Back
In plain language

Privacy and terms

Who is responsible for your data

Syncry Ltd is the data controller for the personal data you put into the app. We are a company registered in England and Wales, number 17398229, with our registered office at 82A James Carter Road, Mildenhall, IP28 7DE. You can reach us at any time at support@syncry.app, and that is the address to use for any privacy question or to exercise your rights. Syncry serves families in the United Kingdom and the European Union, so this policy is written to meet UK GDPR (with the Data Protection Act 2018) and EU GDPR.

ICO registration number: ZC230237 check it on the public register

What we store

Your account email, the names and details you typed into your family, the entries you wrote in the Book, the moods you logged, the tasks and bags you filled in, and the photos you uploaded. After birth, also any baby-care logs you record. Also the questions you ask Iris and her answers. If you tell us how you found Syncry, we keep that answer, and if you arrived through a link of ours that names its source (for example our Instagram bio), we keep that source with your family. We use both only to count which places bring families. Expenses and savings goals entered on the old Horizon tab are kept only so they stay in your data download; the app no longer collects them. If you dictate instead of typing, your browser’s speech service (Google on Android and in Chrome, Apple on iPhone) turns the voice into text and may process the audio on its own servers; Syncry never receives or stores the audio. Everything is stored on Supabase in private buckets and tables.

Health and other sensitive data

Much of what Syncry holds is special-category data under GDPR: pregnancy details, your baby’s health and care logs, and the moods you record can reveal information about physical and mental health. Storing it for you is the service you asked for. Sending it to an AI is a separate thing, and we ask separately: Iris reads nothing you write until you say yes on a screen that tells you what is sent and to whom. Each parent answers for themselves, and until one of you does, what that person writes stays out of Iris. You can withdraw at any time in Settings, Iris, and she stops; withdrawing does not affect processing that already happened.

Why we are allowed to use it

For ordinary personal data (your email, the names and settings you choose), our lawful basis is performing the contract you enter when you use Syncry, plus our legitimate interest in keeping the service secure and working. For special-category data (health, pregnancy, baby, mood) the basis is your explicit consent, given by answering the question we put to you before Iris reads anything, and withdrawable in Settings, Iris. We never use your data for advertising, profiling, or automated decisions that affect you.

Who can see it

Only you, and a partner if you invite one, and never another family. The database enforces it with row-level security: every read and every write is limited to your own family. Photos use signed links that expire in one hour. The two founders have a private admin screen for running Syncry. It shows each family’s name, its members and their email addresses, how much the family uses Syncry and what Iris costs, and anything a family sends us on purpose (support messages and reported Iris answers). It does not show your diary, moods, care logs, photos or conversations, and every action taken in it is logged. Like any provider, the founders can technically reach the database to fix a problem; they do so only to help a family or to keep Syncry safe.

The family circle

If you switch on the family circle, the people you send the link to can read what you chose to publish there, and nothing else. Syncry never writes to them: you send the link, the card or the text yourselves, from your own phone, to whoever you choose. Everything on the page was drafted from your Book, your Diary and the milestones, about the baby only, and read by one of you before it went. A person reading the page can choose a name before they send a heart or write a comment, and nothing more: no account, no email, no password. We keep that name, their hearts and their comments as part of your family’s record, and a cookie on their own device that remembers the name on the page and is used for nothing else. They are kept for as long as your family keeps Syncry and are deleted with it; a comment is removed the moment the person who wrote it, or one of you, removes it. Anyone with the link can choose any name on it, so this is trust within your family, not a login.

About Iris

Iris runs on Syncry’s own Anthropic API key, and only after you have said yes. Once you have, each call sends the context she needs (your names, week or baby age, recent entries and moods, care logs, and a photo or document you attach to a question yourself) to Anthropic. Anthropic uses it only to write the reply, does not train its models on it, and deletes it within 30 days; it keeps a message longer (up to two years) only if its safety systems flag it as breaking Anthropic’s usage policy. The key is ours and stays on our server: it is never part of your family’s data, and there is nothing here for you to set up. You can withdraw or pause her at any time in Settings.

Reporting something Iris said

Under anything Iris writes there is a small flag. If you use it, we receive the answer itself, the reason you picked, anything you add, and which part of the app it came from. We need the answer or we cannot see what went wrong. A person reads it, it is stored with your family’s data, and it goes when you delete your family. It is never sent anywhere else.

Push notifications

We store one row per browser or device you turn notifications on for, with the subscription address that browser issued. Notifications only ever go to people inside your family: to you, for the gentle reminders you switch on, and to your partner, for what you share (a mood, a finished task, a packed bag, a new Book page). By default a notification only says that there is something new; in Settings, Notifications, you can choose to show the details on your lock screen. A shared mood never shows its note there either way. We never send marketing.

Tracking

No third-party analytics, no advertising trackers, no fingerprinting, and nothing sold or shared with data brokers. We do not measure you across the web, and we never will. Vercel (our host) logs request metadata so we can see when a page errors; that log is short-lived and not joined to your account data.

Who processes the data

Syncry runs on a small set of trusted providers. Supabase stores the database, files, and authentication. Vercel hosts and serves the app. Anthropic powers Iris. Resend delivers the emails we send (verification, weekly digest). Your browser’s speech service (Google or Apple) turns dictation into text. The controller receives internal notifications when a new family signs up; these carry only non-personal signal (chosen role, app language, country), never your name, email, or any health information, and are delivered to a personal Google (Gmail) inbox via Resend. A message you send us through Contact is different: it reaches that same inbox, forwarded by ImprovMX, with your email address and what you wrote, so that we can answer you. Your data is isolated per family by row-level security and is encrypted in transit and at rest. It is not zero-knowledge: the providers above can technically access what they host.

Stripe (payments): when you subscribe to Syncry, Stripe processes your payment and card details on its own secure systems. We never see or store your full card number.

Google Firebase Cloud Messaging (notifications in the Android app): if you turn notifications on in the Google Play app, Google delivers them to your phone. It receives your phone’s notification address and the notification itself, which says only what kind of update it is unless you turn on “Show details”.

Sentry (error monitoring): when something in Syncry breaks, Sentry receives a technical report of the error: which page or step failed, the trace through our code, and the type of browser and device. Before a report leaves, your name, email, IP address, cookies, anything you write, and the private parts of web addresses are removed. Reports from our servers are sent whenever an error happens there; reports from your browser are sent only if you accept error monitoring in the cookie banner. Sentry stores these reports in its EU data region, in Germany.

International transfers

Some of our providers process data outside the UK and the European Economic Area, in particular Anthropic (Iris) and parts of Vercel and Resend in the United States. Where data leaves the UK or EEA, the transfer is protected by the European Commission Standard Contractual Clauses and the UK International Data Transfer Addendum (IDTA), the safeguards GDPR requires. Syncry’s database and files are stored by Supabase in London, and the app itself runs on Vercel in London.

How long we keep it

We keep your family’s journey for as long as your family is active, because the whole point of Syncry is something you can look back on, and you can delete any entry at any time. When you delete your family it can be restored for 30 days; then a daily clean-up permanently removes the family, every record attached to it, its photos and files, the parents’ logins and the support messages you sent us. A few records exist only to keep the app working and are deleted automatically after a fixed time: the short note of each question asked to Iris and the list of notifications sent to you after 90 days, a used or expired partner invite after 30 days, a waitlist email after 12 months, and a support message after 24 months. Short-lived server logs (for spotting errors) are kept briefly and are not joined to your account.

Your rights

Under UK and EU GDPR you have the right to access your data, to export it in a portable format, to correct it, to have it erased, to restrict or object to processing, and to withdraw consent at any time. Syncry is built so you can exercise most of these yourself, right now: Settings, Your data lets you export everything as JSON (and save your Book and Diary as PDFs) and delete your family. To correct details, edit them in the app. For anything you cannot do yourself, email support@syncry.app and we will respond within one month, free of charge.

Your baby's data

Syncry is used by adults. The information about your baby (health, care logs, photos, milestones) is entered by you, the parents, who hold parental responsibility for it and decide what to record and share with each other. We do not knowingly let anyone under 18 create their own Syncry account.

Export and delete

You own your data and can act on it yourself. In Settings, Your data, you can export everything you can see in Syncry as a single JSON file: every entry, care log, milestone, birth plan answer and Iris conversation, with links to download your photos and files that work for 24 hours. Your partner’s private items stay theirs. Your Book and Diary can also be saved as PDFs. We recommend you export first. Deleting your family does not wipe it instantly: it is scheduled for permanent removal in 30 days and can be restored until then. After 30 days a daily clean-up removes the family, every record attached to it, its photos and files, the parents’ logins and the support messages you sent us, for good. You can still email support@syncry.app if you prefer us to do it for you.

How to complain

If you think we have handled your data wrongly, please tell us first at support@syncry.app so we can put it right. You also have the right to complain to a data protection authority. In the United Kingdom that is the Information Commissioner's Office (ICO), at ico.org.uk. In the European Union you can contact the authority in your country of residence.

Terms in two lines

Syncry is built by two parents, for every kind of family, and is operated by Syncry Ltd, a company registered in England and Wales under number 17398229. It is provided as-is, with no medical warranty: the NHS / NICE links inside are for reference, not advice. If you are worried about a symptom, call your midwife or doctor.

Contact

For anything about your data or this policy, including any request to exercise your rights, email support@syncry.app. Signed-in users can also reach us from Settings, Contact us.

Last updated: 2026-10-08