ORB
Privacy Policy
Last updated July 2, 2026
ORB ("we", "us") is a robotic beverage bar. This policy explains what we collect through the ORB app and website, why, and the choices you have.
What we collect
- Account details — your email address, and any name, handle, photo, or bio you choose to add.
- Preferences — dietary preferences and allergies you set, so ORB never composes a drink that includes them.
- Orders — the drinks you compose and order, so your history, rewards points, and reorders work across devices.
- Community activity — drinks you publish, votes, and comments, shown under the handle you choose.
- Health metrics (optional) — if you connect a device such as an Oura Ring, we read daily readiness, sleep, heart-rate, activity, and temperature-deviation summaries solely to tune drink recommendations. We only access this after you explicitly approve it on the provider's consent screen, and you can disconnect at any time.
How we use it
- To compose and prepare your drinks, maintain your order history, and run rewards.
- To personalize recommendations — including, when you ask, sending your request text (and connected-device summaries you invoke) to our AI provider, Anthropic, to compose your drink. AI requests are processed to serve your request, not to build advertising profiles.
- To send sign-in codes to your email (delivered via Resend).
- To generate spoken responses when you enable voice (audio synthesized by ElevenLabs from the assistant's reply text).
What we don't do
- We do not sell your personal information.
- We do not share health metrics with advertisers or use them for anything other than the drink experience you asked for.
- We do not store your payment card details on our servers.
Sign in with Apple & Face ID
If you use Sign in with Apple, we receive a verified identifier and, if you allow it, your email. Face ID unlock happens entirely on your device — biometric data never leaves your iPhone; we only receive confirmation from iOS that the unlock succeeded, and your session key is stored in the device's Keychain.
Storage & security
Data is stored with our infrastructure providers (Vercel and Neon, in secured data centers) and encrypted in transit. Sign-in codes are stored hashed and expire in 10 minutes. Session tokens expire after 90 days.
Your choices
- Use ORB as a guest without an account.
- Edit or remove profile details in the app at any time.
- Disconnect a health device at any time from the device sheet or the provider's account settings.
- Request a copy or deletion of your data by emailing us — we'll act within 30 days.
Children
ORB is not directed at children under 13, and we don't knowingly collect their data.
Changes
We'll update this page when the policy changes and note the date above. Material changes will be flagged in the app.