Who sees what

Privacy and human response are one promise.

Only what you choose to send ever leaves—and the interface shows the recipient before you send it.

01

Private reflection

Audience: only you.

Voice or text reflection is never summarized, scored, inferred, or exposed to a program. Using it—or not using it—does not create a staff signal.

02

Your check-in

Audience: the team named on screen.

A four-face check-in and optional concern become program-visible only after you review and send them.

03

A handoff

Audience: the named person or role.

The request contains only the payload in the preview. It has an accountable owner, response window, fallback, and member-visible status.

Consent changes with context

Joining, sending, discharge, and revocation are separate choices.

1
JoinSee the program, support team, and current data contract.
2
SendReview the exact payload and recipient every time.
3
DischargeDecide again whether an alumni connection continues.
4
RevokeStop future sharing and review export or deletion controls.
Program join contractExact send previewSharing controls
Separate products

Joining Recovery never grants access to AI Wellness data.

Cartha AI Wellness and Cartha Recovery have separate product identities and data contracts. A program connection cannot read an individual's separate AI Wellness conversations or history.