Privacy Policy — Baby Ledger AI
Last updated: April 15, 2026
Baby Ledger AI ("we," "our," or "us") operates the Baby Ledger AI mobile application (the "Service"). This page informs you of our policies regarding the collection, use, and disclosure of personal data when you use our Service.
1. Information We Collect
Account information
- Email address
- Password (stored as a salted hash — we cannot see your password)
- Optional display name
Baby profile information
- Baby's name, date of birth, gender (optional)
- Birth measurements (weight, height) — optional
- Baby photo (optional, stored in Supabase Storage)
Tracking data
- Feeding logs (type, duration, amount, time)
- Sleep logs
- Diaper logs
- Growth measurements (weight, height, head circumference)
- Health logs (temperature, medications, vaccines)
- Milestones
- Food scan results and photos
- AI chat history
Device information
- Device type and OS version (for crash reporting)
- App version
- Time zone (for local-time display of logs)
What we do NOT collect
- We do not collect your location
- We do not collect contacts
- We do not track you across other apps or websites
- We do not sell your data, ever
2. How We Use Your Information
- To provide the Service — display your logs, generate charts, power AI features
- To power AI features — food scan images and chat questions are sent to our AI provider (Google Gemini) for analysis, then discarded. We do not keep the scan image at the AI provider after processing.
- To personalize recommendations — age-appropriate nutrition portions, milestones
- To send notifications — feeding/sleep reminders, only if you enable them
- To enforce usage limits — tracking daily scan count per user for subscription tiers
3. Data Storage and Security
Your data is stored in Supabase, a SOC 2 Type II certified cloud database. All data is encrypted in transit (TLS 1.2+) and at rest (AES-256). Each user's data is isolated via Postgres Row Level Security — other users can never read your data.
4. Third-Party Services
We use the following third-party services. Each has its own privacy policy:
- Supabase (database, auth, storage) — https://supabase.com/privacy
- Google Gemini (AI food scanning and chat) — https://policies.google.com/privacy
- Apple StoreKit (subscriptions) — https://www.apple.com/legal/privacy/
When you subscribe, Apple processes your payment — we never see your credit card number. We only receive a verification receipt proving you subscribed.
5. Your Rights
You have the right to:
- Access — view all data we have about you and your baby
- Export — download all your data in JSON format (Pro feature, or on request)
- Delete — permanently delete your account and all associated data
- Correct — edit any log or profile information at any time
To exercise any of these rights, email us at privacy@babyledgerai.com or use the in-app "Delete Account" option in Settings.
6. Children's Privacy
Baby Ledger AI is intended for use by parents and caregivers, not children. We do not knowingly collect personal information from children under 13 as the account holder. The baby profile is for tracking purposes by the parent — the baby is not an app user.
7. Data Retention
- Active accounts: data retained indefinitely while the account is active
- Deleted accounts: permanently deleted within 30 days of deletion request
- Inactive accounts: we may delete accounts with no activity for 24 consecutive months after emailing a 30-day warning
- Food scan images: retained for 90 days unless you explicitly save the scan
8. International Users
Baby Ledger AI is operated from the United States. If you use the Service from outside the US, your data will be transferred to, stored, and processed in the US. By using the Service, you consent to this transfer.
For EU/UK users: we rely on Standard Contractual Clauses for the US transfer. You have additional rights under GDPR including the right to lodge a complaint with your local data protection authority.
For California residents: under CCPA, you have the right to know, delete, and opt out of the sale of your personal data. We do not sell personal data.
9. Changes to This Policy
We may update this Privacy Policy from time to time. Changes will be posted here with an updated "Last updated" date. Material changes will be communicated via in-app notification.
10. Contact Us
Questions about this policy? Email us:
privacy@babyledgerai.com
---
This privacy policy is licensed under CC-BY-SA 4.0. You may reuse it with attribution.