Privacy Policy
nanoGOAT Parent
nanoGOAT LLC ("nanoGOAT," "we," "us," or "our") operates nanoGOAT Parent, a caregiver companion app for families. This Privacy Policy explains what information Parent collects, how it is used, and the choices you have. Parent is in testing before public release; this policy describes the tested app and its related services.
Parent is a different product from nanoGOAT AAC. AAC is a local-first talker for children. Parent is a signed-in app for caregivers with accounts, optional photos, and cloud-backed progress. See the AAC policy at/aac/privacyif you use that app.
Account-Based
Parent uses Sign in with Apple or Google so your day logs and settings can sync across devices.
You Control Photos
Photos you add (for example, keepsakes or moment slides) are stored to provide the feature you chose. You can delete them in-app or delete your account.
No Ads, No Sale of Data
We do not sell personal information, serve third-party ads, or build marketing profiles from Parent use.
Delete Anytime
Request permanent account and cloud data deletion atnanogoat.io/account/deleteor email hello@nanogoat.io.
1. Who This Policy Covers
This policy covers the nanoGOAT Parent mobile application and related Parent backend services operated by nanoGOAT LLC (a Colorado limited liability company), including account authentication, cloud storage of Parent content, and the account-deletion web flow at nanogoat.io. General website accounts, waitlists, browser storage, and support are also covered by the Website Privacy Policy.
It does not cover nanoGOAT AAC, third-party app stores, or third-party sites you open from links inside Parent.
2. Information We Collect
2.1 Account and identity
- Email address (or Apple/Google account identifiers when you use those sign-in options)
- Display name or profile fields you choose to provide
- Authentication tokens and session metadata needed to keep you signed in securely
2.2 Parent content you create
- Child profiles, plays, runs, Outcomes, day logs, journal entries, and check-ins you record
- Visual-support boards and their content
- Photos, captions, and moment/keepsake content you upload or capture in the app
- Preferences, app icon choice, notification settings, and similar configuration
- Any feedback or support messages you send us
2.3 Technical and diagnostic data
We may collect limited technical information to operate and improve Parent, such as app version, device type/OS version, crash and error diagnostics, and basic usage events needed for reliability (for example, whether a sync completed). We configure diagnostic tools to avoid intentionally collecting family content or unrelated personal data. Sentry provides crash diagnostics when enabled; screenshots and default personal-information collection are disabled. We do not use Parent data for third-party advertising.
2.4 Information about children
Parent is designed for caregivers, not as a child's primary app. You may store notes or photos that relate to a child in your care. That content is stored under your account and can still be personal or sensitive information about the child. An adult account does not remove the child's privacy interests. See ourParent COPPA Policyfor children's privacy commitments.
Caregivers can hand a child the visual-support tools, including timers, schedules, first-then boards, and feelings tools. Analytics records which type of tool is opened or used, including during child-locked use, with a random installation identifier. These events do not include the child's identity, board content, or selected feelings.
2.5 Waitlist and beta
If you join the Parent waitlist, we keep your account reference, the time you joined, and how you arrived (for example, the website). If you join the beta (at most 10 testers), we also keep the beta terms version you accepted and the time you accepted it. We use this to hold your spot and email you if a tester spot opens. Deleting your account deletes these records with it.
2.6 Product analytics
We use PostHog, with U.S. hosting, to understand how Parent is used and improve its features. Collection begins during onboarding, before sign-in, using a generated installation identifier that is independent of your account. We do not send your account ID, name, or email to PostHog. Signing in does not identify you or link these events to your account. Signing out or switching accounts replaces the random identifier. Events do not create PostHog person profiles. The identifier lets us count feature use and return visits on an installation; it does not combine your activity across devices.
- Onboarding steps, sign-in completion, purchase attempts and results, and app openings
- Use of runs, journals, keepsakes, visual supports, and sharing features
- Whether an entry includes a photo or note, without sending the photo or note itself
- Event times, local dates, time-zone offsets, platform, and analytics environment
- Feature-flag assignments and exposure to supported feature variations
Product analytics does not include names, email addresses, child identifiers, photos, captions, journal text, play wording, selected feelings, or Outcome values. Session replay and automatic screen recording are absent. Events and feature-flag requests ask that IP-based geolocation enrichment be disabled. Service providers receive network information necessary to deliver requests. Sharing events describe the share action and its reported result, not the recipient or the shared content.
2.7 Subscriptions
RevenueCat manages subscription access and purchase restoration. It receives purchase and subscription records, your internal account identifier after sign-in, and your email, display name, phone number, and sign-in provider when available from your account. It also receives technical information such as app and operating-system versions and country, and the vendor device identifier on Apple devices. We do not request advertising tracking permission or intentionally collect advertising identifiers. Family content is not sent to RevenueCat. Payments are handled by your app store; we do not receive your full payment-card details.
3. How We Use Information
- Provide, sync, and back up Parent features you use
- Authenticate you and secure your account
- Send transactional messages (for example, security or account notices) when needed
- Diagnose crashes, prevent abuse, and improve reliability
- Understand onboarding and feature use, evaluate product improvements, and manage subscriptions
- Respond to support requests and legal obligations
We do not sell personal information. We do not use Parent content for third-party advertising.
4. How We Share Information
We share information only as needed to run Parent:
- Service providers that process data on our behalf (for example, cloud hosting, authentication, crash diagnostics), under contractual limits. These include Supabase for accounts and cloud content, RevenueCat for subscriptions, Sentry for diagnostics when enabled, and PostHog for product analytics and feature flags.
- App stores and OS vendors when you download Parent or use platform sign-in (such as Apple or Google) under their own policies.
- People you choose to share with: When you export or share content, the recipient and sharing service may receive it. Copies outside Parent are not removed by deleting your Parent account.
- Legal and safety disclosures if required by law or to protect rights and safety.
We do not sell or rent your personal information.
5. Storage, Retention, and Security
Account and cloud-backed Parent content are stored on infrastructure we operate or contract (currently including Supabase-hosted services for authentication and data). Parent also keeps account-specific local data on devices you use. Signing out does not necessarily erase that local data. Deleting an individual synced item can mark it as deleted before it is physically removed; photo cleanup also depends on sync completing. We retain account data to provide the service and meet applicable obligations. After you delete your account, we delete or de-identify associated account and family content within a commercially reasonable period, except where we must retain limited records for security, fraud prevention, or legal compliance.
Feature-use events are separate from your family content and use a random installation ID, not your account ID. Account deletion does not automatically erase PostHog events. We cannot locate these new events by looking up your account. Earlier test versions linked events to account IDs; changing the app does not erase that earlier history. Contact hello@nanogoat.io for questions or requests about earlier records. Diagnostic reports, support messages, app-store transaction records, and provider backups are separate from the live family database. Contact us for help with those records. Account deletion does not cancel your app-store subscription.
We use industry-standard safeguards (encryption in transit, access controls). No method of transmission or storage is 100% secure; please secure your sign-in account and keep your device secure.
6. Your Choices and Rights
- Access or update account profile information in the app where offered
- Delete individual photos or content in-app
- Delete your account and cloud-backed family content viananogoat.io/account/delete
- Email privacy requests to hello@nanogoat.io
Product analytics is enabled in store builds, including before sign-in. Parent does not currently provide an in-app analytics opt-out switch. Contact us with questions or requests about analytics processing.
Depending on where you live (for example Colorado or California), you may have additional rights to access, obtain a copy of, delete, correct, or restrict certain processing, and to appeal a denied request where applicable. We will not discriminate against you for exercising privacy rights. Contact us to make a request; we may need to verify your identity.
7. Children's Privacy
Parent accounts are for adults (parents, guardians, and other caregivers). Children should not create Parent accounts. For details, see ourParent COPPA Policy.
8. International Users
We are based in the United States. If you use Parent from outside the U.S., you understand that your information may be processed in the U.S. and other countries where our providers operate.
9. Changes
We may update this Privacy Policy. When we make material changes, we will update the effective date on this page and, where appropriate, provide additional notice in the app or by email.
10. Contact
Related
- Parent Terms of Service
- Parent COPPA Policy
- Delete account
- AAC Privacy Policy (separate product)