Privacy Policy
Last updated: March 4, 2026
1. Introduction
Lucas ("we", "our", "us") is a baby tracking application designed for families. We take your family's privacy extremely seriously. This policy explains what data we collect, how we use it, and your rights regarding your information.
We do not sell your data. We never will.
2. Data We Collect
We collect only what's necessary to provide our service:
- Account info: Email address and display name for authentication
- Baby profiles: Name, date of birth, gender, and optional avatar photos
- Activity logs: Feeding, sleep, diaper, and milestone records you enter
- Photos & voice: Media you choose to upload for moments and memories
- Growth data: Weight and height measurements you record
- Device info: Push notification tokens for alerts (optional)
3. How We Use Your Data
Your data is used exclusively to:
- Display your baby's activity history and analytics
- Sync data between family members you've invited
- Generate wellness scores and growth charts
- Send push notifications you've opted into
- Provide customer support when requested
We do not use your data for advertising, profiling, or any third-party marketing.
4. Data Storage & Security
Your data is protected with enterprise-grade security:
- Row Level Security (RLS): Database policies ensure families can only access their own data
- TLS 1.3 encryption: All data in transit is encrypted end-to-end
- JWT authentication: Cryptographically signed tokens verify every request
- SOC 2 compliant infrastructure: Our cloud provider (Supabase) maintains SOC 2 Type II certification
Data is stored on secure servers with automated backups and encryption at rest.
5. Data Sharing
We share your data only with:
- Family members you invite: People you explicitly add to your family group
- Infrastructure providers: Supabase (database/auth), Apple (push notifications) — under strict data processing agreements
We never share, sell, or provide your data to advertisers, data brokers, or any other third parties.
6. Children's Privacy
Lucas is designed for parents and caregivers, not for children to use directly. While the app stores information about babies and young children, this data is entered and managed by adult caregivers. We comply with COPPA and similar regulations worldwide.
7. Your Rights
You have the right to:
- Access: View all data we store about your family
- Export: Download your data at any time
- Delete: Request complete deletion of your account and all associated data
- Correct: Update or fix any inaccurate information
To exercise any of these rights, contact us at hello@lucasapp.io.
8. Changes to This Policy
We may update this policy from time to time. Significant changes will be communicated through the app. Continued use of Lucas after changes constitutes acceptance of the updated policy.
9. Contact Us
If you have questions about this privacy policy or your data, please reach out:
📧 hello@lucasapp.io