Today's Little Moments

Privacy Policy

Last Updated: July 1, 2024

1. Introduction

At Today's Little Moments ("Company," "we," "us," or "our"), we are committed to protecting your privacy and ensuring the security of your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our web application and all related services (collectively, the "Services") operated under the Today's Little Moments brand.

This Privacy Policy applies to all information collected through our Services, as well as any related services, sales, marketing, or events. It is important that you read this Privacy Policy together with our Terms of Service and any other privacy notice we may provide on specific occasions when we are collecting or processing personal information about you so that you are fully aware of how and why we are using your data.

By accessing or using our Services, you acknowledge that you have read, understood, and agree to be bound by the terms of this Privacy Policy. If you do not agree with our policies and practices, please do not use our Services.

2. Information We Collect

We collect several types of information from and about users of our Services, including:

2.1 Personal Information You Provide

This is data that can be used to identify you individually, which you voluntarily provide to us. This may include:

  • Identity Data: First name, last name, username or similar identifier.
  • Contact Data: Email address, telephone numbers.
  • Account Data: Username, password, account preferences.
  • Financial Data: Payment card details and billing address, processed by our third-party payment processor (Stripe). We do not store your full payment card details on our servers. Note that some users may receive promotional access without providing financial data.
  • Transaction Data: Details about payments and subscriptions, including promotional access grants.
  • Content Data: Any data you create or upload, including voice recordings and transcripts from conversations with our AI memory journalist; stories, narratives, and summaries generated through our Services; photos and their associated captions or alt text; writing style samples; and AI-generated suggestions for story improvement.
  • Profile Data: Your preferences, feedback, and survey responses.

2.2 Usage and Technical Data We Collect Automatically

We may also collect information about how you access and use our Services, including:

  • Device and Connection Information: IP address, browser type and version, operating system and platform, device information (e.g., device type, mobile network information), and time zone setting.
  • Usage Data: Pages visited, features used (including time spent on each), traffic data, logs, and other communication data and the resources that you access and use on our Services.

2.3 Special Categories of Personal Data

Through your use of our Services, particularly when recording conversations, creating stories, or uploading photos, you may provide information that could include special categories of personal data (as defined by GDPR) or sensitive personal information (as defined by CCPA/CPRA), such as:

  • Information about your race or ethnicity, religious or philosophical beliefs.
  • Health information or details about your sex life or sexual orientation.
  • Family history and relationships.
  • Voice recordings, which may be considered biometric data under some laws.

We do not specifically request this information, but it may be captured in the content you create. By using the Services, you consent to our processing of this information as necessary to provide the Services you have requested. You are responsible for the content you provide and should avoid sharing any sensitive information you are not comfortable with being processed by us and our third-party service providers. We process such information with appropriate technical and organizational safeguards.

3. How We Collect Information

We collect information through various methods, including:

  • Direct Interactions: Information you provide when you create an account, purchase a subscription, record conversations, create stories, upload photos, provide writing samples, or contact customer support.
  • Automated Technologies: Information collected automatically through cookies, server logs, and analytics tools. See our Cookie Policy for details.
  • Third-Party Sources: Information we may receive from our essential service providers, including:
    • Authentication Services: Google, when you sign up or log in using your Google account.
    • Payment Processors: Stripe, for handling payments.
    • Telephony and Voice Services: Twilio for call routing and ElevenLabs for voice synthesis.
    • AI and Content Processing: Google Gemini for transcription, analysis, and story generation.
    • Infrastructure and Hosting: Supabase for database, authentication, and storage services.
    • Email Delivery: SendGrid for sending transactional and marketing emails.

4. How and Why We Use Your Information

We will only use your personal information when the law allows us to. Our primary purpose is to provide and improve our Services. We use your information for the following purposes, based on the legal grounds of performing our contract with you, our legitimate interests, and your consent where applicable:

  • To Provide and Manage the Services: Creating and managing your account, processing payments, recording conversations, generating transcripts and stories, storing and displaying your photos, and sending essential service-related communications.
  • To Improve and Develop Our Services: Analyzing usage patterns to enhance our Services, debugging issues, and developing new features. We do not use your Content Data (recordings, stories, photos) to train our own AI models. However, to provide our Services, we rely on third-party AI providers (such as Google Gemini and ElevenLabs) who may use content processed through their APIs for their own service improvement and model training, in accordance with their respective privacy policies. Any data used for our internal service improvement is processed in an aggregated and anonymized form.
  • To Personalize Your Experience: Customizing your experience, generating story suggestions, and adapting our Services to better meet your needs.
  • To Communicate with You: Responding to your inquiries, sending updates, and providing information about features or offers that may interest you (where you have consented).
  • For Security and Legal Compliance: Protecting our Services from fraud, verifying your identity, enforcing our Terms of Service, and complying with legal obligations.

5. Disclosure of Your Information

We do not sell your personal information. We may share your personal information only with the following categories of recipients to provide our Services:

  • Essential Service Providers: Third-party vendors who perform services on our behalf. These providers are contractually obligated to protect your data and are prohibited from using it for any other purpose. Key providers include:
    • Infrastructure: Supabase (Privacy Policy: link).
    • AI Processing: Google Gemini (Policy: link). Your content is subject to the policies of our AI partners, who may use it for service improvement and model training.
    • Voice Services: ElevenLabs (Policy: link) and Twilio (Policy: link).
    • Payment Processing: Stripe (Policy: link).
    • Email Communications: SendGrid.
  • Professional Advisers: Lawyers, bankers, auditors, and insurers who provide professional services to us.
  • Regulatory Authorities: When required by law, court order, or other governmental regulation.
  • Business Transfers: In connection with a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction, subject to the promises made in this Privacy Policy.
  • Physical Book Services: If you order a physical book through our Services, our team will manually access your stories and photos to construct your personalized book. This access is only granted after you explicitly request a book order and provide consent for our team to view your content for book creation purposes. Our team members are bound by strict confidentiality agreements and will only access the minimum content necessary to fulfill your book order.
  • With Your Explicit Consent: We may share your information with other third parties when you have given us your specific consent to do so. For example, if you choose to make a story public, it will be accessible to anyone with the link.

6. Data Security

We have implemented appropriate technical and organizational measures to protect your personal information. Our security practices include:

  • Encryption of sensitive data at rest and in transit.
  • Use of secure, reputable third-party services like Supabase, which provides robust security for our database and storage infrastructure.
  • Strict access controls and permission management.
  • Regular security assessments and employee training.

However, no method of transmission over the Internet is 100% secure. While we strive to protect your personal information, we cannot guarantee its absolute security. You are responsible for keeping your account password confidential.

7. Data Retention

We retain your personal information for as long as necessary to fulfill the purposes for which we collected it. This means we retain your data for as long as your account is active. If you delete your account, we will initiate a process to delete your personal information and Content Data from our active systems within 30 days, subject to any legal or regulatory obligations to retain the information for longer (e.g., for tax or accounting purposes).

Anonymized and aggregated data may be retained indefinitely for analytical purposes.

8. Your Privacy Rights

Depending on your location, you have certain rights regarding your personal information. These may include the right to access, correct, delete, or restrict the processing of your data. You can exercise many of these rights directly through your account settings:

  • Access and Correct: You can review and update your account information through your dashboard settings.
  • Delete: You can delete individual stories or photos from within the application. To delete your entire account and all associated data, please contact us.
  • Object to Marketing: You can unsubscribe from marketing emails using the link provided in the emails.

For any requests you cannot fulfill through your account, or for a full list of your rights under GDPR or CCPA, please see the relevant tabs or contact us at support@todayslittlemoments.com.

9. Children's Privacy

Our Services are not intended for children under the age of 18. We do not knowingly collect personal information from children under 18. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

10. International Data Transfers

We are based in the United States. Your information will be transferred to, stored, and processed in the United States and other countries where our service providers are located. We use approved data transfer mechanisms, such as Standard Contractual Clauses, to ensure your data receives an adequate level of protection when transferred outside the EEA, UK, or Switzerland.

11. Cookies and Similar Technologies

We use cookies for essential functions like authentication and for analytics. For detailed information, please see our Cookie Policy.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. If we make material changes, we will notify you by posting the updated policy on our website, updating the "Last Updated" date, and providing notice through our Services or via email.

13. Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us at:

Today's Little Moments
611 Gateway Blvd, Suite 120, #1225
South San Francisco, CA 94080
Email: support@todayslittlemoments.com

Need More Information?

If you have any questions about our privacy practices or would like to exercise your rights, please don't hesitate to contact us.