StarryTime

Privacy Policy

Effective 15 July 2026 · Updated 2 September 2026 · Applies to StarryTime version 1.x for Android

The short version: in this version of StarryTime, your story library — every story's words and audio — lives on your device, not in a cloud library (our servers hold only short-lived delivery records for each story, including its text, for up to 30 days — see “How long we keep things”). We process the details you type in (like a first name and interests) only to write and narrate your stories. There are no ads, no advertising identifiers, and no behavioural tracking or ad profiling. The only things we collect beyond what a story needs are crash diagnostics and, only if you switch it on, anonymous usage statistics (see “Crash reports and optional usage statistics”). You can delete your account and the data we hold at any time, from inside the app or from this website.

This policy is deliberately version-scoped: it describes what the current version of the app actually does. If a future version changes how data is handled (for example, an optional cloud backup), we will update this policy and the in-app summary before that version ships.

Who we are

StarryTime is made by Geniosity. For anything in this policy, contact us at support@starrytime.app — see the contact page.

What the app is

StarryTime generates original short children's stories on demand and narrates them with expressive, AI-generated audio. Story text and narration are produced by artificial-intelligence models based on the choices and text you provide. A parent or guardian creates and manages the account; the app is then used by the whole family — including older children, under their grown-up's supervision — and is designed for listening by children roughly aged 3–12.

What we process, and why

1. Account information

2. Story inputs

When you create a story, you can provide:

These are sent to our servers and used to write and narrate your story. To do that, they are shared with our AI providers — Anthropic (story text) and ElevenLabs (narration audio) — solely to fulfil your request. The app asks you to use first names only and to avoid putting personal details in the story idea; please follow that guidance.

3. Service records

4. Crash reports and optional usage statistics

We use Firebase Crashlytics to learn about crashes so we can fix them. It is configured child-safe: advertising-ID collection is disabled and no personalised signals are gathered.

If you switch on Share anonymous usage statistics, the app also sends Google Analytics for Firebase anonymous usage events such as which screens are used, whether a story was made, played and finished, and whether the subscription screen was seen or a subscription was started, together with a random per-install identifier, app version, device model, OS version, language and country. The switch is off unless you turn it on, and you will find it during sign-up, in onboarding and in the Grown-ups tab. These events never include names, story ideas, interests or story text, and they are never used for advertising. We do not collect the Android Advertising ID, we have switched off Google signals and ads personalisation, and we do not link Analytics to any advertising product. Google keeps event-level data for 2 months. You can switch it off at any time from the same toggle, which also erases the analytics identifier on your device. Google explains how it handles this data at https://policies.google.com/technologies/partner-sites.

What stays on your device

Generated narration audio is placed in our cloud storage just long enough for your device to download it (see retention below). After that, playback is entirely local. Android's automatic backup may back up the app's database and settings to your own Google account when you have device backup enabled; the audio folder is excluded from backup.

How long we keep things

DataKept for
Generated audio in cloud storageDeleted automatically about 7 days after generation (your device downloads it within moments in normal use)
Story job recordsDeleted automatically about 30 days after creation
Account record & usage countersFor the life of your account
Subscription/purchase verification recordsRetained as required for billing integrity and fraud prevention
Story reportsUntil reviewed and resolved — then the story text, your note and the link to your account are erased, and the record is deleted 30 days later. Any report is deleted after 180 days, reviewed or not
Crash reportsPer Firebase Crashlytics' standard retention (90 days)
Usage statistics (only if switched on)Google Analytics event data: 2 months. Aggregated, non-identifying reports are kept longer
Abuse-prevention rate counters (including a scrambled code derived from your sign-in email — see below)Deleted automatically about 30 days after their last activity; the email-derived one survives account deletion until that same expiry
Deleted-account marker (internal account ID + deletion date only)Kept indefinitely after account deletion — see below

When you delete a story in the app, it is removed from your device. Usage records connected to past generations are retained server-side for billing integrity and fraud prevention, as disclosed above.

About the deleted-account marker. When your account is deleted we write one small record that we keep afterwards. It contains only your account's internal identifier — the random ID Firebase assigned at sign-up — and the date the deletion happened. No email address, no name, no story content, nothing else is attached to it, and it is not readable by anyone using the app. Its single job is to stop the deleted account coming back: a subscription notification from Google Play that arrives moments after deletion, or a sign-in token still cached on an old device, would otherwise re-create your account record. Our servers check this marker before writing anything for a user, so a deleted account stays deleted. We keep it for as long as that protection is useful.

About the abuse-prevention counters. Because each free story costs us real money to generate, our servers keep small rolling counters of how often stories are requested. They never contain story content. Most are keyed to your account or to a scrambled form of your network address. One is keyed to a scrambled code derived from your sign-in email: the address is first reduced to the inbox it actually delivers to (for example, name+tag@gmail.com counts as name@gmail.com) and then passed through a keyed one-way scramble, so the stored code cannot be turned back into your email address. Its single job is to stop the free tier being farmed by creating many accounts from one inbox, which is why it is not erased at the moment you delete your account — it simply expires on its own about 30 days after its last activity, like the rest of the counters.

Children

StarryTime is used by families with children, and we treat that with care:

We aim to honour the spirit and letter of children's-privacy laws, including COPPA (United States) and the GDPR's rules for children (EU/UK). Whatever your local law, the practical promises above are the same for everyone.

Who we share data with

We share data only to run the service, with providers acting on our instructions:

ProviderWhatWhy
Google FirebaseAccount identity, service records, crash reports and, only if you switch it on, anonymous usage eventsAuthentication, our database and storage, notifications, crash reporting, usage statistics
AnthropicStory inputs (name, age range, interests, story idea)Writing your story's text
ElevenLabsThe finished story textProducing the narration audio
Google PlayPurchase tokens; a rating or review you choose to leave in Play’s own rating cardVerifying subscriptions; Google Play handles all payment details, ratings and reviews

We do not sell personal information, and we do not share it for advertising.

Security

All traffic between the app and our servers is encrypted in transit (TLS). Server access is locked down so that only our backend code — not other users, not the public — can read your records, and requests must come from a verified, unmodified copy of the app (Google Play Integrity attestation). On your device, the library is protected by Android's built-in device encryption.

Your rights & choices

Depending on where you live, you may have additional statutory rights (for example under the GDPR, UK GDPR, or your state or national privacy law), such as the right to access, rectify, delete, or port personal data, and the right to complain to a supervisory authority. We honour requests to the extent your local law provides; nothing in this policy limits those rights.

Changes to this policy

When we change this policy, we'll update the effective date above; for meaningful changes we'll also flag it in the app. Because the policy is version-scoped, new capabilities ship together with the policy text that covers them.

Contact

Questions, requests, or concerns: support@starrytime.app.