Privacy Policy

Last updated: September 4, 2026

This Privacy Policy describes how CommaScale operates Baby Futures and handles information across our website, iOS app, Android app, and related services.

1. Information We Collect

  • Accounts and access: host name, email, password hash, verification status, and authentication sessions. Native apps send an installation-specific identifier and device/platform label to manage sign-in; these are not advertising identifiers.
  • Family and pool content: baby nickname, parent names, optional due date, custom questions, invitations, guest names, predictions, well-wishes, host notes, and published results. Predictions and results may include a birth date or time, birth weight or length, sex, and other family or birth-related information. Share only information you have permission to provide. These details can be sensitive even though the service is a just-for-fun game, not medical advice.
  • Contact and payments: guest email addresses and any optional phone number provided through a supported guest form or request, support correspondence, and payment/activation status and transaction references. Stripe processes website payments. We do not store full card numbers or card security codes.
  • Safety and operations: content reports and their details, moderation actions, limited product events, and technical request information needed for security, reliability, and abuse prevention.

2. How We Use Your Information

We use this information to authenticate hosts, operate pools and scoring, manage activation, display content according to sharing settings, deliver invitations and service emails, support account recovery and deletion, address safety reports, prevent abuse, and improve reliability and usability. We do not use family or birth information for advertising or medical decisions.

3. Service Analytics and Safety Identifiers

We record limited, first-party product events—such as starting the pool creator, selecting a template, sharing a pool, or starting a guess—to understand whether the service is easy to use. Event fields are restricted to operational values such as a template name, question count, yes/no state, or internal pool identifier. Events can be associated with a host or pool, but do not include prediction text or private family content. We do not use advertising trackers or follow you across other companies' apps or websites.

For guest-submission safety, the website sets a first-party bf_guest_safety cookie lasting up to 180 days after a successful submission. It stores a random browser identifier. We store keyed, pool-specific hashes of this identifier and, when provided, the guest email to enforce host blocks. These identifiers are not used for analytics, advertising, or cross-pool profiling. Clearing the cookie does not remove existing guesses or reports. Authentication and local draft storage also support the features you request.

4. Data Sharing and Third Parties

We do not sell your personal information. Cloudflare provides hosting and database infrastructure, Mailgun delivers service emails, and Stripe processes website payments. These providers receive information needed to perform their services. Information may also be disclosed where required by law or necessary to address fraud, security, or safety concerns.

Hosts and authorized cohosts can access pool submissions. Other participants can see content according to pool and response sharing settings. An unlisted link is not a password: anyone who receives it may be able to open the pool. Recipients may copy or forward content outside our control. Share links and birth information only with intended participants.

When an activated pool link is shared, its link preview automatically includes the parent names entered for that pool. Messaging and social services may fetch and cache this preview. We do not include the baby nickname, due date, predictions, or results in the preview. Draft, unactivated, and deleted pools receive a generic preview. Changing names or deleting a pool updates future previews served by us, but cannot remove copies already cached by another service.

5. Data Retention and Deletion

We retain personal information only as long as needed to provide the service and meet legal obligations. You can permanently delete your account from Account Settings in the website or native apps, or use our public account deletion page if you cannot sign in. Account deletion removes owned pools and their content, authentication sessions, memberships, invitations, preferences, referrals, and product events attributable to the account or its owned pools. Safety records associated with deleted pools are also removed. Payment processors may retain transaction records, and we may retain minimal security or accounting records, only as required for tax, disputes, fraud prevention, or law.

Guests can delete a submission using its private edit link while that link is valid. If the link has expired or been disabled, or you need access, correction, or deletion assistance, contact Support. We may need to verify your relationship to the information before responding. Deletion from our service cannot retract copies already saved by other participants or delivered by email.

6. Children and Family Information

The service is intended for adult hosts and invited participants, not for children to create their own accounts. Family content may concern a baby; adults should provide only information they have authority to share. Contact us if you believe a child submitted personal information without appropriate permission.

7. Contact Us

If you have any questions about this Privacy Policy, please contact us at support@commascale.com.