Tiny Tally (the “App”) is a Trail app provided by Trail (“we”, “us”, or “our”). This policy explains what information Tiny Tally handles, why it is handled, when it leaves your device, and the choices available to you.
1. Care data stays on your device unless you choose connected features
You can use Tiny Tally without an account. Baby profiles, activity history, custom trackers, and app preferences are stored on your device using Apple’s on-device storage frameworks. The Home Screen widget uses the App’s private App Group storage to show and add care activities for the baby you select.
You can export a baby’s activity history as a CSV file. After you share or save that export, the receiving app or service handles the file under its own privacy terms.
The paired Apple Watch receives the selected baby’s care summary and shortcuts from your iPhone. Care logged on the Watch returns to the paired iPhone. Watch widgets use the Watch app’s private shared storage.
2. Information handled when you use an account
Signing in is optional for local-only use. When you choose Sign in with Apple and connected sync, Tiny Tally may handle:
- Your account identifier, email address when Apple provides it, and the caregiver name you choose to share.
- Baby profile information, including name and birth date.
- Care activities and their details, including timestamps, durations, feed amounts and methods, nursing side, diaper activities, custom activity names, and edit or deletion status.
- Sync identifiers, revision numbers, and timestamps used to keep devices consistent and resolve changes.
Account and sync data is linked to the authenticated account so the App can return the right care history to that account. Tiny Tally does not use this data for advertising or profiling.
3. Caregiver sharing
When an Owner invites another caregiver, Tiny Tally creates a time-limited invitation and stores only a cryptographic hash of the secret invitation token on the sync service. The raw invitation link may be stored in the Owner’s iPhone Keychain while it remains active.
Opening an invitation link sends the URL path to our hosting provider so it can deliver the invitation page. The page does not display a baby’s name, caregiver identity, or care activities and cannot grant access by itself. The invited caregiver must sign in, review the invitation in Tiny Tally, and accept it before membership is created.
After acceptance, the Owner and one invited Caregiver can see and change the shared baby profile and activity history. Each person may see the other caregiver’s chosen name or email address so activity attribution and sharing management remain understandable.
Grow month photos and their notes are stored on your device. If the Owner enables month-photo sharing, Tiny Tally uses Apple’s iCloud and CloudKit to store and share those photos and notes with the invited caregiver. The care-sharing service stores the iCloud invitation and sharing status so the caregiver can accept the photo invitation. It does not store the photo files. Both people need to be signed in to iCloud. The Owner manages the photos; the caregiver can view them.
You can turn month-photo sharing off separately from shared care. Previously shared photos may remain accessible until Tiny Tally reconnects to the iCloud account that shared them and completes the revocation. A photo book exported as a PDF is handled by the app or service you choose to save or share it with.
4. Trial and purchase information
Tiny Tally uses Apple StoreKit for purchase and entitlement information. Apple processes App Store payment details; Tiny Tally does not receive your full payment-card information.
We use RevenueCat to report App Store purchases and refunds. The App sends purchase history and transaction information to RevenueCat with a randomly generated reporting identifier and basic app, device, and connection information. This helps us understand sales and investigate purchase-reporting problems. We do not send baby profiles, care activities, caregiver names, email addresses, or Tiny Tally account identifiers to RevenueCat. Reporting does not decide whether the App is unlocked; Tiny Tally continues to check purchases through Apple StoreKit.
To provide a time-limited trial and resist repeated trial activation, the App sends a random installation identifier, a one-time nonce, the requested trial action, and normal network connection information to our trusted-time service. The service stores protected hashes of the installation identifier, network address, and nonce, together with request and trial dates. These protected records are not linked to a Tiny Tally account and may remain after account deletion to enforce trial eligibility and prevent abuse.
5. Website analytics and hosting
Cloudflare delivers tinytally.xyz and join.tinytally.xyz and may process standard connection information, such as IP address and browser headers, to operate and secure those pages. The caregiver invitation site at join.tinytally.xyz does not use Google Analytics or marketing cookies.
On tinytally.xyz, Google Analytics loads only if you choose “Allow analytics.” It uses cookies to measure website visits, pages viewed, and App Store button clicks, together with browser, device, approximate location, and referral information. Google receives standard network information when your browser connects to its service. We use these reports to understand how people find Tiny Tally and which pages lead them to the App Store. We do not enable Google advertising features or send app account details, baby-care records, invitation links, or page query strings to Google Analytics.
You can decline analytics and continue using the website. Use “Analytics settings” in the footer to change your choice. Your choice is saved in this browser for up to 180 days. Withdrawing consent stops future collection and removes this site's Google Analytics cookies; it does not delete data already processed. Blocking browser storage may prevent your choice from being remembered between pages. Learn more about how Google uses data from sites that use its services.
Our App Store links include the shared campaign name “tinytally_website.” When you follow one, Apple can attribute an eligible download to this website and provide aggregate campaign reports in App Store Connect. The link contains no personal or unique visitor identifier, and we do not match Apple's download reports to individual website visitors. Apple handles activity on the App Store under Apple's privacy policy.
6. Service providers
Tiny Tally uses these services for app functionality, website delivery, and measurement:
- Apple for Sign in with Apple, StoreKit purchases, device storage frameworks, optional iCloud and CloudKit month-photo sharing, and App Store distribution.
- RevenueCat for App Store purchase reporting. See RevenueCat's privacy policy.
- Supabase for authentication, optional account sync, caregiver sharing, and the trusted-time service.
- Cloudflare for the public support, policy, and invitation websites.
- Google Analytics for website measurement after consent, as described above.
We require service providers to handle data only for the services they provide and with protections consistent with this policy. Their own terms and privacy policies also apply to their services.
7. Retention and deletion
Google Analytics is configured to retain user-level and event-level website data for two months, without extending user retention when someone returns. Aggregated reports may remain available for longer.
Local care data remains on your device until you delete a baby profile or activity, erase the App’s data, or uninstall the App. Deleting a baby profile permanently removes its local activity history from that device.
Synced account and care data remains on the sync service while the account or shared-care relationship needs it. Deleted items can remain as bounded deletion markers so other devices can remove the same items. Security logs and backups may be retained for limited operational periods.
You can stop sharing from the App. An Owner can remove the Caregiver; a Caregiver can leave the shared profile. To request deletion of your Tiny Tally account and account-linked server data, email support@trailapp.xyz. We may need to verify that the request comes from the account holder. Some records may be retained when required by law, for security, or to prevent trial abuse as described above.
8. Children’s information
Tiny Tally is intended for parents and other adult caregivers, not for children to use themselves. Baby information is entered and managed by a caregiver. We do not knowingly ask a child to create an account or provide information directly.
9. Security
We use encrypted network connections, Apple platform storage protections, authentication, database row-level access controls, short-lived invitation links, and restricted server credentials to protect information. No storage or transmission method can guarantee absolute security.
10. International processing
Our service providers may process information in countries other than yours. Their legal and contractual safeguards apply to that processing.
11. Changes to this policy
We may update this policy when Tiny Tally’s features or data practices change. We will update the date at the top of this page and provide additional notice when a change materially affects your choices.
12. Contact
For privacy questions or data requests, email support@trailapp.xyz.