TinyLeap
HomePrivacyTermsSupport
ENעבריתRU
☰
HomePrivacyTermsSupport
ENעבריתRU
Public policy

Privacy Policy

TinyLeap

On this pageScope and operatorInformation you may provide or createNo TinyLeap server or central family databaseWhy information is processedLocal storage and backupsOptional Family Sync and caregiver sharingPhotos, notifications, watches, and platform featuresWhat TinyLeap does not currently doApple, Google, Cloudflare, and external servicesRecipients and disclosuresInternational data transfersCalculations and automated processingRetention, deletion, and copiesSecurityChildren and authority to provide dataPrivacy rights by regionChanges and contact

Privacy Policy

How TinyLeap handles family and child information

Effective: September 26, 2026 · Version 2.5

Scope and operator

This Privacy Policy explains how TinyLeap handles information entered, generated, displayed, stored, backed up, or synchronized when you use the app and its extensions on Apple or Android devices. TinyLeap is intended for adults who are parents, legal guardians, or authorized caregivers and is not intended for independent use by children.

The data controller and operator of TinyLeap is Guy Aharonin, the individual developer and sole proprietor operating TinyLeap in Israel (“Operator”). Public Privacy and Support contact: [email protected].

Information you may provide or create

Depending on the features you use, information may include a child’s name or nickname, date of birth, expected due date, premature-birth status and gestational week, profile photo or selected avatar, caregiver names or permissions, feeding and diaper records, sleep sessions and awakenings, growth measurements, milestone observations and status, notes, reminders, preferences, and photos or videos attached to developmental moments.

TinyLeap is designed for routine child-care, wellness, growth, development, feeding, sleep, and family records rather than medical records. TinyLeap does not ask you to enter diagnoses, prescriptions, medications, treatment plans, laboratory results, or clinical records. Some privacy laws may nevertheless treat certain body measurements, bodily-function records, or derived wellness information as sensitive or health-related. Only enter information you are authorized to provide.

TinyLeap offers static, ready-made illustrated avatars. Choosing an avatar does not scan a face, perform facial recognition, or create a biometric template.

Profile information and milestone media stay local unless you choose a cloud feature. On Apple devices, optional iCloud Backup or Family Sync may store or synchronize supported information through Apple iCloud/CloudKit. On Android, optional private Google backup may store supported information in TinyLeap’s hidden Google Drive app-data area, and optional Family Sync may synchronize supported family records through a TinyLeap-created shared Google Drive folder.

No TinyLeap server or central family database

TinyLeap is designed so that the Operator does not receive or maintain a central copy of the child and family records you create in the app. Core records are processed and stored on your device. TinyLeap does not provide a separate TinyLeap account system or Operator-controlled central family database for those records.

On Apple platforms, optional backup and Family Sync use Apple iCloud/CloudKit. On Android, private recovery backup uses Google Drive appDataFolder and Family Sync uses a separate TinyLeap-created shared Drive folder between Google accounts you authorize. Backup and Family Sync are separate systems.

Android Family Sync invitations use an HTTPS App Link on tinyleap.pages.dev containing a random family invitation identifier. The invitation link does not contain a child name, care history, photos, or the Drive folder identifier. The public website is not a family-data database; if a link falls back to the browser, the hosting provider may process ordinary web-request metadata under its own infrastructure practices.

Why information is processed

Information is processed to provide the features you request, including care tracking, sleep and developmental calculations, growth and milestone records, reminders, exports and reports, profile personalization, optional backup, optional Family Sync, and device integrations such as Widgets, Apple Watch, Wear OS, Live Activities, ongoing Android notifications, Siri/App Intents, or Android shortcuts.

Where applicable law requires a legal basis, core processing used to provide a feature you request may rely on performance of the service or steps you request; optional permissions and sharing may rely on consent; security, fraud prevention, app integrity, and limited operational needs may rely on legitimate interests where permitted; and some processing may be necessary to comply with legal obligations.

Local storage and backups

Core TinyLeap records are stored locally in app-private storage on the device. Platform extensions may use limited, reconstructible copies needed for Widgets, watch features, notifications, or other device integrations.

On Apple devices, optional TinyLeap iCloud Backup uses the user’s private Apple CloudKit database. Apple device iCloud Backup is a separate Apple service.

On Android, Android system backup and device-transfer backup are disabled for TinyLeap. Optional TinyLeap Google backup stores a private recovery copy in TinyLeap’s hidden Google Drive app-data area for the Google account you authorize. A temporary archive may exist only in TinyLeap’s private cache during upload and is deleted when the operation finishes. Turning automatic backup off stops future scheduled backups but does not by itself delete an existing cloud backup.

Optional Family Sync and caregiver sharing

Family Sync is optional and separate from private backup. On Apple devices, TinyLeap uses Apple iCloud/CloudKit sharing. On Android, TinyLeap uses a separate shared Google Drive folder created for the family and shared only with Google accounts the family owner explicitly invites. Family Sync may include child profiles, care records, sleep, growth, milestones, notes, caregiver-related information, and supported milestone media.

On Android, the Google authorization shown for Family Sync is broad enough for TinyLeap to discover and access the shared family folder across Google accounts. TinyLeap’s Family Sync code uses that authorization for TinyLeap family-sync folders and records and does not enumerate or edit unrelated Drive files. Private Google backup continues to use the separate appDataFolder scope.

An invited caregiver may be able to view, add, change, synchronize, or delete shared information according to the permissions and features available in the app. Invite only people who are authorized to access the child’s information and remove or disconnect access when it is no longer appropriate.

Photos, notifications, watches, and platform features

When you select photos or videos, TinyLeap uses the platform’s system picker or interfaces to import only the items you choose. Imported media is stored as part of the app’s data and may be included in an optional backup or Family Sync when you choose those features.

If you enable notifications, Widgets, Lock Screen features, Live Activities, Apple Watch, Wear OS, Siri/App Intents, Android shortcuts, or ongoing Android notifications, limited child or care information may be displayed on device surfaces or passed through Apple or Google platform services as necessary to perform the requested feature. You control many of these permissions and display options in device settings.

What TinyLeap does not currently do

TinyLeap does not include third-party advertising SDKs, third-party behavioral analytics SDKs, an external generative-AI service for family records, a TinyLeap user-account backend, a central child/family database, or data-broker functionality. TinyLeap and the Operator do not sell child or family information or share it for third-party targeted advertising.

Google Play Billing and Apple StoreKit may process purchase and subscription information independently when you use TinyLeap Plus; TinyLeap does not receive your full payment-card details.

Apple, Google, Cloudflare, and external services

Apple may independently process App Store, StoreKit, iCloud/CloudKit, device, backup, Siri, Watch, notification, and related information under Apple’s own agreements and privacy practices. Google may independently process Google Play, Google Play Billing, OAuth authorization, Google Drive, Wear OS/Data Layer, device, and related information under Google’s own agreements and privacy practices.

The public TinyLeap website and Android App Link association are hosted on Cloudflare Pages. TinyLeap does not place advertising or behavioral-analytics SDKs on that site and does not set TinyLeap cookies there. Cloudflare may process ordinary network and request metadata as an infrastructure provider. External informational links are controlled by their respective publishers.

Recipients and disclosures

TinyLeap does not send the child or family database to an Operator-controlled backend. Depending on the platform and features you choose, relevant recipients may include Apple iCloud/CloudKit, Google Drive, Google Play services, Apple or Google billing services, and family participants whom you explicitly authorize. Support or legal correspondence that you send directly to the Operator may be seen by the Operator and, only when genuinely necessary, professional advisers or service providers subject to appropriate duties.

TinyLeap does not disclose child or family information to data brokers or third parties for targeted advertising.

International data transfers

Apple, Google, Cloudflare, and other platform or infrastructure providers may process or store information in multiple countries under their own terms, safeguards, and legal obligations. Optional backup, Family Sync, billing, website requests, or watch/device transport may therefore involve cross-border processing depending on the service and account configuration you use.

User-directed exports or shares are processed by the destinations you select under their own practices.

Calculations and automated processing

TinyLeap uses rules and calculations to create sleep windows, summaries, age-adjusted guidance, development timing, growth displays, reminders, and similar app outputs. These outputs are informational and organizational. TinyLeap does not use them to make solely automated decisions that produce legal effects or similarly significant effects about a child or caregiver.

Retention, deletion, and copies

Local records remain in app-private storage until you edit or delete them, clear app data, or uninstall the app, subject to platform behavior. Optional cloud copies remain according to the controls of the relevant Apple or Google account and the feature you enabled. Disconnecting Family Sync stops synchronization on that device but does not necessarily delete records already stored on another authorized participant’s device or the shared cloud resource.

An Android invitation identifier is a random family identifier used to locate the family’s TinyLeap shared workspace after authorization. TinyLeap does not intentionally use invitation links as a long-term family-record store on the website.

Security

TinyLeap uses platform app-private storage and platform authorization mechanisms. Android private backup uses Google Drive appDataFolder; Android Family Sync uses a separate shared Drive folder and Google authorization; Apple cloud features use iCloud/CloudKit. App Links use Android Digital Asset Links so the tinyleap.pages.dev family-join URL can be associated with the signed TinyLeap Android app.

No technical measure can guarantee that a device, local storage, cloud service, network, notification surface, export, invitation link, or software operation will always be secure or error-free.

Children and authority to provide data

TinyLeap is an adult caregiver tool. It is not directed to children for independent use and does not intentionally ask a child to create an account or submit information directly. Adults using TinyLeap are responsible for having the legal or other appropriate authority to enter, store, share, or synchronize information about a child or another caregiver.

A child can be the person the information is about even though the information is entered by an adult. The source of child information in TinyLeap is the parent, legal guardian, or authorized caregiver who enters or shares it, together with calculations TinyLeap performs from those user-entered records. TinyLeap does not collect information directly from a child.

Privacy rights by region

Israel: core child and family records are managed by the user in the app rather than in a central TinyLeap database, and the app provides tools to view, edit, export, and delete those records. If the Operator separately holds personal information about you, for example support or legal correspondence, rights available under Israeli privacy law, including applicable access or correction rights, may be exercised subject to the conditions and exceptions of that law.

EEA and United Kingdom: where the GDPR or UK GDPR applies, you may have rights of access, rectification, erasure, restriction, objection, data portability, withdrawal of consent, and complaint to the competent supervisory authority, subject to the applicable conditions and exceptions. Most child and family records can be handled directly with TinyLeap’s in-app view, edit, export, delete, backup, and sharing controls because the Operator does not keep a central server-side copy. For personal information actually held by the Operator, or for a right that cannot be completed in the app, contact [email protected]. Withdrawal of consent affects future processing and does not undo processing that was lawful before withdrawal.

United States: privacy rights vary by state. Some state laws use a broad definition of consumer health data that can cover routine measurements or information about bodily functions even when an app is not a medical or healthcare service. TinyLeap therefore provides a separate U.S. State Consumer Health Privacy Notice describing the potentially covered categories, purposes, storage and user-directed sharing, and available rights. TinyLeap does not sell child or family information, use it for third-party targeted advertising, or maintain a central child/family database.

Many records can be viewed, corrected, exported, or deleted directly in TinyLeap. For a right that cannot be completed in the app, contact [email protected]. The Operator may need to verify a requester’s identity or authority before acting on a request and may retain information when the law permits or requires it.

Changes and contact

This Policy may be updated when TinyLeap’s Apple or Android features, legal obligations, billing, cloud configuration, distribution configuration, or data practices change. App Store and Google Play privacy disclosures should remain consistent with the actual release configuration.

For privacy questions, support, or applicable rights requests, contact TinyLeap at [email protected].

TinyLeap
© 2026 · TinyLeap
PrivacyTermsCare & safetyU.S. privacySupport