Relay
Privacy Policy
Effective 1 October 2026
Relay records your day and runs an assistant on a machine that belongs to one person. This page says what is recorded, where it goes, who can see it, and how to get it back or have it deleted.
Who we are
Relay is made by UU Lab, a name used by Les campagnes Jappuie inc., a corporation registered in Québec, Canada (NEQ 1181610727), 770 rue Notre-Dame, Champlain, Québec G0X 1C0. We are responsible for the personal information described here. For anything in this policy, write to alexis@relay.glass.
What the glasses record, and when
Relay One glasses have a microphone and a camera. The glasses send what they hear to your phone over Bluetooth, and the phone is what makes the recording — so nothing is recorded while the glasses are out of range of it. Recording is on only while Record my day is on in the Relay app. You agree to it the first time you turn it on, and you stop it with the same switch. Stop for good, under that switch, withdraws your consent entirely: recording, Talk and your AI's name all stop until you turn recording on again. While Listening is on, the glasses' microphone stays open for your AI's name, and the app shows it.
Taking the glasses off does not stop the recording. They can tell whether they are being worn, and the app shows it, but that signal does not gate what is recorded. If you want recording to stop, switch Record my day off.
The phone app shows the recording state at all times. We do not claim that a light on the glasses tells the people around you that they are being recorded.
The glasses can hear other people. Recording a conversation without the consent of everyone in it is restricted in many places, including Québec and several US states. Telling people, and what you do with a recording, is your responsibility.
Photos you take with the glasses are copied to your box.
What the phone app collects
- Audio. What the glasses hear while Record my day is on, and your voice when you speak to the assistant.
- Transcripts and what is made from them. The day's moments, notes, reminders, scratchpads and the messages you type.
- Precise location, on request. One fix per spoken ask such as "what's around here". The phone names the place itself; the coordinates go to your box and nowhere else.
- A device identifier. Apple's identifier for vendor, so your box can tell this phone from another. It resets when you delete the app.
- Your email address. Sign-in is a six-digit code we email you; there is no password.
- A phone number, optional. Only if you register a mobile number so that texts to Relay's shared line reach your box.
- Connector sign-ins. Tokens, passwords and one-time code seeds you give the assistant for other services. They are encrypted in your box's vault. The assistant can read a token when a task needs it; a password is only revealed with a stated reason, and you can remove any of them.
- Purchase and hardware. The serial you redeem, the glasses' Bluetooth hardware address and your time zone, sent once at redemption.
- Push tokens. Apple push tokens, so your box can update a job card on your lock screen.
- Diagnostics. A debug log stays on the phone and leaves it only if you hand it to us. No analytics or crash-reporting SDK runs.
Your voiceprint, if you enrol one, is computed and kept on the phone only. The app does not read your contacts, calendars, health data or browsing history.
Where it goes
The phone talks to your box over an encrypted (TLS) connection through
rz.relay.glass, a relay we run so that a box behind a home
router can be reached. The relay joins two connections and keeps nothing on
disk. It is a server we operate: the link is encrypted to the relay and from
it, not end to end.
The box is one machine for one person: your own computer if you self-host, or a Relay Cloud machine we provision on Fly.io. Audio, transcripts, photos, the vault and the assistant's memory live on that machine's disk. Nothing is pooled with other customers.
When you speak to the assistant, the phone uses Apple's speech recognizer. It asks for on-device recognition when your language supports it; otherwise Apple's servers do the recognition, under Apple's terms. The day's recordings are transcribed by the box, using the speech provider configured on it, which is either a model running on the box or a hosted service.
The wake-word and speaker models the phone runs are downloaded the first time they are needed from ModelScope (modelscope.cn), Hugging Face and GitHub. Those hosts see the download request and nothing else.
Who else sees it
- The model providers configured on your box — answer your questions, transcribe your recordings and speak the reply. What you say, and the context needed to answer, is sent to them. On a self-hosted box you choose them.
- Fly.io — runs Relay Cloud boxes, and hosts this website. A scratchpad you choose to share is a public link on relay.glass.
- Supabase — account, box ownership, serial and phone-number records, this website's visit counts and the recordings of your visits to it.
- Stripe — payments. We never see your card number.
- Postmark — sign-in codes and receipts by email.
- Twilio — only if you register a phone number; it carries the texts.
- Apple — push notifications, and speech recognition when on-device recognition is unavailable.
- Meta, Google, TikTok, Reddit and AppLovin — only through this website, and only as This website, and ads describes.
These providers operate in Canada, the United States and the European Union, so your information may be stored and processed outside Québec.
Google account data
Connecting Google is optional and starts from the app. Relay asks only for the Gmail, Calendar and Drive scopes a feature needs, reads that data only to answer a request of yours, and never uses it for advertising or to train a model. The token is kept in your box's vault. Disconnect it in the app, or at your Google Account.
Relay's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements.
This website, and ads
relay.glass counts its own visits: which pages are opened, a handful of buttons pressed — ordering, playing a film, the cart and checkout steps — and how fast each page loaded. With a visit we keep the site that linked here (its name, not the page), the campaign, ad set and ad a link names, or the partner code it carries, whether you are in Canada, the United States or elsewhere, and the kind of device, browser and system. It sets no cookie and stores nothing in your browser. Your IP address and browser details are not kept: they are mixed with a random code that is replaced every day, only to tell one day's visitors apart, so two visits on different days cannot be linked and nothing identifies you. Visit counts are deleted after 400 days.
The website carries advertising tags from Meta (Facebook and Instagram), Google, TikTok, Reddit and AppLovin. Those companies set cookies and receive the pages you open on relay.glass, what you add to the cart, when you start a checkout and, if you buy, the order number, what you bought and the amount, together with your browser's details and IP address. They use it to show you Relay ads on their services and in the apps they place ads in, and to tell us whether our ads worked, under their own privacy policies. AppLovin's tag also records the links and buttons you click and how long a page stays open, reads technical details of your browser and device, such as its graphics hardware, to recognise it, keeps its identifiers in your browser's storage as well as in cookies, and lets Google's ad network recognise the same browser. If AppLovin has its automatic email matching on for our account, it also reads an email address you type into a form on this site, scrambled by a one-way hash. When you buy, we also send Meta the order from our server, with your email address, phone number, name, city, postal code and country, each scrambled by a one-way hash, so the sale can be matched to an ad. With a purchase, AppLovin also receives your email address, scrambled by a one-way hash, for the same reason.
Meta also receives from us what its tag alone would not. Each page you open and each step you take — looking at Relay, adding it to the cart, choosing a plan, starting a checkout, typing your email at checkout, sending the teams form — is sent to Meta a second time from our server, with your IP address and browser details, so that an ad blocker does not hide it. We give Meta a random visitor code this site keeps in a cookie and in your browser's storage for a year; Meta receives it scrambled by a one-way hash, and we keep it with your order to know which visit led to it. If Meta's tag has not set its own two cookies yet, this site sets them, one of them recording the Meta ad you arrived from. When you send the teams form or type your email at checkout, Meta receives that email address, scrambled by a one-way hash in your browser. Meta's tag also reads the contact details you type into a form on this site — your email address, phone number, name and address, at checkout for example — and receives them scrambled by the same kind of hash, to match your visit to a Meta account. When you buy, the order we send Meta also carries your IP address and browser details, which we keep with the order at our payment processor, Stripe. If you start a trial, we tell Meta when it becomes a paid membership, with the amount and the same scrambled details.
relay.glass also keeps its own record of how you came to Relay, to learn which ads and links lead to sales: each visit that arrives from a link carrying campaign words, from an ad, from another site or from a partner's link, and the first page of each visit, with the visitor code above, the campaign words, the ad click code Meta adds to its links (Google's and TikTok's are only noted as present), the page, and the site that linked here. Our server keeps the visitor code in a cookie of its own for a year, which no script can read. relay.glass may also recognise this browser from its technical details — its screen, time zone, languages, system, processor count, memory and graphics chip — kept only as a scrambled code, with the network you came from also scrambled, for 30 days, and used for one thing: to find your earlier visitor code when that cookie was lost, and only when a single earlier code matches. It is never given to Meta or anyone else. When you buy or send the teams form, this record is joined to your order or enquiry by a one-way hash of your email address and your Stripe customer number, so a sale, and its later renewals and refunds, can be credited to the ad or link that led to it. The visits and the joins are deleted after 400 days, the order figures after three years. You can have this record deleted by writing to us.
The campaign words of the link you arrived by — never an ad click code — are also kept in your browser tab alone, until you close it, and go with your order to Stripe, so a sale can be credited to a campaign.
relay.glass records your visit to its public pages, so we can see where the site is unclear: the pages as they appeared on your screen, and your scrolls, taps, clicks and pointer movements. It never records what you type — every field is hidden in your browser before anything is sent. It records checkout too, with everything you give there hidden the same way: your email, address and phone appear only as asterisks, and the card and address forms, which are Stripe's, cannot be recorded at all. It never records the thank-you page, your account or our own pages; of those we note only that you reached them. With a recording we keep the campaign words of the link you arrived by, the site that linked here, whether you are in Canada, the United States or elsewhere, the kind of device, browser and system, and your screen size, but never your IP address. The recordings are made by our own copy of rrweb, an open-source recorder, and kept by us at Supabase; no one else receives them. They are deleted after 14 days. You can have your recordings deleted by writing to us.
The advertising tags and the recordings are on for every visitor, from the first page you open — in Canada and everywhere else, not just the United States. Until 1 October 2026 they waited for an Allow choice outside the United States; they no longer wait, and there is no switch on this site to turn them off. A browser that sends a Global Privacy Control signal, or one that refused them here before, is served them all the same. Your browser's own cookie settings, or a content blocker, still stop what they can. Nothing about buying, or about the app, depends on the tags.
The app carries none of these tags.
We keep the email you type at checkout with your order. If you stop before paying, we send one reminder about a day later, with an unsubscribe link. We delete it after six months.
How long we keep it
Audio is kept. On Relay Cloud, recordings are kept until you close your account, and the assistant can play a moment back to you. On your own computer, transcribed audio is kept for one day unless you set it to keep it longer. You can't delete one recording yet. Deleting your account deletes everything.
Transcripts, notes, reminders, photos and the vault stay on the box until you delete them or the box is destroyed. Account, serial and billing records are kept while you have an account; after that, only what tax and accounting law requires. A sign-in code expires after ten minutes.
Your rights
You can ask what we hold about you, have it corrected, get a copy, or have it deleted. In the app you can withdraw recording consent, disconnect a connector, and delete notes, reminders and scratchpads.
To delete everything, delete your account in the app: Settings → My account → Delete account. Or write to alexis@relay.glass from the address on your account. Either way we wipe everything your AI keeps — every recording, transcript and credential — and delete your account record. By email, we answer within thirty days.
Québec's Law 25 and PIPEDA
The person in charge of the protection of personal information is Alexis Massicotte, alexis@relay.glass. We collect only what a feature you use needs, and we do not sell personal information. The advertising tags on this website are not a sale; some US state laws call them sharing. If you are not satisfied with our answer, you can complain to the Commission d'accès à l'information du Québec or to the Office of the Privacy Commissioner of Canada.
If we discover a breach that could seriously harm you, we will tell you and the Commission as the law requires.
Children
Relay is for people aged 13 and over. We do not knowingly collect a younger child's information; if you think we have, write to us and we will delete it.
Changes
When this policy changes, the date at the top changes. For a change that materially affects what we collect or who sees it, we will email you before it takes effect.
Contact
Les campagnes Jappuie inc. (UU Lab)
770 rue Notre-Dame, Champlain, Québec G0X 1C0, Canada
alexis@relay.glass