Privacy
What Baby Atlas stores, where it stores it, and who can see it.
- Version
- 1.0.0
- In effect from
Where your data lives
Baby Atlas is self-hosted. Everything you enter is stored on the server this installation runs on, which is operated by whoever set it up — not by a third-party company. There is no shared cloud service behind it and no central database of Baby Atlas users anywhere.
That means the operator of this installation is responsible for its backups, its security and its retention. If you did not set it up yourself, ask the person who did what their arrangements are.
What is stored
Baby Atlas stores what you give it:
- Your email address, and a display name if you provide one.
- Your password, stored only as an Argon2id hash. It cannot be read back.
- Your pregnancy details: the dates you entered, the method used to work out a due date, and your preferences.
- Anything you record: symptoms, appointments, journal entries, measurements, checklists, documents you upload.
- Your settings: units, time zone, locale, and which reminders you want.
- Sessions: when you signed in and from what kind of device, so you can end a session you do not recognise.
Sensitive fields such as multi-factor secrets and any credentials for connected services are encrypted at rest with a key held only by this installation.
What is never written to a log
Application logs deliberately exclude:
- Passwords, tokens and API keys.
- Journal text.
- Symptom detail and measurement values.
- The contents of documents you upload.
Logs record that a request happened, who made it and whether it succeeded. They do not record what was in it.
Who can see your information
By default, only you. Nothing you record is visible to another account unless you invite that person and choose what they can see.
A partner you invite sees only the categories you tick when you invite them. If you do not share health entries, requests for them are refused by the server — the information is not merely hidden in their app.
Administrators of this installation have the access their server role gives them, which for technical reasons includes the database. Administrative actions are recorded in an append-only audit log. Baby Atlas does not give administrators a screen for reading your journal.
Third parties
Baby Atlas has no analytics, no advertising and no tracking scripts. Nothing is sold or shared for marketing, because there is no company on the other side of it to do so.
Optional integrations — a calendar, a photo library, an AI assistant — are off unless the operator turns them on and you connect them. Each one states what it sends before you connect it, and can be disconnected at any time.
Your control over it
- Export everything you have entered, at any time, in a machine-readable format.
- Correct or delete individual entries yourself.
- Delete your account. Deletion runs after a short cooling-off period, so an accidental request can be reversed.
- End any session, on any device, from your security settings.