Privacy Policy
Product: Family Harmony ("the Service") Provider: NunezDev LLC ("we," "us," "our") Effective date: July 28, 2026 Last updated: July 28, 2026
1. Who we are and how to reach us
The Service is operated by NunezDev LLC. COPPA requires that we publish our full contact details; you may contact us about this policy or your data at:
- Email: privacy@familyharmony.co
- Mailing address: 8461 Lake Road, Ponca City, OK 74604
- Phone: (580) 297-7036
If you are a parent or guardian and want to review, correct, or delete your family's information, use the same contact details or the in-app Settings → Delete account control.
2. Scope
This policy explains what information the Service collects, how we use it, who we share it with, how long we keep it, and the choices you have. It applies to the Service's website, web app, and installable (PWA) app.
3. Information we collect
We collect only what we need to run a shared family calendar. We do not sell personal information, and we do not use it for third‑party advertising or behavioral profiling.
a. Account information (provided by the adult account holder):
- Email address and password (passwords are stored only as a salted hash by our authentication provider; we never see the plaintext).
- An optional parental PIN, stored only as a salted hash.
b. Family profile information (entered by the account holder):
- Household name, time zone, and display/settings preferences.
- Family member profiles, including children: first name or nickname, an "adult" or "kid" role, a color, and an optional avatar photo or emoji.
c. Calendar and household content:
- Events (titles, dates/times, locations, notes, and which members they involve).
- Tasks and chores (titles, star values, completion status).
- Rewards, reward redemptions, and an optional allowance ledger (amounts you enter).
- Notes/announcements and kids' routines.
d. Photos:
- Photos you upload for the wall‑display slideshow and member avatars. If you connect Google Photos, images you explicitly select are copied into the Service's private storage.
e. Connected Google account (only if you choose to connect one):
- OAuth tokens and the events from the Google calendar you connect, which we sync in both directions. We request the minimum Google Calendar scope needed to read and write events. We do not access other Google data.
f. Device and technical information:
- Push notification subscriptions (a per‑device token from your browser's push service) when you enable reminders.
- Standard server and security logs (e.g., IP address, timestamps) generated by our hosting and database providers to operate and secure the Service.
- A per‑device "this device belongs to" preference stored locally in your browser (not sent to our servers as identified profile data).
We do not intentionally collect precise geolocation, biometric identifiers, or government identifiers.
4. How we use information
We use the information above only to:
- Provide and operate the calendar, tasks, rewards, notes, routines, and photo slideshow for your household.
- Authenticate you and keep each family's data private and isolated from every other family.
- Send the reminders and morning‑digest notifications you enable.
- Sync with your connected Google Calendar.
- Power optional AI features you choose to use (see Section 5).
- Maintain security, prevent abuse, debug, and comply with law.
5. AI features and how your content is processed
Optional features — "Magic Import" (turning pasted text or a photo into events), the natural‑language assistant, and recipe/meal parsing — send the specific text or image you submit to our AI processor, Anthropic (Claude API), to generate the result. Anthropic acts as our service provider and, under its commercial API terms, does not use API inputs or outputs to train its models. Do not submit a photo or text you are not comfortable processing this way; these features are opt‑in and are never required to use the calendar.
6. Who we share information with
We share information only with vendors that host and power the Service ("service providers"/"subprocessors"), each of which is permitted to use the information only to provide services to us:
| Provider | Purpose |
|---|---|
| Supabase | Database, authentication, and file storage (hosting your data) |
| Vercel | Application hosting and delivery |
| Anthropic | AI features you choose to use (Section 5) |
| Two‑way Calendar sync and Google Photos import, only if you connect it | |
| Web push services (e.g., your browser vendor's push endpoint) | Delivering the notifications you enable |
| Stripe | Subscription billing, once paid plans launch; card data is handled by the processor, not us |
We do not sell personal information, do not share it with advertising networks, and do not allow third‑party behavioral advertising. We may disclose information if required by law or to protect the Service and its users, or in connection with a business transfer (with notice as required by law).
7. Children's Privacy (COPPA)
The Service stores information about children under 13 (for example, a child's name and photo that a parent adds, and a child's task activity). We treat this information under the U.S. Children's Online Privacy Protection Act (COPPA) and its 2025 amendments.
- Parent‑controlled by design. Only an adult account holder can create an account and add or edit children's profiles. Children use the Service through the parent's account on the family's devices; a device can be limited to a "kid mode" that shows only that child's items.
- Parental notice and consent. By creating an account and adding a child's information, the account holder represents that they are the child's parent or legal guardian and consents to our collection and use of that information as described in this policy. We do not knowingly collect a child's personal information except as entered by the account‑holding parent for family use.
- No monetization of kids' data. We do not use children's information for advertising, do not sell or share it for targeted advertising, and do not condition a child's participation on disclosing more information than is reasonably necessary.
- Parental rights. A parent may review, correct, or delete their child's information at any time in the app, or by contacting us at privacy@familyharmony.co. A parent may refuse further collection/use by deleting the member or the account. We will honor verified requests promptly.
- Data minimization & retention. We collect only what the family chooses to add, and we retain children's information only as long as needed to provide the Service to that family (see Section 9).
If you believe we have collected a child's information without the required parental consent, contact us at privacy@familyharmony.co and we will delete it.
8. Your choices and rights
- Access & correction: view and edit your household's data directly in the app.
- Deletion: delete individual members, events, photos, or your entire account and all associated data via Settings → Delete account. Deleting the account removes your household's data and uploaded files and deletes your login.
- Notifications: turn reminders on/off per device.
- Google connection: disconnect Google at any time in Calendar settings.
- State privacy rights (e.g., California/CPRA and similar laws): depending on your residence, you may have rights to access, delete, correct, or obtain a copy of your personal information, and to not be discriminated against for exercising them. We honor these for verified requests at privacy@familyharmony.co.
9. Data retention
We keep personal information only as long as reasonably necessary to provide the Service to your household or as required by law, and not indefinitely. When you delete a member, event, or photo, it is removed from active systems; when you delete your account, your household's data and files are deleted and your login removed. Backups and logs are retained for a limited period and then deleted on a rolling basis.
10. Security
We protect information with: encryption in transit (HTTPS); database row‑level security that isolates each household's data so no account can access another's; salted hashing of passwords and the parental PIN; a private photo store served only through short‑lived signed links; and least‑privilege access to production systems. No method of transmission or storage is 100% secure, but we work to protect your family's information and will notify affected users and regulators of a breach as required by law.
11. Data location and transfers
Data is processed and stored on our providers' infrastructure in the United States. If you access the Service from outside that region, your information may be transferred to and processed there.
12. Changes to this policy
We may update this policy. Material changes affecting children's information will be notified to account holders and, where COPPA requires, will not apply to previously collected children's information without renewed parental consent. The "Last updated" date reflects the latest version.
13. Contact
Questions or requests: privacy@familyharmony.co · 8461 Lake Road, Ponca City, OK 74604 · (580) 297-7036.