Privacy Policy
1. Who we are
Family OS is operated by Shankar Krishnamurthy, sole proprietor, trading as "Family OS," based in Chennai, Tamil Nadu, India. For the purposes of the DPDP Act, we are the Data Fiduciary in respect of your personal data.
Our Grievance Officer is Shankar Krishnamurthy, contactable at support@getfamilyos.com.
2. Who can use Family OS
Family OS accounts may only be created by adults aged 18 years or older. Under the DPDP Act, individuals under 18 are considered children and require verifiable parental consent for processing their personal data; because the app is designed for parents and adult caregivers, we restrict account creation to adults.
Children, pets, and family members whose information is added to a Family OS account are subjects of the account — not account holders. The account holder is responsible for the information they add about other family members.
3. What information we collect
3.1 Information you provide
- Account information: email address, name, password (hashed).
- Family information you log: pregnancy details, baby/toddler logs (feeds, sleep, diapers, milestones), pet records (vaccinations, vet visits, food), photos, notes, and similar entries you choose to save.
- Health-adjacent data: symptoms, mood, medications, BP, weight, and other wellness entries you log. We treat this as sensitive.
- Family members: details about your partner, children, or pets you choose to add to your account.
3.2 Information generated by your use of the app
- Subscription state: whether you are on a free trial, an active paid subscription, or have an inactive/cancelled subscription (received from Apple).
- Technical logs: device type, operating system version, app version, crash reports, and basic usage events (e.g. "feature opened").
- AI question history: when you ask Family AI a question, we store the question, the data we looked up to answer it, and the response, so you can see your conversation history and so we can improve the system.
3.3 Information we do not collect
- We do not sell your data to advertisers.
- We do not use your family data to train third-party AI models.
- We do not collect data from sources outside what you give us.
- We do not run third-party advertising or tracking SDKs.
4. How we use your information
We use your information to:
- Provide the core features of Family OS (logging, reminders, timelines, photos).
- Answer your questions through the Family AI feature, by looking up your own family data.
- Send service emails (verification, password reset, subscription receipts).
- Diagnose crashes and improve reliability.
- Comply with legal obligations (tax, accounting, regulatory requests).
The lawful basis under the DPDP Act is your consent, freely given when you create an account and accept this Policy. You may withdraw consent at any time by deleting your account (see Section 9).
5. The Family AI feature — important to know
Family AI lets you ask questions about your own logged data. To do this, your question and a relevant excerpt of your data are sent to our AI provider for processing. The AI provider does not retain this data after the response is returned, and our agreement with them prohibits them from using your data to train their models.
Family AI features are informational only. They are not medical advice, diagnosis, or treatment. Always consult a qualified healthcare professional for health decisions.
6. Who we share data with (subprocessors)
We share the minimum data necessary with the following service providers:
- Supabase, Inc. — database and file storage for your family data. Hosted in AWS Mumbai (ap-south-1), keeping primary data within India.
- Anthropic, PBC (USA) — processes the Family AI question and a relevant excerpt of your data to generate the AI response. This involves a cross-border transfer to the United States. Data is not retained by Anthropic after the response.
- Apple Inc. — for the App Store, subscription billing, Sign in with Apple authentication, and APNS notifications.
- Google LLC — for future Android distribution (Google Play Store), Sign in with Google authentication, and crash reporting (where used).
These providers are bound by data-processing agreements that restrict the use of your data to providing the contracted service.
7. Cross-border transfers
Primary data is stored in India. Some processing (most notably AI features) involves transfer to the United States. By using Family OS and the Family AI feature, you consent to these transfers, which we make subject to contractual safeguards.
8. How long we keep your data
We retain your account data for as long as your account is active.
If you delete your account, we apply a 10-day soft-delete period during which the account can be restored on request. After 10 days, your data is permanently deleted from active systems. Encrypted backups containing the data may persist for up to 30 days before rotation.
We may retain certain transactional records (subscription receipts, tax records) for longer where required by law.
9. Your rights
Under the DPDP Act, you have the right to:
- Access the personal data we hold about you.
- Correct or update inaccurate information.
- Erase your data by deleting your account.
- Withdraw consent for processing at any time.
- Nominate another person to exercise your rights in the event of your death or incapacity.
- Grievance redressal — raise a complaint with us first; if unresolved, you may approach the Data Protection Board of India.
To exercise any of these rights, email support@getfamilyos.com from the email address on your account. We respond within a reasonable period, typically not more than 30 days.
10. How we protect your data
- All data is encrypted in transit (TLS) and at rest.
- Photos are stored in access-controlled, owner-scoped storage buckets — only you can read your own files.
- Passwords are hashed; we never see them in plaintext.
- Access to production systems is restricted, logged, and limited to operational necessity.
No system is perfectly secure. If we ever become aware of a breach affecting your data, we will notify you and the Data Protection Board as required by the DPDP Act.
11. Children's information
Children's information (your own children, added by you as the account holder) is treated as sensitive personal data and is used solely to provide the family-care features you've chosen. We do not direct advertising to children. We do not knowingly collect data from anyone under 18 as an account holder.
12. Changes to this Policy
We may update this Policy from time to time. Material changes will be notified in-app and via email. The "Last updated" date at the top of this page is always the source of truth.
13. Contact
Questions, requests, or grievances:
Shankar Krishnamurthy (Grievance Officer)
Email: support@getfamilyos.com
Postal: Chennai, Tamil Nadu, India (full postal address available on written request)