Privacy
Plain-English privacy.
This page is the human-readable version of what we actually do with your data. It is intentionally short. Anything not said here is not being done in secret somewhere else.
This document needs lawyer review before public launch. The commitments below are real; the language may tighten.
What we store.
- Your account: email, display name, locale.
- The children you add: first name (or nickname), date of birth, pronouns, profile colour.
- The structured profile you build: diagnoses, sensory profile, communication style, triggers, strengths, current supports.
- Your conversations with Parenta, including any voice notes (as audio + transcript) and photos you upload.
- The issues, strategies, and wins you've saved.
- Operational telemetry: rough usage counts, error reports, AI cost ledger entries (for our own billing).
Who else processes it.
We use a small number of third parties. Each one is named, each one is scoped to a specific job:
- Anthropic — runs the Claude models that generate your replies. We do not allow Anthropic to train on your prompts or replies.
- OpenAI — Whisper transcription of your voice notes (audio in, text out). Not used to train.
- Clerk — handles your sign-in, password, and session.
- Cloudflare R2 — stores the binary files: voice notes and photos.
- Replit / Neon — runs our database and our servers.
- Sentry — collects crash reports so we can fix bugs (no PII in payloads).
What we will not do.
- We will not sell your data.
- We will not use your conversations to train AI models, ours or anyone else's.
- We will not show your data to a human at Parenta unless you've asked us to (e.g. a support ticket) or unless we are legally required.
- We will not run third-party advertising or marketing pixels on this site or in the app.
Children.
Parenta is designed for the caregiving adult, not the child. We do not knowingly accept accounts from anyone under 18. We do not market to children. The data you give us about your child is used to make the replies you get back better — it is not used to build any external profile of your child.
Under COPPA (US) and the UK / EU equivalents, we treat data about children that you choose to share as data you control. You can export or delete it at any time, and we will not condition the use of the product on you sharing more than you want to.
GDPR posture.
We treat all users as if GDPR applies, regardless of where they live. That means: a lawful basis for everything, the right of access, the right of rectification, the right of erasure, the right of portability, and the right to complain to your supervisory authority.
Export and deletion — guaranteed.
From inside the app, in your account settings:
- Export — you can download a structured JSON of every conversation, profile, issue, strategy, voice note, and photo we hold for you. Within 30 days.
- Delete — you can permanently delete your account. Within 30 days, every record is purged from primary storage; encrypted backups roll off within 90 days.
You don't need to email us to do either. If something blocks you, write to privacy@parenta.app and a human will help. privacy@parenta.app
Security in one paragraph.
Data in transit is encrypted with TLS. Data at rest is encrypted at the storage layer. Voice notes and photos are stored in private buckets and only accessible via short-lived signed URLs. Production access is limited to a small number of named engineers, audit-logged.
Changes to this policy.
If we change anything material on this page, we'll email everyone with an active account at least 30 days before the change takes effect.
Last updated: 11 May 2026.