Little Snuggle Privacy Policy

Privacy Policy

Last updated: May 15, 2026

CloudBlue Digital Ltd ("we", "us", or "our") operates the Little Snuggle mobile application (the "App"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the App.

1. Information We Collect

We collect the following categories of information:

1.1 Account Information

When you create an account, we collect your email address and authentication credentials. If you sign in with Google, we receive your name, email address, and profile picture from Google.

1.2 Baby & Activity Data

You voluntarily provide information about your baby including:

  • Baby's name, date of birth, and gender
  • Activity records (sleep, feeding, diaper changes, tummy time, bath, medicine)
  • Growth measurements (weight, height, head circumference)
  • Developmental milestones

This data is stored locally on your device and synced to your private cloud account (Google Firebase) so you can access it across devices. Only you (and anyone you share your account with via the App's co-parent sharing feature) can see this data.

1.3 Analytics Data (with your consent)

If you consent to analytics collection, we collect pseudonymous usage data through Google Analytics for Firebase, including:

  • Which screens you visit and features you use
  • Device type, operating system version, and app version
  • General geographic region (country/city level, not precise location)

This data is aggregated and cannot be used to directly identify you or your baby. Analytics collection is disabled by default and only enabled with your explicit consent. You can withdraw consent at any time in Settings.

1.4 Crash Reports & Diagnostics (with your consent)

If you consent to crash report collection, we collect crash reports and basic diagnostics through Google Firebase Crashlytics. This includes:

  • Crash stack traces
  • Device model, operating system version, and app version at the time of a crash
  • A non-personally-identifying installation identifier generated by Firebase

Crash reports do not contain your account email, baby data, or precise location. Crashlytics collection is disabled by default and only enabled with your explicit consent. You can change this at any time in Settings.

1.5 Advertising

The App displays advertisements served by Google AdMob, including banner ads and optional rewarded video ads. To serve and measure these ads, AdMob collects:

  • Your device's Android Advertising ID (a resettable identifier you control in your device settings)
  • IP address and approximate location derived from it
  • Device type, operating system, and app version
  • Limited interaction signals (whether an ad was viewed or clicked)

AdMob is operated by Google. Google may use this data to serve and measure ads, prevent fraud, and (where permitted) personalise ads, in accordance with Google's privacy policy at https://policies.google.com/privacy. You can manage Google ad personalisation at https://adssettings.google.com.

If you are in the EEA, UK, or Switzerland, you will be shown a consent form on first launch (Google's User Messaging Platform) before any personalised advertising data is processed. You can change your ad-consent choices at any time via Settings → Ad Privacy Options in the App.

You can reset or delete your Advertising ID at any time in your Android device settings (Settings → Privacy → Ads). AdMob does not receive your account email or your baby's data.

1.6 Information We Do NOT Collect

  • We do not collect precise location data
  • We do not collect photos unless you explicitly attach them, and attached photos remain on your device (we do not upload the image data to our servers)
  • We do not collect contacts, call logs, or messages
  • We do not collect financial or payment information
  • We do not collect health data from device sensors
  • We do not sell your personal data

2. How We Use Your Information

We use the information we collect to:

  • Provide and maintain the App's functionality
  • Sync your data across your devices
  • Authenticate your account and secure your data
  • Diagnose technical issues and fix bugs (Firebase Crashlytics, only with your consent)
  • Improve the App based on aggregate usage patterns (Firebase Analytics, only with your consent)
  • Display advertisements via Google AdMob to support free access to the App

We do NOT use your account information or your baby's data for advertising, profiling, or automated decision-making. Advertising data flows are limited to the device-level signals described in section 1.5 and are processed by Google AdMob.

3. Data Storage & Security

Your data is stored in two places:

Local Device: Activity and baby data is stored in a local database on your device using Android Room. This data remains on your device even without an internet connection.

Cloud (Firebase): Your data is synced to Google Firebase servers to enable cross-device access. Firebase data is encrypted in transit (TLS) and at rest. Data is stored in the European Union (eur3 region). Access is restricted to your authenticated account only.

Authentication is handled by Firebase Authentication, which uses industry-standard security practices including secure token management and encrypted credential storage.

4. Data Sharing & Third Parties

We do NOT sell, trade, or rent your personal information to third parties.

We use the following Google services to operate the App:

  • Firebase Authentication, Cloud Firestore, Crashlytics, and Analytics — for account management, cross-device data sync, error reporting, and (with your consent) usage analytics. These services act as data processors on our behalf under Google's data processing terms.
  • Google AdMob — for serving banner and rewarded advertisements. AdMob receives the device-level data described in section 1.5 (advertising ID, IP-derived approximate location, device and ad-interaction signals) to serve and measure ads. AdMob does not receive your account email or your baby's data.

Google's privacy policy applies to all of these services: https://policies.google.com/privacy

We do not share your baby's personal data with any other third parties.

5. Your Rights (GDPR)

If you are in the European Economic Area (EEA), the UK, or Switzerland, you have the following rights:

  • Right of Access — request a copy of the data we hold about you
  • Right to Rectification — correct inaccurate data through the App
  • Right to Erasure — delete your account and all associated data (see section 7)
  • Right to Restrict Processing — request that we limit how we process your data; in practice, you can also use Settings to disable analytics, crash reporting, and personalised advertising
  • Right to Data Portability — export your data as CSV from Settings
  • Right to Object — opt out of analytics, crash reporting, and personalised advertising at any time via Settings
  • Right to Withdraw Consent — revoke analytics, crash reporting, and ad consent at any time via Settings (withdrawal does not affect the lawfulness of processing prior to withdrawal)

The lawful bases we rely on are: contract (account, sync, baby data — necessary to provide the App), consent (analytics, crash reporting, personalised advertising), and legitimate interests (security, fraud prevention, basic non-personalised advertising to support the free App).

To exercise any of these rights, contact us at the email below. We will respond within 30 days.

6. Your Rights (California — CCPA / CPRA)

If you are a California resident, you have the right to:

  • Know what personal information we collect, use, and disclose
  • Request deletion of your personal information
  • Correct inaccurate personal information
  • Opt out of the "sale" or "sharing" of personal information for cross-context behavioural advertising
  • Limit the use of sensitive personal information
  • Not be discriminated against for exercising these rights

We do not sell your personal information as the term is defined under the CCPA. You can opt out of personalised advertising data sharing at any time via Settings → Ad Privacy Options in the App.

To exercise these rights, contact us at the email below.

7. Data Retention & Account Deletion

We retain your data for as long as your account is active. If you delete your account, all associated data is permanently deleted from our servers within 30 days.

Local data on your device is not automatically deleted — you can clear it by uninstalling the App or clearing app data.

Aggregate analytics and crash report data is retained by Google for up to 14 months and then automatically deleted. Advertising data is retained by Google AdMob in accordance with Google's policies; see https://policies.google.com/technologies/ads.

You can delete your Little Snuggle account and all associated data at any time. There are two ways to do this:

7.1 In-App Deletion (recommended)

  1. Open Little Snuggle and sign in.
  2. Go to Settings.
  3. Scroll to the bottom and tap Delete account.
  4. Confirm the action. If prompted, re-enter your password (or sign in with Google again) to verify it's you.

Deletion is immediate and permanent.

7.2 Email Request

If you cannot access the App (for example, you have uninstalled it or lost access to your account), you can request deletion by emailing [email protected] with the subject line "Delete my Little Snuggle account" from the email address associated with your account. We will verify the request and process the deletion within 30 days.

7.3 What Gets Deleted

  • Your Firebase Authentication record (email, password hash, Google ID token link)
  • All baby profiles you created (name, date of birth, gender)
  • All activity records (sleep, feeding, diaper, tummy time, bath, medicine)
  • All growth measurements (weight, height, head circumference)
  • All developmental milestones
  • All sharing invitations and linked-account records
  • Any ad-related rewards or preferences tied to your account

7.4 What May Be Retained

For legal, security, and fraud-prevention reasons, we may retain anonymised, aggregated analytics data (which cannot be linked back to you) and minimal logs of the deletion request itself for up to 90 days. No personal or baby-specific information is retained.

8. Children's Privacy

The App is designed for parents and caregivers (aged 18 and over) to track their baby's activities. The App is not directed at children, and we do not knowingly collect personal information from anyone under 13. The baby data entered into the App is provided by the parent/caregiver, not by the child. Advertising served in the App is not treated as child-directed under COPPA, consistent with the App's target audience of adults.

If you believe we have inadvertently collected information from a child under 13, please contact us and we will delete it promptly. We comply with the Children's Online Privacy Protection Act (COPPA) and equivalent regulations.

9. International Data Transfers

Your data may be transferred to and processed in countries outside your country of residence, specifically to Google's Firebase servers. We ensure appropriate safeguards are in place, including Standard Contractual Clauses approved by the European Commission and the UK International Data Transfer Addendum, to protect your data during transfer.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy within the App and updating the "Last updated" date. Your continued use of the App after changes constitutes acceptance of the updated policy.

11. Contact Us

If you have questions about this Privacy Policy or wish to exercise your data rights, contact us at:

CloudBlue Digital Ltd Email: [email protected] Privacy enquiries: [email protected]

For GDPR-related inquiries, you also have the right to lodge a complaint with your local data protection authority (in the UK, the Information Commissioner's Office at https://ico.org.uk).

We use cookies to analyse site traffic and improve your experience. See our Privacy Policy for details.