Privacy Policy

The short version

Your household’s knowledge belongs to your household. We store it to give it back to you, and for nothing else. No ads, ever. No selling your personal information. No sharing your household’s content with advertisers or data brokers. The only people who see your data are you, your household, and the service providers who help us run Kinsly — or where the law compels us (section 5). No using your household’s content to train AI models. You can export or delete everything, any time.

In this policy, “personal information” has the meaning in the Privacy Act 1988 (Cth), and “household content” means the notes, photos and dictated text your household records in Kinsly.

1. What we collect

How we collect. Almost everything comes directly from you: what you type, photograph or dictate in the app, what you enter on this site’s waitlist form, and what you provide when you join a household with an invite code. Household members may also record information about each other — that’s the point of a shared memory. Our marketing site collects limited technical data through the Meta pixel (section 7). We never buy data about you from anyone.

Household content you choose to record — notes, photos and voice-dictated text captured by household members. By the nature of the product this can include information Australian privacy law treats as sensitive (for example health details such as allergies or medication routines) and financial details (warranties, receipts, insurance facts). We only receive what your household chooses to capture. By recording a sensitive entry — yours or your child’s — you consent to us storing and protecting it as described in section 4. Only record sensitive information about another adult (a household member, a carer, anyone else) with their agreement: their health details are theirs to share.

Account and contact data — your household name, member first names, and (on the waitlist/founding list) your email address and signup answers. If you’d rather not share an email address we can’t add you to the waitlist or run your account — there’s no other way to deliver Kinsly to you. Nothing else is mandatory.

Usage events — content-free product signals (for example “a capture happened”), tied to a pseudonymised household identifier — a code, not your name — used to understand whether the product works. These events never contain what you wrote.

Other people you mention (a plumber’s number, a babysitter’s schedule) — we store what you record, use it only to provide Kinsly to your household, and never profile those people. If you’re not a Kinsly user and believe a household has recorded your information, contact us (section 10): once we’ve verified who you are, we’ll help you access it, correct it, or ask the household to remove it, in line with our obligations under Australian privacy law.

Real names optional. Inside Kinsly you can use nicknames, initials or first names only — whatever your household actually calls each other. We do need a working email address for the waitlist and for account access, because that’s how we deliver the service; beyond that, you choose how identifiable you want to be.

2. Children

Kinsly accounts are for adults. You must be 18 or older to create a household or join one with an invite code. Children take part as profiles that a parent or guardian creates and controls — information about a child (school routines, medical needs) is recorded by their parent or guardian, who consents on their behalf and can edit or delete it at any time. We are preparing for the OAIC’s incoming Children’s Online Privacy Code and will update our practices as it commences.

3. Where your data lives

  • Household content database: Sydney, Australia (Supabase, encrypted at rest).
  • Application servers: hosted with Railway in the United States. These servers relay the app and hold limited operational data (scheduled notification text you set, content-free usage events, subscription status) — never your household entries.
  • AI processing: when AI answers are enabled, relevant non-private entries are sent to Anthropic (United States) to answer your question, under terms that do not permit training on your data. Entries marked private are never sent to any AI service.
  • Voice: speech-to-text runs in your browser. Depending on your browser (e.g. Chrome, Safari), audio may be processed by the browser vendor’s speech service — it is never sent to Kinsly’s servers as audio.
  • Payments: handled by Stripe (United States); card details never touch Kinsly’s servers.
  • This marketing site uses the Meta pixel to measure our advertising (see section 7). The app itself contains no advertising or ad trackers.

Where information leaves Australia — US hosting, AI processing, Stripe payments, the Meta pixel on this marketing site (Meta operates globally, including the US), and speech-to-text handled by your browser’s vendor in its country of operation — we take reasonable steps consistent with the Australian Privacy Principles to ensure it is protected to an equivalent standard, including contractual commitments from our service providers limiting what they can do with it.

4. Sensitive entries

Entries Kinsly detects as sensitive (or that you mark private) are encrypted at rest with a household-derived key, blurred in the interface, excluded from AI processing and photo reading, and excluded from babysitter/carer handover links. A private note can only be revealed by the household member who recorded it.

We never ask for government identifiers like Medicare or tax file numbers. If your household records one — say, on a photographed document — it’s treated as a sensitive entry.

5. How we use information

To provide Kinsly to your household — storing, organising and retrieving what you captured; sending notifications you set; operating your subscription. We do not use household content for advertising, do not sell or rent any personal information, and do not use your content to train AI models. Aggregate product analytics use pseudonymised, content-free data only, and we treat that data with the same care as everything else in this policy.

Who else ever sees it. The service providers named in section 3 process information on our behalf under contracts that limit them to providing their services to us — they can’t use your household’s content for their own purposes. Beyond that, we disclose personal information only if the law requires it (for example, a court order or a regulator’s compulsory notice); where the law allows, we’ll tell you before we do. If Kinsly is ever acquired or restructured, your information may transfer to the new operator — but only bound by this policy’s promises or stronger ones, and we’ll notify you before it happens.

6. Sharing inside your household

Kinsly is a shared household memory: entries (except private ones) are visible to the members of your household. Your invite code is the key to your household — treat it like a house key. Anyone you give it to can read and add household notes.

If someone leaves. When a member leaves a household, their access ends immediately. Entries they contributed remain part of the household’s shared memory — they were recorded for the household — except entries they marked private, which are deleted when they leave. A departing member can export their private entries first, and can ask us to remove entries about them that the household holds (section 10).

7. Marketing site & email

The waitlist/founding list uses your email to send you access and a small number of launch updates. Every email identifies us and includes an unsubscribe link; opting out takes effect within 5 business days (usually instantly), and once you’ve opted out or deleted your account we won’t send you marketing again. Waitlist data that never converts to an account is deleted within 12 months. This site’s Meta pixel helps us measure which ads work; you can limit ad tracking through your browser and Meta settings.

8. Retention, export & deletion

Kinsly’s value is remembering, so by default we keep what your household captures until you remove it — that default is your choice, not a lock-in. You can delete any entry, export your entire household memory as a file, or delete the whole household, at any time, in the app. Deleted content is removed from our live systems within 30 days, and from encrypted backups within 90 days as those backups rotate — backups exist only for disaster recovery and are never used to restore something you deleted. If your household closes its account, we delete all household content on the same timeline. If a subscription lapses, we keep your household’s content for 12 months so you can come back to it, then contact you before deleting it.

9. Security

Encryption in transit and at rest; sensitive entries additionally encrypted at the field level; database access locked to code-verified household functions; access-controlled infrastructure. If a data breach is likely to cause serious harm we will notify affected users and the OAIC in line with the Notifiable Data Breaches scheme.

10. Your rights, complaints & changes

Your rights. You can access, correct and export your information in the app at any time, free of charge. For anything you can’t do yourself, email hello@kinsly.com.au — we’ll respond within 30 days and never charge you for making a request. In the rare case we can’t do what you’ve asked, we’ll tell you why in writing and what you can do next.

Complaints. If you think we’ve mishandled your information, email the same address with “privacy complaint” in the subject line. We’ll acknowledge it within 5 business days, investigate, and aim to resolve it within 30 days. If you’re not satisfied with our response, you can complain to the Office of the Australian Information Commissioner (oaic.gov.au, 1300 363 992).

Changes. We’ll notify households of material changes to this policy before they take effect.

Terms of Use · Home