Security & Privacy

Your data is safe with us.

Here is how we protect your family's personal and medical information.

No number to ring. No inbox to fill.

The Ken has no phone number, no email address, no web browser and no app store. There is nothing on it to dial, nothing to mail, and nothing to browse into, so a cold caller has nowhere to call and a phishing message has nowhere to land.

Reaching the screen at all takes a credential your family was given: an account with a role on that Ken, or the family link the portal hands out. The contacts you approve in the portal are the ones whose faces appear on the screen and whose names the Ken knows.

If the Ken goes missing, you can shut it out.

Report a Ken lost or stolen from the portal and our servers stop answering it. No start-up key, no check-in, no updates, and if it is switched on at the time it locks its screen there and then. Without our servers a Ken cannot call, cannot be called, and cannot fetch a thing.

Nobody sits between your Ken and us.

When the Ken calls our servers it checks them against keys held in its own software. Someone on your Wi-Fi cannot pretend to be us, even holding a genuine-looking certificate from somewhere else.

Getting in takes an invitation you sent.

Medical details are encrypted before they are stored.

The most sensitive fields are turned into ciphertext on our servers before they reach the database, so a copy of the database on its own does not read them back.

Found a security issue? Tell us.

We welcome reports from security researchers and members of the public. If you believe you have found a vulnerability in The Ken, the portal, the family app, or our cloud services, please contact us before disclosing it publicly.

How to report

Email security@theken.uk with a clear description of the issue, the steps to reproduce it, and the potential impact. A machine-readable copy of this policy is published at /.well-known/security.txt.

What we promise

  • We will acknowledge your report within one working day
  • We will give you a substantive response within five working days
  • We will keep you informed as we work on a fix
  • We will credit you publicly on this page if you wish, once the issue is resolved
  • We will not take legal action against researchers who report in good faith and follow this policy

What we ask

  • Give us a reasonable time to fix the issue before disclosing it publicly. Ninety days is our default, less if the issue is already public, more if the fix is genuinely complex
  • Do not access, modify, or delete data that does not belong to you
  • Do not run automated scanners against the production environment without prior agreement
  • Do not test denial of service, social engineering, or physical attacks
  • Do not publish or share the issue until we have agreed it is safe to do so

Out of scope

  • Issues in third-party services we use (Cloudflare, Resend, Stripe) - please report to the vendor directly
  • Reports generated solely by automated scanners with no demonstrated impact
  • Missing security headers without a demonstrated exploit
  • Self-XSS, clickjacking on pages without sensitive actions, or rate limiting on non-authentication endpoints

Acknowledgments

Nobody has reported a vulnerability to us yet. When somebody does, and the fix is out, their name goes here if they want it.

We keep your Ken patched for at least five years.

Every Ken receives security updates over the air. Each update is signed with a key we hold, checked by the Ken before it is installed, and applied on its own. There is nothing for you to do.

Our commitment. We will provide security updates for every Ken sold from the date of purchase, for a minimum of five years. We expect to provide them for longer; five years is the floor. We will not shorten it.

What an update replaces. The over-the-air channel replaces the software the Ken runs: the application, its screens, and the rules it follows. Our cloud services, the admin portal and the family app we update ourselves, on our own servers and through the app stores. The operating system underneath the application is set when we build a Ken's storage card, and we change it by issuing a new card rather than over the air.

How we tell you. Security fixes are installed automatically and quietly. New features, changes to how we handle your data, and changes to how often updates arrive are emailed to the registered account holder and posted on this page.

UK law requires a consumer connectable product to publish the minimum period for which it will receive security updates. The five years above is ours, published here so you can hold us to it.

Your privacy matters.

We collect only what is needed to run The Ken and keep people connected. We never sell your data and we never hand it to advertisers. Two machine services do see content: a voicemail is transcribed by a speech model running on Cloudflare's own infrastructure, and a question typed into our support chat is answered with help from Anthropic's Claude. Both are named in the privacy policy.

Our full Privacy Policy is available at Privacy Policy.

Terms of use.

Using The Ken and portal means you agree to our terms of service. They cover your subscription, our responsibilities, how we handle data, and your rights under UK consumer law.

Our full Terms & Conditions are available at Terms & Conditions.