Privacy Policy
Last updated: August 12, 2026
The short version
Your child's name, birthday, gestational age, notes, and photos stay on your phone. We never see them, never upload them, and never sell them. There is no account and no email wall. We collect only aggregate, anonymous analytics: which features get used and which searches find nothing, never anything about a specific child or a specific person. Subscriptions are processed by Apple or Google plus our subscription manager, and we receive a random ID and a subscription status, never your card number. Delete the app and everything on the device is gone. There is nothing about your child on our servers to delete, but you can email us and we will confirm that in writing.
Who we are
Golden Beginnings is published by S&W Milestones Co, LLC, a California limited liability company ("we", "us"). Contact: privacy@swmilestones.info. Mailing address: La Jolla, California.
Golden Beginnings is an educational wellness product. It is not medical advice and does not replace evaluation by a licensed provider. It is not connected to any clinical practice, is not a HIPAA covered entity or business associate, and never accepts protected health information. If you are worried about breathing, choking, or any emergency, call 911 or your pediatrician. Do not use this app in an emergency.
No accounts, by design
Golden Beginnings has no user accounts. We do not ask for your name, email, or password to use the app. Everything you enter about your family lives only on your device.
What stays on your device and never leaves it
The following data is stored locally on your phone or tablet and is never transmitted to us or anyone else:
- Your child's first name
- Your child's birthday
- Gestational age at birth (weeks, if you tell us your child was born early)
- Any concerns you select during onboarding
- Saved activities and your notes
- "We tried this" photos and notes
- Theme, language, and reminder preferences
We cannot see, access, recover, or delete this data because it never reaches us. If you delete the app, this data is deleted with it, subject to your device's own backup settings (for example, an iCloud or Google device backup that you control).
What we do collect
We collect a small amount of data that is aggregate and privacy-preserving:
- Feature usage counts. For example, how many times the Explore tab was opened across all users. These are counts, not profiles. They are not tied to a device ID, advertising ID, or any identifier for you or your child.
- Unmatched search phrases. If a search finds nothing, we log the phrase itself (for example, "hates the car seat") with no identifiers attached, so our content team can fill gaps. Do not type personal information into search; if a logged phrase ever contained personal details, we delete it when we find it.
- Purchase state. When you subscribe, Apple or Google processes the payment. Our subscription infrastructure provider (RevenueCat) gives us a randomly generated app user ID, receipt data, and subscription status (active, trial, expired). We never receive your name, card number, or billing address from a purchase.
- Crash reports. If the app crashes, a technical trace is sent to our crash reporting provider so we can fix bugs. We configure crash reporting to exclude child profile fields, notes, photos, and search text.
- Content delivery logs. Activity images and content updates are served from a content delivery network. Like any internet request, your IP address is visible to that network in transit. We do not use it to identify you.
We do not collect precise location, contacts, advertising identifiers, or any biometric data. We show no third-party ads and use no advertising SDKs.
What we never do
- We never sell your personal information.
- We never share your personal information for cross-context behavioral advertising.
- We never upload your child's name, birthday, notes, or photos.
- We never build a profile of you or your child.
Service providers
We use a small number of vendors to run the app. Each receives only what it needs:
| Vendor | What it does | What it can see |
|---|---|---|
| Apple App Store | Payment and app distribution on iOS | Your Apple account and payment details, under Apple's own privacy policy |
| Google Play | Payment and app distribution on Android | Your Google account and payment details, under Google's own privacy policy |
| RevenueCat | Subscription state | Random app user ID, receipt data, subscription status |
| Crash reporting provider | Crash diagnostics | Technical crash traces, scrubbed of personal fields |
| Analytics (aggregate only) | Feature usage counts, unmatched searches | Aggregate events with no identifiers |
| Content delivery network | Serves images and content updates | IP address in transit, standard delivery logs |
| Email provider | Support replies and purchase acknowledgments | Your email address, only if you email us or a store shares it for a receipt acknowledgment |
We sign data processing agreements with processors where required by law.
How long we keep things
- Aggregate analytics: up to 14 months, then deleted or further aggregated.
- Crash logs: up to 90 days.
- Purchase state: for as long as needed to honor your purchase and meet tax and accounting rules.
- Support emails: as long as needed to help you, then routine deletion.
Children's privacy (COPPA)
Golden Beginnings is built for parents and other adult caregivers. The account holder and user is you, the parent, and you must be 18 or older. The app is not directed to children, and children are not intended to use it. Information about your child that you enter (name, birthday, notes, photos) is stored only on your device and is never collected by us. Because we do not collect personal information from children, and the app is not directed to children, the Children's Online Privacy Protection Act (COPPA) verifiable parental consent mechanics do not apply to our collection practices. If you believe a child has somehow submitted personal information to us, email us and we will delete it.
Your rights under California law (CCPA and CPRA)
If you are a California resident, you have the right to:
- Know what personal information we collect, use, and disclose. This policy is that disclosure. The categories we handle are listed above, and none of them include your child's profile data, which never leaves your device.
- Delete personal information we hold. In practice there is very little: we have no account for you and no child data. If you contact support, we can delete your support correspondence.
- Correct inaccurate personal information we hold.
- Opt out of sale or sharing. We do not sell personal information and do not share it for cross-context behavioral advertising, so there is nothing to opt out of. We treat this as a standing commitment, not a setting you need to find.
- Limit use of sensitive personal information. We do not collect sensitive personal information as defined by the CPRA.
- Non-discrimination. We will never treat you differently for exercising a privacy right.
To exercise any right, email privacy@swmilestones.info. We will verify your request in a way proportionate to the data involved and respond within the legally required time. You may use an authorized agent.
Your rights under GDPR and UK GDPR
If you are in the European Economic Area or the United Kingdom, the same design applies: your child's data stays on your device and is not processed by us. For the limited data we do process:
- Legal bases. Purchase state: performance of a contract (Article 6(1)(b)). Aggregate analytics and crash reports: legitimate interests (Article 6(1)(f)), namely improving and maintaining the app in a way designed not to identify anyone. Support email: legitimate interests or contract, depending on your question.
- Your rights. Access, rectification, erasure, restriction, portability, and objection. Because we hold almost nothing that identifies you, most requests will end with us confirming in writing that we hold no personal data about you or your child. We will still take every request seriously and respond within one month.
- International transfers. Our vendors are primarily based in the United States. Where personal data is transferred out of the EEA or UK, we rely on standard contractual clauses or an adequacy decision.
- Complaints. You may complain to your local supervisory authority. We would appreciate the chance to help first: privacy@swmilestones.info.
Security
Child data is protected by your device's own security (passcode, biometrics, encryption at rest as provided by iOS and Android). The little data we do handle in our systems is encrypted in transit, access-limited, and minimized by design. No method of storage or transmission is perfectly secure, but our best protection is structural: we simply do not have your family's data.
California Age-Appropriate Design Code
Although the app is directed to adults, we follow high privacy by default: no dark patterns, no profiling, no nudges to share more data, and the most protective settings out of the box.
Changes to this policy
If we change this policy, we will update the date at the top and, for meaningful changes, tell you in the app before the change takes effect. We will never retroactively weaken protections for data collected under an earlier policy.
Contact
S&W Milestones Co, LLC La Jolla, California Email: Support: support@swmilestones.info