Your child's feeding log is nobody else's business.
Last updated 6 September 2026.
We do not ask for your child's full legal name, and you should not enter it. A nickname works everywhere in the app.
You, and anyone you deliberately invite to a child profile. Nobody else. Row-level security in the database is scoped to your account, so a request made with your key can only ever return your own rows — this is enforced by the database itself, not by the app's code.
Your data is not sold, rented, or shared with advertisers. It is not used to train models. It is not aggregated into research datasets or reports. There are no third-party analytics, advertising, or tracking scripts on this site.
Traffic runs over TLS. Data is encrypted at rest by the database host using AES-256. Backups are encrypted with it.
Being honest here is more useful than claiming nothing touches your data, because that claim would be false and would undermine the parts that are true.
Each holds data on our behalf under its own terms. None has any right to use it for its own purposes.
One item in your browser's local storage holds your sign-in session and your theme choice. That is all. There are no advertising or analytics cookies, so there is no consent banner, because there is nothing to consent to.
The account holder is an adult. The data is about an infant, entered by their parent or guardian, and it is treated as sensitive health information regardless of what any particular law requires.
If data is ever exposed, you will be told what happened, what was involved, and when — by email, and in the app — without waiting to see whether anyone noticed.