Privacy Policy
Last updated: September 21, 2026
BabyCue is a baby tracking app made by LogicStack. This policy explains what we collect, why we collect it, who can see it, and how you can get it back or delete it. We wrote it in plain language on purpose. What you keep here is about your child, and you should be able to understand exactly what happens to it.
The short version
- Your baby logs are yours. We do not sell them, rent them, or use them to target advertising.
- Health-related entries (feeds, sleep, diapers, medicine, growth, temperature, notes) are never sent to analytics or crash reporting.
- You can export everything you've logged as JSON or CSV at any time.
- You can delete your account and all the data you own from inside the app.
Information we collect
- Account information: your email address, your display name, and, if you sign in with Google or Apple, the account identifier and profile photo that service returns.
- Guest sessions: if you choose "Continue as guest", we create an anonymous account with no email. What you log is stored in the cloud the same way as for a normal account. A guest account has no sign-in credential, so you can't recover it on another device or after reinstalling or signing out unless you first upgrade it to a full account. Upgrading keeps all your data.
- Baby profile: the name or nickname you choose, date of birth, optional due date, sex if you provide it, birth measurements, an optional photo, and the time zone your baby's days are counted in.
- Care logs: everything you record (feeds, pumping, sleep, diapers, medicine, growth, temperatures, tummy time, baths, activities, milestones, reminders and notes), along with when each one happened and which caregiver recorded it.
- Technical information: app version, device model, operating system version, language and region, crash diagnostics, and anonymous usage counts. If you turn on reminders, we also store a push-notification token.
What we do not collect
- Precise location. BabyCue never asks for GPS access.
- Your contacts, photo library, calendar or health-platform data. You pick any photo you attach, one at a time.
- Care data in analytics or crash reports. Analytics events carry only a fixed list of parameters that don't identify anyone.
- Advertising data. We use no third-party advertising SDKs and build no advertising profiles.
Why we use it
- To provide the service: storing your logs, showing your timeline and insights, and syncing across your devices.
- To generate predictions and Smart Cues from your own recent entries. These are estimates about routine, not medical assessments.
- To send the reminders and cues you've turned on.
- To share a baby with the caregivers you invite.
- To run subscriptions and restore purchases.
- To keep the app working: diagnosing crashes, measuring which features get used, and preventing abuse through rate limits.
Home-screen widgets
If you add a BabyCue widget, it shows your baby's first name, age, today's totals, cue lines and any running timer. It shows no notes, medicine names, amounts or caregiver names. Anyone holding your phone can see a widget. On iOS, the name is hidden while the device is locked. Signing out clears the widget.
Where your data lives
Your data is stored with Google Firebase so it syncs between your devices and your caregivers. It is encrypted in transit and at rest. Server-side security rules make sure a baby's records can only be read or written by signed-in members of that baby.
Third parties we rely on
We use a small number of processors. They act on our instructions and may not use your data for their own purposes.
- Google Firebase (Authentication, Firestore, Storage, Functions, Cloud Messaging, Remote Config): sign-in, storage, sync, photos and notifications.
- Firebase Crashlytics and Google Analytics for Firebase: crash diagnostics and anonymous usage counts. Care data is never included.
- RevenueCat: subscription validation. It receives your account identifier and purchase receipts, never your care data.
- Apple App Store and Google Play: subscription payments. We never see your card details.
How long we keep it
- Care logs, profiles and milestones are kept until you delete them or delete your account.
- Deleting an entry removes it for every caregiver.
- Deleting your account removes:
- the babies you own, with their entries, milestones, reminders, photos and invitations
- your membership in babies owned by others
- invitations sent to your email address
- your profile and sign-in record
- Entries you logged in someone else's baby stay in that family's record, still marked with your display name.
- Guest accounts that are signed out without upgrading keep their data until it is deleted. Contact us if you've lost access to a guest account and want its data removed.
- Backups are purged on the provider's rolling cycle, within 30 days.
- Anonymous analytics are kept for 2 months. Crash reports follow the provider's own schedule.
- RevenueCat keeps purchase records for refunds and restores. You can ask us to have them deleted.
Your choices and rights
- Export: create a JSON or CSV file of a baby's entries.
- Correct: edit or delete any entry from the timeline.
- Delete: delete your account and the data you own from the app's account settings.
- Notifications: reminders, Smart Cues and quiet hours are opt-in and can be turned off.
- Depending on where you live, you may have the right to access, correct, port, restrict or object to processing, and to complain to your data protection authority. Email support@babycue.app and we'll respond within 30 days.
Children's privacy
BabyCue is for parents and caregivers. It is not directed at children, and children may not create accounts. The adult who records the information controls it.
We don't knowingly collect information directly from a child, and we don't use a child's information for profiling or advertising. If you believe a child has created an account, contact us and we'll remove it.
Security
- All traffic uses TLS.
- Access to a baby's records is checked on the server for every read and write.
- Photos are stored privately and shown to members through private links. Treat a photo link like the photo itself: anyone who has the exact link can open that photo.
- Only our payment webhook can change subscription status.
- If a breach affects your data, we will notify you and the relevant authorities as the law requires.
International transfers
Our providers may process data outside your country, including in the United States. Where required, transfers rely on standard contractual clauses or an equivalent safeguard.
Changes to this policy
If we make a material change, we'll update the date at the top of this page and show a notice in the app before the change takes effect.
iOS and App Store privacy details
This section applies to BabyCue on iPhone and iPad and matches the privacy details shown on our App Store listing. Everything above applies on iOS too.
No tracking. BabyCue does not track you across apps or websites owned by other companies, does not use the advertising identifier (IDFA), and never shows the App Tracking Transparency prompt. We contact no tracking domains.
Data collected by the app:
| Data type | Linked to you | Used for tracking | Purpose |
|---|---|---|---|
| Email address | Yes | No | App functionality |
| User ID | Yes | No | App functionality |
| Other user content (care logs, notes) | Yes | No | App functionality |
| Photos | Yes | No | App functionality |
| Purchase history | Yes | No | App functionality |
| Crash data | No | No | App functionality |
| Product interaction | No | No | Analytics |
iOS permissions. BabyCue asks only for:
- Notifications, if you turn on reminders or Smart Cues. You can turn them off in iOS Settings at any time.
- Camera and photo library, only when you choose to take or attach a picture for your baby's profile or a milestone. You pick each photo yourself; we do not read the rest of your library.
- Microphone and speech recognition, only if you choose to speak a Quick Log instead of typing it. Your speech is turned into text by Apple's speech recognition service, which may process the audio on Apple's servers under Apple's privacy policy. BabyCue never stores or uploads the recording, and you review the text before anything is saved.
BabyCue does not request location, contacts, Bluetooth, or Apple Health access.
Sign in with Apple. If you choose "Hide My Email", we receive only Apple's relay address and never see your real one. You can stop using Sign in with Apple for BabyCue from your Apple ID settings; delete your account in the app to remove your data.
Widgets. iOS widgets read a small summary through a storage area shared only with BabyCue's own widget extension. Your baby's name is marked as sensitive, so iOS hides it on the Lock Screen while your device is locked.
Backups. Settings stored on your device (such as units and theme) are included in your encrypted iCloud or computer backup, like any app's settings. Your care logs live in the cloud, not in the backup.
Subscriptions. Payments are handled by Apple. We never see your card details. Manage or cancel your subscription in iOS Settings > your name > Subscriptions.
Required-reason APIs. As Apple requires, our privacy manifest declares the system APIs the app uses and why: app settings storage (UserDefaults), file timestamps, system boot time and available disk space. None of them are used to identify or fingerprint you.
Contact
Questions, requests or complaints: support@babycue.app.
LogicStack, developer of BabyCue.