Legal
Privacy policy
What we collect, why, and how you stay in control of it.
Template — have it reviewed by a lawyer before launch. This is a good-faith starting point, not legal advice.
Last updated: 20 July 2026
The short version
Motherly Hand is a tracking app for parents and legal guardians. You tell us about yourself and, optionally, about your child so the app can log feeds, sleep, diapers, growth and health notes on your behalf. We don't sell your data, we don't run advertising trackers, and you can export or permanently delete everything from your account at any time. The rest of this page explains that in full — sentence by sentence, not buried in a PDF.
Who this policy covers
This policy applies to anyone who creates a Motherly Hand account — the app and the website at this domain — and to the people who use a shared family account as an invited caregiver. Motherly Hand is built for adults: creating an account requires you to be at least 18 years old and a parent or legal guardian (or another adult caregiver invited by one). We do not knowingly offer accounts to children, and the app is not designed for a child to use directly.
Information we collect
Everything below is information you or another caregiver on your account chooses to enter.
Your account. Name, email address, and a password. Your password is hashed before it is ever stored — we don't keep it, and can't read it, in plain text. If you sign in with Google or Apple instead, we receive the identity token those providers give us, not your password.
Your child's profile. A first name, birth date, and — optionally — sex. You add this so entries can be organised per child and so age-appropriate guidance can be shown; your child does not create or control this profile.
Care events. Whatever you log: feeding, sleep, diaper, growth, and health entries, plus any free-text notes you add to them. This is health-adjacent information about your child that you choose to record — it is not generated by us, and Motherly Hand does not add clinical interpretation to it (see "Not a medical device" in our Terms of Service).
Voice entries. If you use voice logging, what you say (or the text you dictate) is sent to an AI processing provider so it can be turned into a structured entry — see "AI & voice processing" below for exactly how that's handled.
Billing information. If you subscribe to Plus or Family, payment is handled entirely by our payment processor, Lemon Squeezy, on their hosted checkout page. We receive confirmation of your subscription and plan — never your card number.
Basic technical data. Standard request data needed to operate the service (things like IP address and device/browser type, seen briefly by our hosting infrastructure to serve a request) and your chosen app locale. This is used to run the service and keep it secure, not to build an advertising profile.
What we deliberately don't collect
Motherly Hand does not currently include any third-party analytics SDK or advertising SDK in the app or website — nothing tracking you across other apps or sites, and no behavioural ad profile. If ads are shown in the free tier, they are configured to be contextual (matched to the screen you're on), not targeted using your care-log data or browsing history. If that ever changes — for example, if we add a privacy-respecting analytics tool to understand product usage — we will update this policy first and, where required, ask for your consent.
How we use this information
- To create and secure your account, and keep you signed in (see "Security" below).
- To store and display the entries you log, and generate the summaries, trends and PDF exports you ask for.
- To turn a spoken or dictated voice entry into a structured log entry.
- To process your subscription and let you manage or cancel it.
- To respond when you contact support.
- To keep the service secure and prevent abuse.
- To meet legal and tax obligations we're subject to.
We do not use your care-log data to train third-party AI models, and we do not sell or rent your personal data to anyone, for any purpose.
AI & voice processing
Voice logging works by sending your transcript to an AI processing provider, which returns a structured draft (for example, "fed 120ml at 3:40pm") for you to review before anything is saved — nothing logs silently. That transcript is used only to generate the draft for that request; we do not retain the raw transcript afterwards beyond what's technically necessary to complete it, and it is not repurposed to train AI models unless you separately and explicitly opt in to that in the future. If you edit a draft and keep a note, that note is stored like any other entry you write.
Who we share data with
We use a small number of service providers ("subprocessors") to run Motherly Hand. Each is bound to use your data only to provide their service to us, not for their own purposes.
- Hosting. Our infrastructure runs on Oracle Cloud, in an EU-adjacent region, where the database and application servers live.
- Payments. Lemon Squeezy acts as our merchant of record for Plus and Family subscriptions and handles your payment details directly — they never pass your card number to us.
- AI processing providers. One or more large-language-model providers process voice transcripts to produce structured log drafts. We name specific providers in-app where relevant rather than here, since this can change as the product evolves; this policy will always be updated first.
We do not share your data with data brokers or advertising networks, and we only disclose it to a court, regulator or law-enforcement body when we're legally required to.
About children's data
Motherly Hand is a tool for parents and guardians, not a service for children. The information about your child — name, birth date, sex, and the care events you log — is entered by you, the adult account holder, about a person in your care. Your child is not our user, does not hold an account, and does not consent to or control this processing; you do, as their parent or legal guardian, and you can edit or delete any of it at any time. If you invite a co-parent or other caregiver to your family account, they can see and add to the same child profile — invite only people you trust with that information.
How long we keep your data
We keep your account and care-log data for as long as your account is active, so the service keeps working the way you expect. When you delete your account — from the app or from your account page on this site — your profile, your children's profiles, and every event you logged are permanently deleted from our production systems. A short window may remain in encrypted backups before those backups themselves rotate out, and we may retain minimal billing records where we're legally required to (for example, tax obligations tied to a completed payment) for the period the law requires, kept separately from your care-log data.
Your rights
Wherever you're based, we extend the same core set of rights over your data, modelled on the GDPR:
- Access — ask us what personal data we hold about you.
- Export — download a PDF summary of your logged data at any time, in-app.
- Rectify — edit any entry, profile field, or account detail yourself, whenever you notice something wrong.
- Delete — permanently erase your account and everything in it, from Settings in the app or your account page here.
- Restrict or object — ask us to limit certain processing, or object to it, by contacting us below.
- Withdraw consent — for anything we process on the basis of your consent (like optional future AI-training use), withdraw it at any time without affecting past lawful processing.
- Complain — lodge a complaint with your local data protection authority if you believe we've mishandled your data.
Account deletion is deliberately not buried behind a support ticket — it's a button in Settings and on your account page, with a clear confirmation step so it doesn't happen by accident. For anything else, write to us at [contact@YOURDOMAIN] and we'll respond as a real person, not a form letter.
Security
Your password is hashed, never stored in plain text. Sessions are authenticated with short-lived JWT access tokens rather than long-lived cookies. Data in transit between your device and our servers is encrypted (HTTPS/TLS). No system is perfectly secure, but we design with the assumption that this is health-adjacent data about a child and treat it accordingly — least-privilege access internally, and no plaintext credential storage anywhere in the stack.
International data transfers
Our infrastructure is hosted in an EU-adjacent region, and some of our subprocessors (including AI processing and payment providers) may process data outside that region. Where that happens, we rely on the safeguards those providers offer (such as standard contractual clauses) to keep your data protected to a comparable standard wherever it's processed.
Changes to this policy
If we make a material change to how we handle your data, we'll update the "last updated" date above and, for significant changes, notify you in the app or by email before they take effect.
Contact us
Questions about this policy or your data? Write to [contact@YOURDOMAIN].