Privacy & Security
Your Data, Your Control
Prediction photos auto-delete (48-hour default). Offline-first architecture. Face ID biometric lock. Jailbreak detection. Row Level Security. Encrypted family sync — in transit and at rest. No tracking, no ads, no data selling. Trusted by families across 241 countries & territories.
Security Features
Multiple layers of protection built into every aspect of the app
Auto-Deleting Photos
Parent photos are automatically deleted after your prediction completes — within 48 hours by default, adjustable from 24 hours to 30 days in Settings. Scientific mode uses no photos at all. Photos are never used for advertising or AI model training.
Offline-First Architecture
SwiftData local-first design means your core data never leaves your device unless you explicitly sync. Zero network latency for local operations.
Biometric Authentication
Face ID and Touch ID with configurable lock timeouts. 1 in 1,000,000 false match rate. Secure Enclave processing ensures biometric data never leaves your device hardware.
Jailbreak Detection
Blocks compromised devices entirely — no bypass option. Protects against disabled sandboxing, malware, encryption bypass, and code injection on jailbroken devices.
Screenshot & Recording Protection
App blocks usage while screen recording is active. Screenshots trigger privacy warnings on sensitive screens. App preview blurred in multitasking view.
Bank-Grade Encryption
Encrypted in transit and at rest. Credentials are stored securely in the iOS Keychain on your device.
Data Protection
Database-level isolation and encryption for your family's data
Row Level Security
Supabase RLS enforces data isolation at the PostgreSQL database engine level. Even if application code had a bug, the database itself blocks unauthorized access.
Encrypted Family Sync
Family data is encrypted in transit and at rest. Row Level Security at the PostgreSQL level ensures only authorized family members can access shared data.
No Tracking, No Ads
Zero advertising SDKs. No cross-app tracking. No device fingerprinting. No analytics with data access. Our business model is subscription-based — we earn from you, not your data.
Compliance & Standards
Meeting the highest industry standards worldwide
Healthcare-Inspired Safeguards
Our security practices draw on healthcare-industry safeguards — access controls, encryption in transit and at rest, and a 24-hour breach-notification commitment. ProbaBaby is a consumer app, not a HIPAA-covered entity.
GDPR Rights for All Users
We extend GDPR protections to all users worldwide — not just EU citizens. Right to access, erasure, portability, and restriction of processing in all 241 countries & territories.
CCPA Compliant
Full California Consumer Privacy Act compliance. We never sell data — the right to opt out of data sales is not applicable because we never sell.
Your Data Rights
Full control over your personal information — extended to all users worldwide
Access & Export
Request all data we hold about you in JSON, CSV, or PDF format. Portable, machine-readable, free of charge. Response within 30 days.
Data Portability
Export everything: tracking data, predictions, settings, observations. Verify no source photos are present — because we delete them immediately.
Permanent Deletion
Delete your account and all data permanently. Active data removed immediately, backend purged within 30 days, backups within 90 days. Irreversible.
Privacy FAQ
Common questions about how we protect your data
We delete parent photos within seconds of generating the prediction. This is documented in our Privacy Policy. Verify it yourself: export all your data and you will find zero source photos. Internal security reviews — supported by automated scanning tools — verify this on a regular cadence.
No. Row Level Security at the PostgreSQL database level means queries can only return data belonging to the authenticated user. Engineers see anonymized, aggregated metrics for debugging. Individual pregnancy data is architecturally inaccessible.
Passwords are hashed with bcrypt (one-way). Sensitive data uses encryption at rest and in transit. Some data is accessible by our systems for feature functionality (e.g., family sharing logic), but always protected by PostgreSQL Row Level Security so only authorized users can access it.
We never sell your data. Only essential infrastructure services are used: Supabase (SOC 2 certified) for backend, Google Gemini Vision (Google LLC) for facial feature analysis, Runware (with Replicate and Fal.AI as fallbacks) for baby image generation, and Apple StoreKit for payments. No marketing partners, no analytics companies with data access.
Settings > Privacy > Delete Account. Active data removed immediately, backend purged within 30 days, backups within 90 days. Irreversible. We recommend exporting data before deletion.
Multiple layers protect you. Data is encrypted at rest, so stolen storage is unreadable ciphertext. Row Level Security blocks cross-user data access. Encryption in transit protects your sessions. We maintain a 24-hour breach-notification commitment.
No. Your photos, predictions, and personal data are never used for AI model training. Google Gemini models are pre-trained by Google, and the paid Gemini API Terms of Service prohibit use of submitted content for foundation-model training. Our AI image-generation providers (Runware, Replicate, Fal.AI) also operate under API terms that restrict training use.
Offline-first means your core data stays on your device. Daily operations like logging feeds, tracking symptoms, and timing contractions never transit through the internet. This eliminates man-in-the-middle risks for routine use.
If Face ID is enabled, your data is biometric-protected. Use Apple's Find My to erase the device remotely. If cloud sync is enabled, your data is backed up (encrypted) and will restore to a new device when you sign in.
No. We never share your data with employers, insurance companies, pharmaceutical companies, advertisers, or data brokers. The only third parties that ever touch your data are the essential infrastructure providers listed in our Privacy Policy (e.g., Supabase for storage, Google Gemini Vision for prediction analysis, Apple StoreKit for payments) — none of which have advertising, insurance, or employment relationships. Your pregnancy data is never monetized.