Privacy Policy
Last updated: November 2025
Who we are (Controller)
Controller: Ayden Mich (trading as Kindled Studio), Sydney, Australia
Contact: support@kindled.app
Policy URL: https://kindled.app/docs/readydad/privacy-policy
ReadyDad is published by Ayden Mich, trading as Kindled Studio (“Kindled,” “we,” “our,” “us”).
This Privacy Policy explains what data we collect, how we use it, and the limited circumstances in which we share it when you use the ReadyDad mobile app.
Not legal advice – this policy is for information only and does not constitute legal advice.
1 · Information We Collect
| Category | Examples | Purpose |
|---|---|---|
| Account & Auth | Email address or social login identifier (Apple / Google); secure session token. | To authenticate you and maintain your session. |
| Profile / Onboarding Data | Child’s date of birth (or months old), optional name, selected focus areas (e.g., Sleep, Feeding, Partner Support), optional invite code. | To personalise prompts and responses. |
| Chat Messages | Questions you ask and AI responses. | To generate answers and provide relevant context in future chats. |
| Device & Notifications | Device model, OS version, Expo push token (if notifications enabled). | To send optional notifications. |
| Usage Stats (anonymous) | Message counts, feature use, error events. | To maintain limits, detect abuse, and improve reliability. |
We do not collect financial, biometric, or government-issued identifiers.
2 · How We Use Information
- Provide the service — operate chats, personalise responses, manage usage limits, and deliver notifications.
- Improve safety and quality — monitor anonymised trends (e.g., number of messages, rate-limit events) to maintain performance.
- Comply with law — respond to lawful requests or prevent abuse.
We do not sell data, use it for advertising, or train external AI models with your conversations.
3 · AI Processing and Third Parties
Your chat messages are processed through OpenAI’s API to generate responses.
All requests are sent via our Supabase Edge Functions, never directly from your device to OpenAI.
Only the message content and minimal context are transmitted; your email address and identifiers are not shared.
| Service | Role | Safeguards |
|---|---|---|
| Supabase | Secure backend (database, auth, Edge Functions). | Data encrypted in transit & at rest; Row Level Security limits each user to their own data. |
| OpenAI | Generates AI responses. | Receives text of your message only; no personal identifiers. |
| Expo / Apple / Google | Push notifications & app distribution. | Device token only; no message content. |
| Sentry (optional) | Error and crash reporting. | PII filtered before sending. |
When data leaves Australia, it is processed under contractual safeguards (such as standard contractual clauses).
4 · Security Measures
- TLS encryption for all connections.
- Row Level Security enforced in database.
- Least-privilege access and audit logging for admin accounts.
- Rate-limiting and abuse detection on Edge Functions.
Despite these measures, no system is 100 % secure. We take reasonable technical and organisational steps to protect your information.
5 · Retention and Deletion
You control your data:
- Delete All Data – in Settings → Memory & Data → Delete All.
Deletes or anonymises all personal records and signs you out. - Pause Memory – temporarily stops saving new chat context while still allowing chat use.
| Data Type | Retention |
|---|---|
| Chat & profile data | While account is active or until you delete it. |
| Anonymised analytics | May be kept indefinitely (contains no PII). |
| Error logs | ≤ 12 months. |
Backups are purged on a rolling basis.
6 · Your Rights
You may:
- View or export your data.
- Delete your account and data at any time.
- Withdraw notification permission in device settings.
- Lodge a complaint with the Office of the Australian Information Commissioner (OAIC).
We respond to verified requests within 30 days.
7 · Children
ReadyDad is for adult users (e.g., parents).
It is not directed to children under 16, and we do not knowingly collect data from them.
If you believe a child has used the App, contact us to remove the data.
8 · International Transfers
Our servers are hosted in the United States and European Union regions via Supabase and OpenAI.
Transfers outside Australia use industry-standard safeguards and encryption.
9 · Policy Changes
We will notify you of material changes by:
- In-app notice or banner.
- Email (if address on file).
- Updated “Last updated” date above.
Continued use after changes means you accept the new policy.
10 · Contact
For privacy questions or data requests:
Email: support@kindled.app
Website: https://kindled.app
© 2025 Kindled Studio. All rights reserved.