← Security Cameras
D

Google Nest Doorbell (Battery)

Battery-powered facial recognition for your front door. Google stores your visitors' faces.
Serious concerns
Google · 🇺🇸 United States · WiFi + Bluetooth
PolicyApp PermissionsNetwork TrafficFirmwareRegulatory
Technical details
FCC ID: A4RGUV
Chipset: Ambarella SoC (estimated)
App: com.google.android.apps.chromecast.app
Manufacturer: Google
Model: Nest Doorbell (Battery) 2nd Gen

⚠️ The bottom line

Google says your doorbell processes video locally on the device for privacy. But all the event clips still get uploaded to Google's cloud servers. The local processing just decides what to send — your footage still ends up on Google's computers. Google says you can always access and delete your doorbell footage. But when the FBI needed video in the Nancy Guthrie case, Google recovered footage from behind-the-scenes systems that the user couldn't even see in the app. Your video doesn't truly disappear when you think you've deleted it.

Legal jurisdiction
🇺🇸 United States (headquarters)
CLOUD Act read more →
US govt can demand your data from this company even if stored overseas
FISA §702 / PRISM read more →
NSA collects stored emails, photos, messages without individual warrants
Geofence warrants read more →
Police can demand location data for everyone near a crime scene
Spying
4/4 EXTREME
Is someone spying on me?
Data Sharing
4/4 EXTREME
Who gets my data?
Security
3/4 HIGH
Is it actually secure?
Honesty
3/4 HIGH
Can I trust what they say?
REPLACE Extreme risk. Look for alternatives or lock down hard.
10Contradictions
3Critical
5High
2Medium
5Sources
Findings by concern
Spying 4/4 EXTREME 6 findings
⚠️ criticalpolicy claims vs firmware analysis
Google advertises strong TLS encryption to protect your doorbell video. But a critical security flaw (rated 9.8 out of 10) meant the doorbell wasn't actually checking if it was talking to a real Google server. Anyone on your Wi-Fi network could have intercepted your video — the encryption was basically useless because the doorbell would trust any impersonator.

What they claim: Google Nest marketing highlights "TLS/SSL with 128-bit AES" encryption and states devices use "Verified Boot" and automatic security updates. Google commits to "at least 5 years" of security updates.

What we found: CVE-2024-44097 (CVSS 9.8 Critical) revealed the Nest Doorbell firmware before version 1.73c did not properly validate TLS server certificates. This allowed any network attacker to intercept video streams and credentials via man-in-the-middle attack — completely negating the advertised TLS/SSL encryption. The vulnerability affected all Nest cameras and doorbells.

⚡ highpolicy claims vs app permissions
Google says your doorbell video is kept away from advertising. But the app requires a Google account — the same one used for your search history, YouTube, Gmail, and Maps. The app reads your contacts and tracks your location. Even if the video itself isn't used for ads, Google knows when you leave home, when you have visitors, and how often you use your doorbell — all tied to your advertising profile.

What they claim: Google states: "we will keep your video footage, audio recordings and home environment sensor readings separate from advertising."

What we found: The Google Home app (com.google.android.apps.chromecast.app) requires a Google account, linking doorbell data to the same profile used for search, YouTube, Gmail, and Maps. App includes Google Firebase Analytics tracker. App requests QUERY_ALL_PACKAGES (can see all installed apps), READ_CONTACTS, GET_ACCOUNTS, and ACCESS_FINE_LOCATION. Google's own policy admits "specific partners" can "collect information from your browser or device for advertising purposes using their own cookies." While video itself may not directly feed ad targeting, the Google account linkage means the metadata (when you come home, when you have visitors, how often you leave) enriches the same advertising profile.

⚡ highapp permissions vs regulatory findings
The Google Home app tracks your precise location. Google already paid $391.5 million for lying about location tracking — they kept tracking people who thought they'd turned it off. The same company and the same Google account system now has your doorbell's location data too.

What they claim: Google Home app requests ACCESS_FINE_LOCATION and ACCESS_COARSE_LOCATION permissions, ostensibly for device setup and local control.

What we found: Google paid $391.5 million in November 2022 — the largest AG-led consumer privacy settlement in US history — for deceiving users about location tracking. Google continued tracking location even after users disabled Location History via the hidden Web & App Activity setting. The same deceptive infrastructure applies to the Google Home app which requires a Google account and accesses fine-grained GPS location.

⚡ highpolicy claims vs regulatory findings
The Nest Doorbell can learn to recognize faces of people who visit your home. But Google's privacy commitments page doesn't even mention "facial recognition" or "biometric data." They don't clearly say where these face prints are stored or how long they're kept. Your visitors' faces are being scanned and catalogued with minimal disclosure.

What they claim: Google's Nest privacy commitments state data is kept separate from advertising and users have control. The Familiar Faces feature uses facial recognition to identify frequent visitors.

What we found: Mozilla Privacy Not Included review confirms Google collects "facial recognition data" from Nest cameras and doorbells. Google's privacy policy does not fully disclose where biometric facial recognition data from Familiar Faces is stored or how long it is retained. Multiple states have biometric privacy laws (Illinois BIPA, Texas CUBI) that require explicit consent for facial recognition data collection. Google's Nest privacy page does not mention "biometric" or "facial recognition" in its commitments.

⚫ mediumapp permissions vs firmware analysis
Your doorbell just needs to show you who's at the door. But the Google Home app demands 37 permissions including the ability to make phone calls, read your contacts, see every app on your phone, and access your accounts. A doorbell doesn't need to know what apps you have installed.

What they claim: A video doorbell needs camera access, network access, and notification permissions to function. The device hardware supports Wi-Fi, BLE, camera, mic/speaker, and PIR motion detection.

What we found: Google Home app requests 37 permissions including CALL_PHONE (make phone calls), READ_CONTACTS (read contact list), GET_ACCOUNTS (access accounts on device), QUERY_ALL_PACKAGES (see all installed apps), MANAGE_ACCOUNTS, WRITE_EXTERNAL_STORAGE, BILLING, and RECORD_AUDIO. Most of these are unnecessary for a battery-powered video doorbell. QUERY_ALL_PACKAGES is particularly concerning as it lets Google inventory every app on your phone.

⚫ mediumfirmware analysis vs regulatory findings
Google promises fast security updates for your doorbell. But a critical flaw that let attackers spy on your video went unpatched for an unknown period. For a camera watching your front door 24/7, even a short window of vulnerability means someone could have been watching your comings and goings without you knowing.

What they claim: Google commits to "at least 5 years" of automatic critical security updates for Nest devices and uses Verified Boot for software integrity checking.

What we found: CVE-2024-44097 was a CVSS 9.8 critical vulnerability that allowed complete interception of video streams. The vulnerability existed in all Nest cameras and doorbells. Google publishes quarterly security bulletins (March, June, September, December 2024) suggesting patches may not be immediate. For a device recording the entrance to your home 24/7, any period of exposure to a 9.8 CVSS vulnerability represents a serious security gap, despite Google's commitment to regular updates.

Data Sharing 4/4 EXTREME 3 findings
⚠️ criticalpolicy claims vs regulatory findings
Google says you can always access and delete your doorbell footage. But when the FBI needed video in the Nancy Guthrie case, Google recovered footage from behind-the-scenes systems that the user couldn't even see in the app. Your video doesn't truly disappear when you think you've deleted it.

What they claim: Google Nest privacy commitments state: "When video footage is stored with your Google Account, you can access, review and delete this footage at any time" and "You are always in control of your devices and settings."

What we found: In the 2026 Nancy Guthrie case, FBI investigators recovered Nest camera video from Google's "backend systems" even after footage was no longer visible to the user in the Google Home app. Recovery took several days of complex technical work. This proves Google retains video data in backend infrastructure beyond what users can see or delete through the app.

⚡ highpolicy claims vs regulatory findings
Google says they only share your doorbell video with others if you give permission. But Google can hand your footage to police without a warrant and without telling you, if Google decides it's an emergency. This exception isn't mentioned on the privacy page where they promise you're in control.

What they claim: Google Nest privacy page promises: "We will only share video footage with third-party apps and services if you or a member of your home explicitly gives us permission."

What we found: Google confirmed in July 2022 it will share Nest doorbell and camera footage with law enforcement without a warrant in "emergency" situations under the ECPA exception. Google defines the emergency threshold itself. Unlike Ring, Google has not published specific numbers of warrantless disclosures for Nest devices. The policy page's promise about sharing "only with permission" does not mention the law enforcement exception.

⚡ highpolicy claims vs app permissions
To use your doorbell, you need a Google account — the same one for Gmail, YouTube, and Google Search. Even if doorbell video isn't directly used for ads, Google now knows when you leave home, when you return, and who visits, all linked to the same profile that tracks what you search, watch, and email. The world's biggest ad company has a complete picture of your life.

What they claim: Google markets Nest Doorbell as a home security device. Privacy page states device usage data is "not used for ad personalization" when interacting directly with the device.

What we found: The doorbell requires a Google account — the same account used for Gmail (email content), YouTube (viewing habits), Google Search (search history), Google Maps (location history), and Chrome (browsing). The Google Home app includes Firebase Analytics tracking. While Google claims the doorbell data itself is not used for ad personalization, the Google account creates a comprehensive behavioral profile: when you leave home, when you return, how many visitors you receive, combined with your search, email, and location data — all under one profile owned by the world's largest advertising company.

Honesty 3/4 HIGH 1 finding
⚠️ criticalpolicy claims vs firmware analysis
Google says your doorbell processes video locally on the device for privacy. But all the event clips still get uploaded to Google's cloud servers. The local processing just decides what to send — your footage still ends up on Google's computers.

What they claim: Google Nest privacy page states: "these on-device camera-sensing features don't send video or images... to Google" and markets on-device ML for person/package/animal/vehicle detection as a privacy feature.

What we found: Firmware analysis shows 9 hardcoded Google cloud endpoints including home.google.com, firestore.googleapis.com, and www.googleapis.com. All event clips are uploaded to Google's cloud infrastructure. Google Home Premium (Nest Aware) stores up to 60 days of continuous video in the cloud. The on-device ML only determines what to upload — the footage itself still goes to Google's servers.

What happened to real people
Documented incidents involving Google products and user data.
Jorge Molina jailed 6 days for murder via geofence warrant based on Google Sensorvault location data. Lost job, car, reputation. Charges never filed. [source]
PRISM participant since 2009. NSA collects stored communications. FBI conducts warrantless 'backdoor searches' of American data using names and email addresses. [source]
Google received 180 geofence warrants per week by 2019. Each warrant searches tens of millions of accounts. Supreme Court hearing constitutionality (Chatrie v. United States). [source]
What your data is worth to governments
Google complied with 235,000 government data requests in H1 2024. That's +530% over 10 years. Google has been a confirmed PRISM participant since 2009. Under this programme, the NSA collects stored communications. The company is legally prohibited from telling you. Jurisdiction: US (CLOUD Act, FISA Section 702, Patriot Act).
Documented: Jorge Molina jailed 6 days for murder via geofence warrant based on Google Sensorvault location data. Lost job, car, reputation. Charges never filed.
Documented: PRISM participant since 2009. NSA collects stored communications. FBI conducts warrantless 'backdoor searches' of American data using names and email addresses.
What is PRISM? · What is the CLOUD Act? · Transparency report
Sources