Cali Baby中文

Cali Baby Privacy Policy

Effective: August 8, 2026

This policy explains what information Cali Baby handles, why we need it, and the choices you have. Cali Baby is designed for parents, guardians, and other caregivers. It isn't intended for children to use directly.

1. Who is responsible for your information

The service region you select in the app determines the operator responsible for Cali Baby. Your interface language doesn't change the operator.

  • Global Region: Zolplay LLC, 1021 E Lincolnway, Cheyenne, WY 82001, USA.
  • China Region: 深圳市佐玩信息技术有限公司, 深圳市罗湖区桂园街道桂木园社区宝安南路2046宝丽大厦A座12G, China.

In this policy, “we” means the operator for your selected service region. Both operators use contact@zolplay.com for privacy and legal requests.

If you migrate a Family to another service region, the destination operator becomes responsible for the service after migration. The source operator remains responsible for any read-only source copy it controls until that copy is deleted.

2. Information we handle

Depending on the features you use, we may handle:

  • Account information, including account identifiers, email, display name, avatar, sign-in method, service region, and account creation or last-seen times.
  • Baby and care information, including a baby's name or nickname, birth date or due date, profile photo, and feeding, sleep, diaper, temperature, growth, pregnancy, and other records you choose to add.
  • Content you add, including notes, photos, quantities, times, voice records, and imported backup contents.
  • Family information, including members and roles, invites, device names, sync state, recovery data, and technical information used to coordinate Family access.
  • Purchase information supplied by Apple, including product and transaction identifiers, subscription or lifetime status, expiration, refund, and revocation state. We don't receive your complete payment-card information.
  • Usage information, if you explicitly opt in to analytics, such as feature and action names, app version, operating-system version, and coarse usage patterns.
  • Diagnostic information, including crashes, errors, performance, network and request details, and security logs needed to protect the service.
  • Website-visit information, including page-view and coarse technical information generated when you visit Cali Baby product, support, or legal pages.
  • Communications you send to support or legal contacts and the follow-up needed to handle your request.

Baby information, health-related records, photos, and voice may be considered sensitive personal information where you live. Only provide information you're authorized to record and share.

3. Why we use information

We use information to:

  • Save and display records on your device.
  • Provide accounts, Family invites, Family Sync, and backup import or export.
  • Transcribe voice and turn a transcript into a record for you to confirm.
  • Verify purchases and provide Cali Baby Pro entitlements.
  • Respond to support, privacy, and legal requests.
  • Understand broad feature use when you choose to opt in.
  • Find errors, secure accounts and the service, and keep the service working.
  • Meet legal obligations and handle disputes.

We don't use care records, photos, audio, or transcripts for advertising.

4. Device records, backups, and Family Sync

Records start on your device. You can delete local records in the app or export a backup. An exported backup is under your control, and any file-storage, cloud-drive, or sharing service you choose handles it under its own terms.

If you sign in and enable Family Sync, supported Baby Profile information and care records are sent to your selected service region and made available to authorized members of the same Family. Family members can view, add, and change shared information, so invite only people you trust and who are authorized to access the baby's information.

Current managed Family Sync requires the server to process readable sync content. It isn't an end-to-end encrypted service. We protect synced information with transport security, access controls, and other safeguards, but you shouldn't understand Family Sync to mean that the service is technically unable to read its contents.

Clearing local information on one device, signing out, or deleting the app doesn't delete your account or synced Family information.

5. Avatars and photos

Baby avatars and photos embedded in records may be stored with synced information. Global Region avatar assets use Cloudflare R2. China Region avatar assets use Alibaba Cloud infrastructure. Account avatars are handled by the account provider.

When a Family is deleted, we delete its avatars, record photos, and other active assets. We also clean up objects that are no longer used when an avatar is replaced or removed.

6. Voice records

Voice records prefer Apple's on-device speech features. If local transcription isn't available, server processing may:

  1. Upload the recording to temporary storage in your selected service region.
  2. Send the recording to Doubao speech services for transcription.
  3. When more interpretation is needed, send the transcript, language, time, and necessary context to OpenAI to prepare a record for you to confirm.

Third-party speech and AI providers may process this information outside your selected service region. Server-processed audio is scheduled for deletion after processing. Audio, upload information, transcripts, and job metadata controlled by Cali Baby are physically deleted within 24 hours. Copies created by third-party providers are retained under their applicable agreements and legal obligations.

Recent voice-record history may also remain on your device and may be included in an exported backup. You can clear local voice history in the app.

7. Usage analytics and operational diagnostics

Usage analytics and operational diagnostics are separate.

Usage analytics is provided by PostHog and is enabled only if you explicitly opt in. It helps us understand which features are used and where a flow is commonly interrupted. Analytics may include a pseudonymous account or installation identifier, app and operating-system versions, feature names, and action outcomes. We don't send baby names, notes, photos, audio, transcripts, or precise care values to usage analytics. You can turn it off in Settings at any time.

Operational diagnostics from services such as Sentry help us find crashes, errors, performance problems, and security events. Diagnostics may include limited or pseudonymous account, Family, and device identifiers. We limit and scrub diagnostic content to avoid sending user-entered care content. Turning off usage analytics doesn't turn off the operational diagnostics needed to maintain the service.

When you visit the product, support, or legal pages on cali.so, Vercel Web Analytics processes page-view and coarse technical information. Website analytics isn't linked to Baby Profile information or care records and isn't controlled by the PostHog setting in the app.

PostHog and Sentry may process information in the United States.

8. When we disclose information to service providers

We let service providers handle information only as needed to provide and protect Cali Baby. The main categories are:

  • Apple for app distribution, purchases, device capabilities, and system speech features.
  • Clerk for sign-in, account identity, and account avatars.
  • Railway, Cloudflare, and Alibaba Cloud for servers, databases, and asset storage.
  • Doubao for server speech transcription.
  • OpenAI for interpreting and organizing voice transcripts when needed.
  • PostHog for usage analytics after you opt in.
  • Sentry for error, crash, and performance diagnostics.
  • Vercel for website analytics on the product, support, and legal pages.
  • Email and support providers for requests you choose to send.

These providers handle information under our instructions or the terms that apply directly between you and them. We may also disclose necessary information when required by law, to protect users or the service, during a business reorganization, or when you direct us to do so.

9. Service regions and international processing

The Global Region currently uses service compute in Singapore, database storage in the United States, and Cloudflare R2 for assets. The China Region's main sync service and assets use Alibaba Cloud infrastructure in mainland China.

Selecting a service region doesn't mean every processing activity stays in that region. Account sign-in, App Store purchases, usage analytics you opt into, website analytics, operational diagnostics, and server voice processing may involve providers outside the region. Where applicable law requires additional notice, separate consent, or another transfer step, we provide it before the relevant processing begins.

When a Family migrates between regions, we may keep a read-only copy in the source region and create a new copy in the destination region. Selecting the China Region doesn't automatically delete the source copy. Deleting the Family removes active regional copies still controlled by Cali Baby.

10. Retention and deletion

We keep information only as long as needed to provide the feature, maintain security, and meet legal obligations. We don't keep it merely because it might be useful someday.

  • Device records remain until you delete them, clear app data, or uninstall the app. You manage exported backups.
  • Family information remains until the Family Owner deletes the Family or a record is deleted through the relevant product feature.
  • After you delete an individual record, it is no longer shown or synced as an active record. Older mutation copies may remain until sync compaction completes; Family deletion also removes that history. We may retain a content-free deletion marker for as long as needed to keep the deleted record from reappearing.
  • Server voice audio, upload information, transcripts, and job metadata controlled by Cali Baby are deleted within 24 hours. Speech and AI providers handle their copies under their applicable agreements and legal obligations.
  • When you turn off usage analytics, we stop new PostHog analytics and reset or unlink the analytics identity in the app. When you delete an account, we delete or irreversibly unlink account analytics held by the provider. Operational diagnostics are kept as needed for security and incident handling and remain subject to content-scrubbing rules.
  • Website analytics is kept only as long as needed for aggregate site traffic under the verified Vercel retention configuration and isn't linked to Baby Profile information or care records in the app.
  • Support communications and purchase, fraud-prevention, security, and audit records are kept only as needed to handle the request, maintain security, or meet legal obligations.

Account deletion removes that caregiver's sign-in identity, account information, and Family memberships. It doesn't delete Family information that remains shared with other caregivers. An account that owns a Family with other members must explicitly transfer ownership first.

Only the Family Owner can delete a Family. Family deletion removes active Baby Profiles, care records, embedded photos, avatars, memberships, devices, invites, recovery data, and regional source copies still under our control. If the Owner is the only member, deleting the account uses the combined flow to delete the Family too.

Access is revoked immediately after final confirmation. Some external storage or provider cleanup may continue in the background. The app shows deletion as in progress and doesn't call it complete until every required deletion result has been verified.

We may retain a small set of App Store transaction, fraud-prevention, security, and audit records when legally or operationally required. These retained records don't contain care content. Restricted backup copies may remain until the applicable backup overwrite cycle completes; they aren't used for ordinary product features.

11. Your choices and rights

In the app, you can view or change most account, Baby Profile, and Family information; export records; manage Family members; turn off usage analytics; delete your account; or delete a Family you own.

Depending on where you live, you may also have rights to request access, correction, a copy, deletion, restriction, or withdrawal of consent. Email contact@zolplay.com. We may need to verify your identity and Family authority before completing a request.

Withdrawing consent doesn't affect processing already completed lawfully before the withdrawal. Some information may not be deleted immediately when law, security, fraud prevention, or a dispute requires retention. We'll explain any applicable limit in our response.

12. Children and caregiver responsibility

Cali Baby is designed for parents, guardians, and other caregivers who have reached the age of legal majority where they live and can enter a binding agreement. It isn't intended for children to use directly.

Adults may enter information about a child, but they must be authorized to provide and share it with Family members. Don't allow a child to create an account or invite someone who isn't authorized to see the baby's information.

13. Security

We use measures such as transport security, access controls, service isolation, log scrubbing, and deletion processes to reduce the risk of unauthorized access, loss, or misuse. No storage or transmission method can be guaranteed completely secure.

Protect your device and account, use a reliable device lock, don't share sign-in credentials, and remove Family members who no longer need access.

14. No sale or targeted advertising

We don't sell personal information, share it for cross-context behavioral advertising, serve targeted ads based on activity across services, or use care records, photos, audio, or transcripts to build advertising profiles.

15. Changes to this policy

We may update this policy when the product, providers, or legal requirements change. We'll explain material changes through the app, website, or another appropriate channel and update the effective date.

16. Contact us

Privacy, data-rights, or legal requests: contact@zolplay.com

General product support: hi@cali.so

The mailing address depends on your service region:

  • Zolplay LLC, 1021 E Lincolnway, Cheyenne, WY 82001, USA.
  • 深圳市佐玩信息技术有限公司, 深圳市罗湖区桂园街道桂木园社区宝安南路2046宝丽大厦A座12G, China.