Legal
Privacy Policy
Last updated July 3, 2026
This Privacy Policy explains how Born Labs, Inc., a Delaware corporation (“Onsite,” “Born Labs,” “we,” “us,” or “our”), collects, uses, shares, and protects information when you use the Onsite app, the Onsite head mount, our website at joinonsite.com, and related services (the “Service”). It also describes your privacy rights and how to exercise them.
Important: Onsite records first-person video and audio and may collect biometric information (such as your face, voice, and likeness). Please read the “Recordings and biometric information” section below carefully. By creating an account or using the Service, you agree to this Policy and, where required, provide the consents described here.
1. Who we are and how to reach us
Born Labs, Inc. is the controller responsible for your personal information. For any privacy question or request, contact us at support@born.com.
2. Information we collect
We collect the following categories of information:
- Account and identity information — your name, email address, mobile phone number, login credentials, and, if you use Sign in with Apple, the identifier and email (which may be a private relay address) that Apple shares with us.
- Recordings (video and audio) — the first-person (egocentric) footage you capture. Recordings may contain images of your surroundings and home, your voice, your face and likeness, your movements, and, where present, other people who appear or are heard. This may include biometric information (see Section 4).
- Payout and transaction information — your balance, approved recordings, withdrawal history, payout-method identifiers provided by our payment processor, and, where legally required, tax information (such as a Form W-9 and related identifiers).
- Device, app, and usage information — device model and identifiers, operating system, app version, IP address, crash and diagnostic logs, and analytics about how you use the app.
- Approximate location — where you grant permission, coarse location used to provide relevant content and notifications. We do not require precise background location to record.
- Communications — messages you send us (for example support requests) and your SMS/email opt-in status.
- Website cookies and similar technologies — analytics and advertising identifiers and pixels on our website (for example the Meta Pixel), which you can control through your browser and device settings.
3. How we collect information
We collect information directly from you (when you create an account, record and approve footage, opt in to messages, or contact us), automatically from your device and app (through analytics, crash reporting, and logs), and from service providers that help us operate the Service (such as our payment processor, messaging provider, and Apple for Sign in with Apple).
4. Recordings and biometric information
Because Onsite captures first-person video and audio, your recordings may contain biometric identifiers and biometric information — including your face geometry, voice, and other characteristics that can identify you — as well as similar information about other people who appear in the footage. Some jurisdictions (for example, Illinois under BIPA, Texas, and Washington) regulate this information.
- Consent. By enabling recording and submitting footage, you consent to our collection, storage, use, and disclosure of biometric information contained in your recordings for the purposes described in this Policy and in our Terms of Service, including reviewing and scoring footage, calculating payouts, and building and improving machine-learning datasets and models for artificial intelligence and robotics.
- Bystanders. You are responsible for obtaining any consent required from other people who appear in your recordings, as set out in the Terms. You control what you record and approve before upload, and, where available, you can blur faces and sensitive areas.
- Retention and destruction. We retain biometric information only as long as reasonably necessary for the purposes described here and to satisfy legal obligations, and we destroy or de-identify it in accordance with applicable law — for example, under BIPA, within the earlier of when the purpose has been satisfied or three (3) years after your last interaction with us. See Section 9.
- No sale of biometric data. We do not sell biometric identifiers or biometric information.
5. How we use your information
- To provide, operate, maintain, and improve the Service and hardware.
- To review, score, and approve recordings against dataset requirements and to calculate and process your payouts.
- To develop, train, validate, and improve machine-learning datasets and models for artificial-intelligence and robotics systems, and to create derived data and products, as described in the Terms.
- To communicate with you about your account, orders, deliveries, recording reviews, and payouts, including by email and SMS (see Section 7).
- To personalize content and, on our website, to measure and improve marketing.
- To detect, prevent, and address fraud, abuse, security incidents, and violations of our Terms.
- To comply with legal, tax, and regulatory obligations and to establish, exercise, or defend legal claims.
6. Legal bases (EEA/UK users)
Where the EU or UK GDPR applies, we rely on: performance of our contract with you (to operate the Service and process payouts); your consent (for example for biometric data, SMS, and certain cookies, which you may withdraw at any time); our legitimate interests (to secure, improve, and market the Service, and to build our datasets and models, balanced against your rights); and compliance with legal obligations (for example tax and record-keeping).
7. SMS messaging
If you provide your mobile number and opt in, we send transactional SMS updates — for example when your head mount ships or is out for delivery, and when a recording is accepted and your payout is ready. Message frequency varies with your activity. Message and data rates may apply. Reply STOP to opt out or HELP for help.
We do not sell or share your mobile phone number or SMS opt-in information with third parties or affiliates for their own marketing purposes. Phone numbers are used only to deliver the Onsite messages described above, through the messaging providers that operate our SMS service on our behalf.
8. How we share information
We do not sell your personal information for money. We share information only as follows:
- Service providers / processors who work on our behalf under contracts that limit their use of your data — including cloud hosting and storage, our SMS/messaging and push-notification providers (such as OneSignal), payment and payout processors, analytics (such as Mixpanel), crash and error monitoring (such as Sentry), and Apple for Sign in with Apple.
- Buyers and licensees of datasets and models. We provide AI training datasets, trained models, and data derived from recordings to third parties. This material is used to build AI and robotics systems and may be provided in de-identified, aggregated, or transformed form or as part of a trained model. Depending on your jurisdiction, certain such disclosures may be considered a “sale” or “sharing” of personal information under privacy laws; see Section 11 for your opt-out rights.
- Legal and safety recipients, when we believe disclosure is required by law or legal process, or is necessary to protect the rights, safety, and property of you, us, or others, or to prevent fraud or abuse.
- Business transfers — in connection with a merger, financing, acquisition, reorganization, or sale of assets, subject to this Policy.
- With your direction or consent — when you ask us to share information or otherwise consent.
9. Data retention
We keep personal information for as long as needed to provide the Service, operate our business, and meet legal, tax, and accounting obligations, after which we delete or de-identify it. In general: account information is retained while your account is active and for a reasonable period afterward; payout and tax records are retained for the periods required by law; recordings and their derived data are retained to operate and improve the Service and our datasets and models; and biometric information is retained and destroyed as described in Section 4. Note that data already incorporated into a trained model or de-identified dataset may persist even after an underlying recording is deleted, as explained in the Terms.
10. Data security and international transfers
We use technical and organizational measures designed to protect your information, including access-controlled, region-pinned storage that we control, encryption in transit, and restricted internal access. No method of transmission or storage is completely secure, and we cannot guarantee absolute security. We may process and store information in the United States and other countries. Where we transfer personal data across borders (for example from the EEA or UK), we use appropriate safeguards required by law, such as Standard Contractual Clauses.
11. Your U.S. privacy rights (California and other states)
Depending on your state (for example California under the CCPA/CPRA, and similar laws in Virginia, Colorado, Connecticut, Utah, Texas, and others), you may have the right to:
- know and access the personal information we collect about you;
- request correction of inaccurate personal information;
- request deletion of your personal information;
- opt out of the “sale” or “sharing” of personal information and of targeted advertising;
- limit the use of sensitive personal information (which may include biometric data and precise geolocation); and
- not receive discriminatory treatment for exercising your rights.
Categories collected. In the past 12 months we may have collected the categories described in Section 2, including identifiers, customer records, commercial/transaction information, internet and device activity, approximate geolocation, audio and visual information, biometric information, and inferences.
How to exercise your rights. Email support@born.com (you may also use in-app controls and the unsubscribe/STOP mechanisms). We will verify your request and respond within the timeframes required by law. You may use an authorized agent where permitted. To opt out of any “sale” or “sharing,” email us with the subject line “Do Not Sell or Share My Personal Information.”
12. Your rights (EEA/UK users)
If the GDPR applies, you may have the right to access, correct, delete, restrict, or object to processing, to data portability, and to withdraw consent (without affecting prior processing). You may also lodge a complaint with your local supervisory authority. To exercise these rights, contact support@born.com.
13. Cookies and tracking
Our website uses cookies and similar technologies for functionality, analytics, and advertising (including the Meta Pixel). You can control cookies through your browser settings and control mobile advertising identifiers through your device settings. Some browsers offer a “Do Not Track” or Global Privacy Control signal; where required by law, we honor recognized opt-out preference signals as a request to opt out of sale/sharing.
14. Children
The Service is not directed to anyone under 18, and we do not knowingly collect personal information from children. If you believe a minor has provided us information, or appears in a recording without proper consent, contact us so we can address it.
15. Third-party links and services
The Service may link to or rely on third-party services (for example app stores, payment providers, and websites). Their privacy practices are governed by their own policies, and we are not responsible for them.
16. Changes to this Policy
We may update this Privacy Policy from time to time. If we make material changes, we will update the “Last updated” date above and, where appropriate, provide additional notice. Your continued use of the Service after changes take effect means you accept the updated Policy.
17. Contact us
Born Labs, Inc. — questions about this Policy or your data? Email us at support@born.com.