Privacy Policy
This policy explains what Ring customer data DoorPop collects, why, how it's protected, and the choices and rights you have over it — including our AI transparency commitments.
1 Ring Data We Collect & Why
DoorPop is a companion app for your Android TV that displays alerts from your Ring account, using Ring's official Partner API. In this policy, "Ring customer data" means any information about you, your Ring account, or your Ring devices that DoorPop receives through that API. We collect only what's needed to provide the features described here — nothing more.
OAuth tokens
What: A Ring access token and refresh token issued when you link your account.
Why: Required to authenticate DoorPop's requests to Ring's Partner API on your behalf, so it can fetch events and start Live View. Stored encrypted on your TV (Android Keystore-backed secure storage), with a corresponding encrypted session held on our backend to broker the connection.
Ring account identifier
What: An internal Ring account ID.
Why: Lets our backend match the correct Ring OAuth session to the correct paired TV — nothing more.
Device information
What: Names, IDs, device type, and online status of the Ring doorbells/cameras on your account.
Why: Lets DoorPop show which camera an alert came from and offer Live View for the right device.
Notification event metadata
What: Event type (doorbell press, motion, package detection), timestamp, and which device triggered it.
Why: This is the alert data DoorPop exists to deliver to your TV in real time. Not retained on our servers beyond what's needed for reliable delivery.
Event thumbnails
What: A small preview image per doorbell event.
Why: Shown in the on-TV Activity screen so you can recognize an event at a glance. Cached locally on your device only — see Video & Live View Recordings below.
Live View session data
What: A short-lived streaming session/authorization.
Why: Lets you open your camera's live feed on your TV, the same way Live View works in the Ring app. Never stored — see below.
Device identity
What: A random identifier generated by each DoorPop installation.
Why: Authorizes that specific TV with our backend. Not derived from or linked to any personal information about you.
2 AI Transparency
We know this matters, so we're stating it as plainly as we can:
DoorPop currently performs no AI analysis on Ring customer data — no image recognition, no classification, no scoring, nothing. Event types (doorbell/motion/package) are reported to us directly by Ring, not inferred by us.
DoorPop does not use Ring customer data — or any customer data — to train AI. This includes machine learning models, large language models (LLMs), generative AI, agentic AI, or any other automated learning system. Not now, and this data has never been used that way in the past.
No facial recognition, no biometric analysis, no health inference, and no profiling based on sensitive personal data (such as race, religion, health, or sexual orientation) is performed on any video, image, or event data DoorPop touches.
No AI-training opt-out is needed or offered — because Ring customer data is never used to train any AI or machine learning system in the first place, there is nothing to opt out of.
If this ever changes
Should DoorPop introduce AI-powered features in the future that use Ring customer data, we will tell you in advance — not roll it out silently — through:
- Release notes for the app update that introduces it.
- Notice in the app itself.
- An update to this Privacy Policy, with a revised "Last updated" date at the top of this page.
- An update to our Terms of Service reflecting the new capability.
3 Legal Basis for Processing
Where the GDPR applies, we process your information under the following legal bases:
- Performance of a contract — processing your Ring tokens and device information is necessary to provide the DoorPop service you've requested.
- Legitimate interests — for security, fraud prevention, and keeping the service reliable, balanced against your rights and expectations.
- Consent — where we ask for it explicitly, such as optional future features; you may withdraw consent at any time.
4 How We Use Your Information
Every purpose we process Ring customer data for is listed here — we don't have undisclosed uses:
- To authenticate with Ring's Partner API on your behalf and relay doorbell, motion, and package events to your TV.
- To let you start a Live View session with your Ring camera from your TV.
- To keep your DoorPop session and device pairing secure and to detect abuse of our backend.
- To provide customer support when you contact us.
We do not sell your information, we do not use it for advertising, and — as covered above — we do not use it to train AI of any kind.
5 Data Minimization
- We only request the Ring Partner API scopes needed for the features described in this policy — device list, event notifications, and live streaming — nothing broader.
- We don't collect your name, address, or payment information from Ring; DoorPop has no signup form of its own and doesn't build a personal profile beyond what's needed to pair a device.
- Notification event metadata is used transiently to relay alerts, not aggregated into behavioral profiles.
- DoorPop does not include any third-party analytics or telemetry SDK, so we don't collect usage analytics about how you interact with the app.
6 Video & Live View Recordings
- DoorPop does not store Ring video recordings. Not on our backend servers, and not persistently on your TV. Video streams directly from Ring's own servers to your TV for as long as you're watching, and is discarded the moment you close it.
- Live View streams are not recorded by DoorPop. We don't create a copy of the stream and don't retain any video file once a session ends.
- The only visual data we keep is a small thumbnail image per event, cached locally on your device for the on-TV Activity list — not full video — and cleared automatically over time per your storage settings.
- You manage your actual Ring recordings and clips through the official Ring app or ring.com. That's entirely Ring's system, and since DoorPop never receives or stores that footage, there's nothing for us to control on your behalf — reviewing, downloading, sharing, or deleting recordings all happens in Ring's own app.
7 Third-Party Processors & Sub-Processors
Ring
DoorPop's core functionality depends on Ring's Partner API (operated by Ring LLC, an Amazon company). Connecting your Ring account means Ring processes requests DoorPop makes on your behalf, governed by Ring's own privacy policy and terms. DoorPop is not affiliated with, endorsed by, or sponsored by Ring or Amazon.
Infrastructure / hosting provider
Our backend runs on cloud server infrastructure provided by Hetzner Online GmbH. Hetzner hosts our encrypted data at rest and in transit as our infrastructure provider, under its own data processing terms — it does not access or use the content of that data for its own purposes.
Google Play Billing
DoorPop does not currently charge for any features. If we introduce a paid subscription in the future, purchases will be processed entirely through Google Play Billing, which has its own privacy practices governing payment information — DoorPop never sees or stores your payment details.
Crash reporting / analytics
DoorPop does not currently use any third-party crash reporting or analytics service. If that changes, this policy will be updated first, and — where required — you'll be asked for consent.
We do not sell Ring customer data, and we do not share it with data brokers, advertisers, or any party outside the processors named above.
8 Human Access to Your Data
- DoorPop's normal operation — token exchange, event relay, Live View brokering — is fully automated, with no human in the loop.
- A small number of authorized DoorPop developers/support staff can access backend infrastructure (e.g., server logs, encrypted data stores) strictly to: debug a reported technical issue, respond to your support or privacy request, investigate security incidents or abuse, or comply with a legal obligation.
- We do not routinely browse, review, or manually inspect individual users' Ring customer data. Access is limited to the purposes above, and is not part of any ongoing monitoring or moderation program.
- No DoorPop employee or contractor ever views your Ring video as part of normal operations — video streams directly between Ring and your TV and is never routed through, or visible to, our backend or staff.
9 Security
All traffic between your TV, our backend, and Ring is encrypted in transit over HTTPS/TLS. Ring OAuth tokens are stored encrypted on your device using Android's Keystore-backed secure storage, and the corresponding session on our backend is stored encrypted at rest. Access to backend infrastructure is restricted and access-key protected.
No method of transmission or storage is 100% secure. If you believe your DoorPop connection has been compromised, disconnect immediately from Settings and contact us.
10 Data Retention
- Ring tokens are retained until you disconnect DoorPop, your Ring authorization expires or is revoked, or Ring itself invalidates them.
- Locally cached thumbnails and event history are retained on your TV according to your storage settings, with automatic cleanup to free space over time.
- Device pairing records on our backend are retained until you disconnect (which revokes them) or, for abandoned pairing attempts that were never completed, until they automatically expire.
- Video and Live View streams are never retained at all — see Video & Live View Recordings above.
11 Your Privacy Rights (DSAR)
You have the right to submit a Data Subject Access Request (DSAR) to find out what Ring customer data, if any, we hold about your DoorPop connection. Depending on where you live, you may also have the right to:
- Access the information we hold about your DoorPop connection.
- Correct inaccurate information.
- Request erasure of your information ("right to be forgotten").
- Restrict or object to certain processing.
- Receive a portable copy of your information.
- Withdraw consent at any time, where processing is based on consent.
- Lodge a complaint with your local data protection authority.
To submit a DSAR or exercise any of these rights, email support@doorpop.app with "Privacy Request" or "DSAR" in the subject line. We respond within 30 days at the latest — see our Support Center for details.
12 Disconnecting Your Ring Account & Deleting Your Data
DoorPop doesn't have a separate DoorPop account system — your connection is simply the link between your Ring account and one paired TV, so disconnecting and deleting your data are the same action.
The fastest way is in-app: go to Settings > Disconnect on your TV. This performs a full factory reset of DoorPop's stored data for that device — it:
- Clears your local Ring tokens from the TV.
- Revokes this device on our backend.
- Clears the shared Ring session.
- Cancels any in-flight pairing attempt.
- Resets this device's local identity and preferences.
If any step can't be confirmed, DoorPop tells you exactly which one instead of just saying "done." If you'd like us to confirm deletion of any residual records tied to a device you can no longer access (for example, a TV that was lost, stolen, or already disposed of), email support@doorpop.app and we'll process your request — within 30 days at the latest.
13 Opt-Out Mechanisms
Because DoorPop's only function is relaying Ring events to your TV, most opt-outs are variations on disconnecting:
- Disconnect Ring (Settings > Disconnect) — the full opt-out. Stops all Ring data relay to that TV immediately.
- Uninstall the app — removes all local data immediately.
- Decline the overlay permission — keeps notifications limited to when DoorPop is the active app, without disconnecting.
- Turn off specific alert types (motion, doorbell, package) directly in the Ring app — DoorPop only ever relays what Ring itself is configured to send you.
Effect of opting out: once disconnected, DoorPop immediately stops receiving any new Ring customer data for that device, our backend record for it is revoked, and locally cached data (thumbnails, event history) is cleared as part of the disconnect flow. You can reconnect at any time by pairing again.
No AI-training opt-out is offered — as explained in AI Transparency above, Ring customer data is never used to train any AI or machine learning system, so there's nothing to opt out of on that front.
14 Children's Privacy
DoorPop is not directed at children, and we do not knowingly collect information from anyone under 13 (or the minimum age required by your local law). If you believe a child has provided us with information, contact us and we will delete it.
15 International Data Transfers
Our backend infrastructure and Ring's own services may process your information in countries other than where you live. Where this involves a transfer out of the European Economic Area, UK, or Switzerland, we rely on appropriate safeguards recognized under applicable law, such as Standard Contractual Clauses.
16 Changes to This Policy
We may update this policy as DoorPop's features change. We'll update the "Last updated" date above, and for material changes — including any future introduction of AI capabilities that use Ring customer data — we'll provide notice in the app before they take effect, in addition to the notice described in AI Transparency.
17 Contact
Questions about this policy?
DoorPop is built and operated by an independent developer team. Reach out any time, or see our Support Center and Terms of Service.
This document is provided for general informational purposes and does not constitute legal advice.