HappyCub

Privacy Policy

Last updated September 26, 2026

HappyCub is provided by ASHWOOD DATA LLC (“we,” “us”), the data controller for the personal information described here. Reach us at compliance@happycub.app.

The short version

  • Your baby’s log is designed to be visible only to the people you invite, and you can delete your account in the app.
  • We do not sell or share your personal information, and the app carries no third-party ad networks.
  • Our service providers are named below.
  • If you buy from our store, what we keep and what happens to your photo are set out below.

Information you give us

  • Account. Your email and an account identifier, used to sign you in. Sign in with Apple can hide your real email; we treat the relay address as your email.
  • Caregivers. The display name and role of each person you invite, and the email address you send an invite to.
  • Waitlist. Your email and the optional answers you give (who helps, baby’s age).

Information about your child

What’s stored: the profile you create for your baby (name, birth date, photos), plus the care events you and your caregivers log: feedings, sleep, diapers, medications, weights, and notes, each with the time it happened and who logged it.

The care sheet: if your household fills one in, we store what you type: pediatrician and hospital with their phone numbers, blood type, allergies, free-text notes, and emergency contacts with their names, relationships, and phone numbers. Every field is optional. The sheet is visible to the same people as the rest of that child’s log and is deleted with the child’s profile.

Who can see it: a child’s profile and log are designed to be visible only to the people you invited to that child. The role you give each person shapes what they can see, with caregiver roles designed to show a narrower slice than parent roles, and these rules are enforced at the database level. We don’t make care data public and don’t use it for advertising. The one exception is a shareable timer link you create yourself (see “Shared timer links”). Data is stored in our database, hosted by Supabase, and transmitted over encrypted connections.

How to delete it: you can delete individual events, remove a caregiver’s access, and delete your account from Settings in the app. If you are the only member of a child’s household, deleting your account also deletes that child’s profile, logs, and photos. If other caregivers still have access, the app asks you to transfer ownership first. You can also email us.

Information collected automatically

  • First-party app analytics. The app sends us usage events (the event type, such as “feed logged,” not your content) with an anonymous identifier, a session identifier, your account identifier, and the campaign that first brought you to us (UTM first-touch), to our own database. There are no third-party ad networks in the app.
  • Crash and performance reports. A crash report (device model, OS version, app version, and what the app was doing) goes to Sentry, a third-party processor. It can include your account identifier, since the record of what the app was doing includes the requests it had just made. It does not include your email address, your photos, or what you logged.
  • Install attribution. If you found us through an Apple Search Ads ad, we receive an attribution token from Apple’s AdServices framework, and Apple’s SKAdNetwork may report an anonymous conversion value. Neither identifies you across other apps. We do not use the IDFA, and the app shows no App Tracking Transparency prompt.

Biometric information

We do not collect biometric identifiers or biometric information: no face scans, fingerprints, or voiceprints. Photos you add are shown to your household, not analyzed to identify anyone. A photo you send to the store is used to make the image we print, not analyzed. If that ever changes, we will update this policy and ask you first.

Push notifications

Notifications are opt-in. If you turn them on, we store the device token Apple assigns and use it to deliver them through Apple’s Push Notification service. Turning notifications off in iOS Settings stops them.

Email we send

Transactional email (sign-in confirmations, caregiver invites, a welcome note) goes through Postmark, our email provider.

  • Invite emails carry standard open and bounce tracking, so we can tell whether an invite arrived.
  • An operational copy of welcome emails goes to us, so we can spot delivery problems.

We don’t send marketing email you didn’t ask for.

Personalized songs

When you create a personalized song, we send your baby’s first name, and nothing else, to ElevenLabs, a voice-synthesis provider in the United States. The finished audio is stored for replay. Song records are handled like the rest of your data when you delete your account (see “How long we keep it”). To have one removed sooner, email us.

Lullaby videos

The Soothe shelf plays lullaby videos in YouTube’s own player, and loads each thumbnail from Google as soon as the shelf appears, before you tap anything. Google therefore receives your device’s IP address and user-agent, may set or read cookies, and may use that for its own purposes under its privacy policy. Unlike the providers under “Who we work with,” Google is not processing this on our instructions. The connection is between your device and Google, and we do not receive it.

Anyone in your household can save a video link to the shelf. We store the link and its title with the rest of your household’s data, and it is deleted with your account.

App subscriptions

Subscriptions are purchased through Apple, which processes the payment. We receive only what we need to know your subscription is active, not your card details. Apple’s privacy policy governs the transaction.

Store purchases are covered in the next three sections.

Store orders

What you give us: your email, the delivery name and address, and the first name you want printed. We do not ask for a phone number. We ship within the US.

Payment: card details are entered on Stripe’s own page and do not reach us. We never see or store your card number. Stripe receives what you ordered, the order total, the first name you want printed, the delivery name and address, your email, and the link to your order.

Producing it: we make the image we print from your photo and the name. Our printing provider prints and ships it, and receives that image, the delivery name and address, and your email. We tell them not to email whoever receives the package.

What we keep: your email, the order, the delivery name and address, the printed name, and which photo belongs to which item. If one order goes to several addresses, each address is kept with the items going to it.

Confirmation: we email you the order, the printed name, the total, and a link to your order, through Postmark, our email provider. It is not marketing.

Notify me: if you ask about a sold out item we keep your email, which item, and the campaign link that brought you. We use it only to tell you when that item is back in stock. To be removed, email us.

Photos you send to the store

When the photo reaches us: the photo you choose is sent to us when you start checkout, and earlier if you pick an AI style for it.

AI styles: picking a style sends your photo out to be styled. It happens only when you pick one. We keep the styled picture, and it is what we print.

What we store: the photo, under a random identifier, and the styled picture, under an identifier made from that photo and the style you picked. We do not use your file name and we do not publish a link to either. We use them to make the image we print.

What leaves: the image we print, which contains your photo cropped to the product. Your photo is also sent out on its own when you pick a style.

How long we keep it: we keep the photo and the styled picture after the order and do not delete them on a schedule. A photo you sent at a checkout you did not finish is kept the same way. Email compliance@happycub.app to have yours deleted.

Your order link

Your confirmation email carries a link to your order. Anyone with that link can open it. It shows the order, the stage it has reached, and any tracking number. It does not show prices, your address, or the printed name. Share it only with people you trust.

Our website

The marketing site (happycub.app) is hosted on Vercel and uses Vercel Web Analytics, which is cookieless, plus Google Analytics and the Meta pixel, which are advertising performance cookies. In the EEA and UK those stay off unless you accept them in the consent banner.

Our own cookie remembers which campaign link first brought you here, for 30 days. In the EEA and UK it keeps only the campaign tags until you accept cookies.

We also count what you do here, like pages viewed and store steps, with our own cookie holding a random ID for up to a year. Signed in, the counts are tied to your account. They never include your name, email, photos or anything you type. In the EEA and UK this is off unless you accept cookies.

If you join the waitlist, we may share a hashed version of your email, and the campaign link that brought you, with Meta to measure ad results. Website only, never what you enter inside the app.

When you type a shipping address at checkout, what you type is sent to Google, which suggests matching addresses and checks the one you pick. Google receives the address text and handles it under its privacy policy. We keep the address you choose to ship your order. We do not keep the suggestions.

Who we work with

The service providers (“sub-processors”) we currently work with. Each processes data on our instructions:

  • Supabase: database, auth, and hosting for your account and care data, and for store orders and the photos you send to the store.
  • Stripe: payment processing. Only if you order a printed product, Stripe receives what you ordered, the order total, the first name you want printed, the delivery name and address, your email, and the link to your order. Card details are entered on Stripe’s own page and do not reach us. We never see or store your card number.
  • Sentry: crash and performance reporting.
  • Postmark: transactional email delivery.
  • ElevenLabs: personalized song audio.
  • Apple: sign-in, push notification delivery, purchases, and install attribution.
  • Vercel: website hosting and its cookieless web analytics.
  • Google / YouTube: Google Analytics on our website, address lookup at store checkout, and the player and thumbnails on the Soothe shelf. The in-app YouTube connection is not on our instructions (see “Lullaby videos”).
  • Meta: advertising measurement on our website.
  • Our printing provider: only if you order a printed product, the image we print from your photo, the delivery name and address, and your email are used to produce and ship it.

We’ll update this page if the list changes. Beyond these providers, we don’t give others access to your personal information, except where the law requires it or to protect the safety of our users.

Where your data lives

We and our service providers process data in the United States. If you use HappyCub from outside the US, your information is transferred to and stored in the US, and we rely on our providers’ safeguards, such as standard contractual clauses.

How long we keep it

Your data is kept while your account is active. Deleting your account removes it and its data from our production database, as described in “Information about your child.” Two things are disassociated from you rather than erased: analytics events are unlinked from your account, and if you logged events for another family’s child, your display name stays on those past entries, with no other link back to you.

Copies may persist for a limited time in encrypted backups before being overwritten in the ordinary course of operations. Crash reports and analytics are kept as long as we reasonably need them to operate and improve the app.

Store orders are separate from your app account. The order, the address on it, the printed name, and the photo you sent are kept while we need them for the order and our records, and are not deleted on a schedule. Deleting your app account does not delete them. Email compliance@happycub.app to have them deleted.

Delete your data

In the app: Settings → Delete account. What the flow deletes is under “Information about your child.” Or email compliance@happycub.app from your account address and we’ll do it for you.

For a store order or a photo you sent to the store, email compliance@happycub.app with your order number. There is no button for this.

Your rights

Wherever you live, you can ask us for a copy of your data (access), correct it (rectification), delete it (erasure), receive it in a portable format, or object to how we process it. Email us. There is no fee.

Two groups get their own sections: California residents and readers covered by the GDPR or UK GDPR.

Your California privacy rights

The California Consumer Privacy Act as amended by the California Privacy Rights Act (CCPA/CPRA) gives California residents specific rights and requires us to describe our data practices in its categories. In the last 12 months we have collected the categories below. Store rows apply when you order.

CategoryWhat it includes hereWhy we collect itHow long we keep it
Identifiers & contact informationYour email address and account identifier; caregiver display names, roles, and invite email addresses; waitlist email and optional answers; a store notify request, which is your email and which item you asked about.Signing you in, sending invites and transactional email, the waitlist, and telling you when a sold out item is back in stock.While your account is active; removed by the deletion flow. A notify request is kept until you ask us to remove it.
Child care records (may include health-adjacent information)The child profile you create (name, birth date, photos) and logged care events: feedings, sleep, diapers, medications, weights, and notes.Operating the shared log for the people you invite. This is sensitive personal information, used only to provide the service.While your account is active; deleted as described in “Information about your child.”
Device identifiers & push tokensThe device token Apple assigns for push notifications (if you opt in), plus anonymous and session identifiers.Delivering the notifications you asked for and telling sessions apart.While notifications are on and your account is active.
Usage dataFirst-party analytics events (event types, not your content) and the campaign that first brought you to us.Understanding which features help.As long as reasonably needed; unlinked from your account when you delete it.
Crash diagnosticsDevice model, OS version, app version, and what the app was doing when it broke (via Sentry).Finding and fixing bugs.As long as reasonably needed.
Subscription recordsSubscription status from Apple. Apple processes payment and we do not receive your card details.Knowing your subscription is active.Kept for billing records after you delete your account, but unlinked from you, the same treatment as analytics (see “How long we keep it”).
Store order recordsYour email, the delivery name and address, the first name printed on an item, what you ordered, and what it cost. Stripe processes payment and we do not receive your card details.Making and shipping your order, and our own records of the sale.While we need them for the order and our records. Not deleted on a schedule; email us to have them deleted.
Photos sent to the store (may include a photograph of a child)The photo you choose for a printed item. The image we make from it is sent on to be printed; the photo itself is not.Producing the item you ordered. This is sensitive personal information, used only to make what you bought.Kept after the order and not deleted on a schedule. Email us to have it deleted.

Your rights under the CCPA/CPRA: to know what personal information we collect and how we use it (this page, and a copy on request), to delete it, to correct it, to opt out of the sale or sharing of personal information, to limit the use of sensitive personal information, and to not be discriminated against for exercising any of them.

We do not sell your personal information, and we do not share it for cross-context behavioral advertising, as those terms are defined in the CCPA/CPRA. Sensitive personal information, such as the care records above and photos you send to the store, is used only to provide the service, not for the secondary purposes the law lets you limit.

To exercise these rights: email compliance@happycub.app from your account address. For a store order, include your order number instead. For deletion in the app, use Settings → Delete account. We’ll confirm receipt and respond within the time the law requires. An authorized agent can submit a request for you, and we may check with you directly to confirm the agent speaks for you.

GDPR & UK GDPR

HappyCub is currently offered in the United States, but if we hold your data we honor these rights wherever you are. If the EU General Data Protection Regulation (GDPR) or the UK GDPR applies to you: ASHWOOD DATA LLC is the controller.

Lawful bases (Article 6): to perform our contract with you, meaning running the app, syncing the log, delivering notifications and songs, and fulfilling a store order you place (Art. 6(1)(b)); with your consent where we ask for it, such as website advertising cookies in the EEA and UK, which you can withdraw any time (Art. 6(1)(a)); and under our legitimate interests in keeping the app secure, fixing crashes, and understanding which features help (Art. 6(1)(f)). For that last basis we have weighed our interest against your rights and use the least data we reasonably can, and you can object.

Care records. Logs of feedings, medications, sleep, and weight can be health-adjacent information about your child. They exist because you, the child’s parent or caregiver, deliberately entered them and asked us to share them with the household you chose. That explicit provision, for purposes you control, is the safeguard at the center of how we handle them. We use them solely to provide the service, never for advertising, and they are deleted as described above.

International transfers: where a transfer to the US needs a legal mechanism, we rely on our providers’ safeguards, such as standard contractual clauses, or an adequacy decision where one applies.

Your rights: access, rectification, erasure, restriction of processing, data portability, objection (including to any legitimate-interests processing), and withdrawal of consent without affecting prior processing. Email compliance@happycub.app. You also have the right to lodge a complaint with your local supervisory authority, in the UK the ICO.

Security & if something goes wrong

Data is encrypted in transit and protected by database-level access rules designed so one family’s data isn’t visible to another. We access it only to operate the service. If a breach affects your personal information, we will notify you and the relevant authorities as required by law.

Children's privacy

Accounts are for adults 18 and over. Information about a child in the app is provided and controlled by the adults in that child’s household. We do not knowingly collect information from children and the app is not directed to them. If we learn that a child under 18 has created an account, we will delete it.

Information adults enter about a child is covered in Information about your child and, for a printed item, in Photos you send to the store.

Changes to this policy

We’ll update the date at the top of this page and communicate significant changes in the app before they take effect.

Contact

Email compliance@happycub.app. ASHWOOD DATA LLC is the controller responsible for your information.