Effective September 14, 2026

Little Binder Privacy Policy

Little Binder is a private family archive. It is not a public posting service, and we do not sell family data or use it for advertising.

Who this policy covers

Little Binder LLC operates the Little Binder app and website. This policy covers Little Binder accounts, child profiles an authorized adult creates, family creations, and information submitted through our website.

Information we collect

We collect the adult's name, email address, password hash, policy choices, and account identifiers. Families may add a child's display name, optional birth year and name pronunciation, creation images, titles, dates, voice notes, transcripts, and editing choices. We also process limited request, device, security, and support information needed to operate and protect the service. Website forms collect the information shown in the form.

How we use information

We use this information to authenticate adults, store and organize the family archive, synchronize chosen data across the family's devices, create requested image or transcript results, provide downloads and deletion controls, answer support requests, prevent abuse, and maintain the service. We do not use children's data for advertising or train public or third-party AI models with family content.

Children's privacy

Children do not create accounts or public profiles. Before opening a family account, an adult confirms that they are a parent, guardian, or otherwise authorized adult and consents to our processing of the child information they choose to add. The adult controls the family archive and may review, correct, export, or delete it. Please do not add information about a child if you do not have authority to do so.

Private access and service providers

Family creations are not public. A recipient your family has already approved can see only the creations you send to them while their permission remains active. New invitations are not available in this release. Staff can view creation content only with logged, time-limited support permission from an adult. We do not use ad networks, data brokers, or cross-app tracking.

Payments, email, and referrals

For App Store and Google Play purchases, we keep the store provider, product, protected transaction identifiers, entitlement state, gift-claim state, and receipt records needed for access, accounting, refunds, fraud prevention, and law. We do not receive or store card or bank details. For email delivery, we store a protected digest of the email address, message and provider identifiers, and delivery, bounce, complaint, or suppression events. We do not measure opens or clicks in private transactional messages. Referrals are not available in the first release.

Retention and deletion

Account and family content stays available until the adult deletes specific content or the account. Permanent deletion removes active family records and private media, disables credentials and sessions, and removes account-linked copies stored by the app on the device where the request is made. Other signed-in devices clear their app data when they next connect. Isolated backup copies age out through our backup rotation and are not used for ordinary access. We keep a minimal non-identifying deletion receipt and may retain records required for security, fraud prevention, or law.

Your choices

An adult can correct family information in the app, download the family archive from Settings, and permanently delete the account and associated family data in Settings. The same deletion is available at littlebinder.com/delete-account.html for someone who no longer has the app. Download the archive before deletion if you want a copy. You may also contact us to ask about access, correction, deletion, or consent withdrawal.

Security and location

We use family-scoped access controls, private storage, encrypted network transport in production, limited staff access, and deletion controls. No system is risk-free. Information may be processed where our service infrastructure operates, subject to the protections described here and applicable law.

Changes to this policy

We will update the date above and provide appropriate notice before a material change applies. We will ask for new consent when law requires it.

Contact

Questions or privacy requests can be sent to privacy@littlebinder.com.

AI assistance

AI is optional and starts off. When you turn it on, available tools can suggest titles, transcribe speech, and help crop and straighten flat creations. Selected images, recordings, or text are processed on Little Binder's servers. Speech recognition may also run on your device. AI can make mistakes, so check each result. Image edits keep the original.

Turn off all AI for this family to stop new AI requests and queued work, including transcription. Other devices refresh this choice when they connect. Work already sent may have begun processing; unfinished results are discarded. Saved creations, recordings, and previously accepted results stay available. Manual editing and ordinary saving still work.

We do not send family content to third-party AI services or use it to train AI models. Temporary AI inputs are removed after processing. Results you save remain with the creation until you remove them or delete the creation.

Notifications and account messages

Notifications are for grown-ups. You choose promotional push and in-app ideas separately, and can turn either off at any time. Account and service messages are classified separately and may still be sent by email or appear by push or in the app, where that channel is supported and permitted, when reasonably needed for billing, security, suspension, deletion, stored content, legal requirements or providing the service. Device settings still control push. Child mode shows no banners or permission requests.

Sharing alerts open creations already shared with your Little Binder account. You can send to recipients your family has already approved. New invitations, reactions, and replies are not available in this release. A notification never grants access to a creation.

If you enable push, we store a device notification token, installation identifier, language and notification choices. Expo, Apple and Google process the token and short message for delivery. Lock-screen messages avoid child names, creation titles, images, recordings, payment details and other sensitive information. We record delivery state and limited interaction events for reliability and progress, without advertising trackers. Marketing opt-outs stop new marketing delivery. They do not necessarily stop permitted messages needed to administer your account or provide a service you requested. Device permission and channel settings still control push. If you voluntarily add country, region or postal code for relevant messages, we use that adult-provided data for the purposes explained there. We do not request device location or use child-derived data for campaign targeting.