHog — product-usage analytics for the signed-in agent area of the web app and for our marketing site. It does not run on the visitor-facing sign-in, QR, contact-card, document, print, or recap pages.
- Apple — App Store subscription purchases and billing.
- Superwall — presents subscription options and keeps Pro entitlement in sync.
- Resend — transactional email such as team invitations and sign-in verification codes.
- Cloudflare — hosting and delivery of the OpenHouse web app.
- Stripe — payment processing for OpenHouse team subscriptions (seat billing, card details, and invoices). Stripe handles card data directly; we never store your full card number.
- CRMs and automations you connect — if an agent connects a CRM or automation tool (for example Follow Up Boss, Lofty, BoldTrail, Sierra, HubSpot, or Zapier), captured leads are delivered there at the agent’s direction. Data flows to those tools only when the agent connects them.
How we use information
- Provide, sync, and back up the app and its features.
- Authenticate agents and secure their accounts and teams.
- Process subscriptions and keep Pro features unlocked.
- Send transactional email (team invites, sign-in verification, account notices).
- Deliver captured leads to the CRMs and tools an agent chooses to connect.
- Diagnose problems and improve the app using aggregate analytics.
- Comply with legal obligations and enforce our terms.
Sharing, ads, and “no sale”
We do not sell or rent personal information, we do not serve advertising, and we do not track you across other companies’ apps or websites. We share information only with the service providers listed above, where an agent directs us to (such as a CRM export), or where required by law or in connection with a business transfer (in which case this policy continues to apply).
Data retention
An agent’s account and synced data are kept while the account is active, and deleted when the agent deletes their account (see below) or asks us to remove it. Analytics are retained in aggregated form. Data captured on a device is removed when the agent deletes those records or removes the app. Some records may be retained where required for legal, tax, or security reasons.
Security
Data is encrypted in transit (TLS) and at rest — on the device via iOS Data Protection, and in the cloud via our providers. Access to synced data is constrained by row-level security and least-privilege keys. No method of storage or transmission is ever completely secure, but we work to protect your information and to limit access to it.
Your choices and rights
If you’re an agent:
- View and edit your data anytime in the app.
- Delete your account and its data in the app under Settings → Delete Account. This permanently deletes your OpenHouse account and the data you own; if you own a team, you’ll be guided to reassign or close it first.
- Export your leads at any time via CSV or PDF.
- Manage or cancel your subscription in your App Store account settings.
- Ask us to limit non-essential analytics by emailing contact@openhousekiosk.com.
If you signed in at an open house: OpenHouse doesn’t have an independent relationship with you — the hosting agent decides how your information is used. To access, correct, or delete your sign-in information, contact the agent who hosted the event. You may also email us and we’ll route your request to that agent.
Regional rights. If you are in California, you have the right to know, delete, and correct your personal information and to not be discriminated against for exercising those rights; we do not sell personal information. If you are in the EEA or the UK, you have the right to access, rectify, erase, restrict, port, and object to processing of your personal information, and to complain to your local supervisory authority. Where we act as controller, we rely on performing our contract with you, our legitimate interest in improving and securing the service, and your consent where applicable.
International transfers
Our service providers may process information in the United States and other countries. Where required, we rely on appropriate safeguards for those transfers.
Children
OpenHouse is not directed to children under 16 and we do not knowingly collect their personal information. Agents must not use the kiosk to collect information from children.
Changes to this policy
We may update this policy from time to time. We’ll revise the “Last updated” date above and, for material changes, note them in the app. Continued use after an update means you accept the revised policy.
Contact
Privacy questions: contact@openhousekiosk.com. OpenHouse is operated by Amenti Labs.