Guardian notice: Before creating a baby profile or recording a baby’s information, please read these rules and the Privacy Policy in full and decide whether to provide the information after understanding them.

Baoshiji · CHILDREN’S PRIVACY

Children’s Personal Information Protection Rules

These rules explain how the operator of Baoshiji (referred to as “we” or “us”) protects the personal information of children under 14 in Baoshiji. They form part of the Privacy Policy. If the two documents differ, the rule providing greater protection applies to the processing of children’s personal information.

Covered personsChildren under 14 and their guardians
Applicable versionBaoshiji 1.0.0 (Build 22.1)
UpdatedSeptember 8, 2026
EffectiveSeptember 8, 2026

1. Guardian responsibility and consent

Baoshiji is intended for parents and other caregivers and does not encourage independent use by children. Before creating a profile, entering records, enabling iCloud sync or sharing with family members, you should be the child’s parent, another legal guardian or someone with the guardian’s lawful authorization.

Children’s personal information is sensitive personal information. Continuing to create a child profile or provide records means that you have read and agree that we may process the information under these rules and the Privacy Policy. Where separate consent is legally required, we will provide a separate notice in the relevant scenario.

Please do not overprovide: A nickname is usually enough to distinguish a baby. Avoid putting identity document numbers, home addresses, precise locations, contact details, medical card numbers or other unrelated information in names or notes.

If you are the child, stop entering information and ask a parent or other guardian to read these rules. If we discover that children’s information was collected directly without guardian consent, we will delete it as soon as reasonably possible after verification.

2. Children’s personal information we process

CategoryInformationNecessity and purpose
Basic profileName or nickname, date of birth, gender, optional avatar and internal random identifierTo create a profile, distinguish multiple babies, calculate age in months and show age-appropriate statistics. Avatar and gender are optional.
Daily care recordsFeeding type, amount or duration, solid food, sleep, diapers, activity, record time, recorder and notesTo form a care timeline, create summaries, support family collaboration and provide routine reminders.
Health-related recordsTemperature and measurement method, height, weight, head circumference, stool characteristics, medication and reactions, nutrients, vaccine name, dose, provider, batch number and notesEntered by a guardian for family organization, trend viewing and export. This information may reveal health conditions and is sensitive personal information.
PhotosA baby avatar actively selected or taken by a guardianOnly for displaying an avatar. We do not perform facial recognition, identity verification or advertising profiling.
Sharing informationCloudKit share status associated with a child profile, participant display name, role and permissionOnly when a guardian actively uses family collaboration, to control who can view or edit the related data.

We do not collect children’s personal information for advertising, profiling or commercial marketing. The current version does not collect precise location, contacts, microphone content, identity documents or advertising identifiers.

3. How we use children’s personal information

  • To provide profiles, records, timers, statistics, reminders, exports, recovery and cross-device summaries.
  • After a guardian enables it, to sync supported data between the guardian’s devices through Apple CloudKit or share it with family members selected by the guardian.
  • When a guardian actively requests it, to perform basic records, timers and status queries through Siri and Shortcuts (iOS 16+). Voice processing is provided by Apple; Baoshiji does not directly read microphone content.
  • To generate conservative care references using rules and local statistics. We do not currently send children’s information to a third-party artificial intelligence service to train models or use it for advertising recommendations.
  • To maintain service security, troubleshoot errors and respond to guardians’ rights requests. If a guardian actively enables Product Analytics, PostHog receives only feature usage, operation results, sync results, necessary app/system information and a random identifier, without child profile or care record content; Product Analytics can be disabled at any time. Baoshiji does not use third-party monitoring SDKs; uncaught crashes are reported by iOS, and Baoshiji does not actively upload child profiles or care records to a self-hosted server.
  • If you actively submit a question through system email, first make sure the message does not contain the baby’s name, health records, medical information or other sensitive content. Feedback email does not automatically attach baby context.

Baoshiji statistics, rhythm suggestions and reminders are not medical diagnoses, treatment plans or medication advice, and are not automated decisions that produce legal effects or similarly significant effects on a child.

4. Sharing, entrusted processing and disclosure

1. Family collaboration

After a guardian actively creates a CloudKit share, selected family members may view or edit the child profile and related records according to their permissions. Confirm the recipient’s identity and need before sharing. The share creator can stop sharing or remove members.

2. System services and page hosting

Apple supports sync, purchases, reminders and cross-device features through CloudKit, StoreKit, WidgetKit, WatchConnectivity, AlarmKit and other system capabilities. If a guardian actively enables Product Analytics, PostHog receives only usage data and a random identifier without child profile or care record content, and Product Analytics can be disabled at any time. The iOS system mail editor sends feedback after the guardian confirms it to the mail service they choose. Alibaba Cloud Computing Co., Ltd. provides server access, content delivery and security acceleration for the website, compliance and support pages and may process ordinary network logs generated when pages are visited. The open-source SSZipArchive dependency only extracts and reads an Excel recovery package on the device when a guardian actively imports it; it does not receive children’s information through an upload. See the Third-Party Information Sharing and SDK List.

3. Other sharing

Except for sharing actively initiated by a guardian, separate guardian consent or requirements of law, we will not provide children’s personal information to other individuals or organizations, sell it or publicly disclose it.

5. Retention, location and security measures

  • Baby profiles, feeding, sleep, diaper and activity records, and family member profiles are mainly stored on the guardian’s devices and in Apple iCloud/CloudKit enabled by the guardian. Caregiver profiles, temperature, growth, medication, nutrients, vaccines and routines are stored locally and are not currently synced through CloudKit. Baoshiji currently does not operate a business server that stores these records. Uncaught crashes are reported by iOS; feedback email is processed by the selected mail service only after the guardian confirms sending.
  • Information is retained for as long as needed to provide the feature or until the guardian deletes it. After a baby is deleted, the app cleans up related records in the background. CloudKit sync, system backups and shared copies may take a reasonable amount of time to delete.
  • We reduce risks through isolation by baby identifier, the system sandbox and permission controls, Apple data protection, minimized logging, dependency review and share permission management.
  • Once exported from the app, an Excel recovery package is controlled by the guardian. A local package is previewed and validated in the app before merge import, and existing data is not deleted by default. Do not send it through untrusted channels and delete it promptly when no longer needed.

The actual storage region of Apple and other services depends on the guardian’s account region and service arrangements. We do not actively transmit children’s care records overseas through a self-hosted server. If we later decide to conduct cross-border processing, we will legally inform guardians of the recipient, purpose, method and rights channel, obtain separate guardian consent and fulfill other legal obligations.

6. How guardians and children can manage information

To the extent provided by applicable law, guardians may access, copy, correct, supplement and delete children’s personal information, withdraw consent, restrict or refuse processing and ask for an explanation of the processing rules. Once a child reaches the applicable age and capacity, the child may also exercise relevant rights according to law.

  • View, correct or delete information through baby management and record detail pages.
  • Obtain an Excel recovery package for the current baby through data export, or select a local package for preview and merge import.
  • Stop sharing, remove members or adjust permissions through family collaboration.
  • Turn off camera, notifications or iCloud in system settings.
  • If a request cannot be completed in the app, submit it through the contact channel in these rules.

To prevent impersonation, we may verify the requester’s guardianship relationship and information related to the device or Apple account. Withdrawing consent does not affect processing based on valid consent before withdrawal. If the information is required for a core feature, we may be unable to continue that feature after withdrawal. We usually respond within 15 business days.

7. Security incidents, service changes and closure

If a security incident such as a leak, alteration or loss of children’s personal information occurs, we will immediately begin response procedures, take remedial measures and notify guardians and competent authorities of the incident, possible effects, measures taken and risk-reduction recommendations as required by law.

If Baoshiji stops operating, we will stop collecting children’s personal information, notify guardians through an in-app notice, page announcement or other appropriate method, and delete or anonymize children’s personal information under our control as required by law. Copies held by an Apple account, system backup or guardian-exported or shared file must be managed by the guardian through the relevant service.

When these rules change materially, we will notify guardians prominently. Where renewed consent is legally required, we will obtain it before continuing processing.

8. Children’s information protection contact

Children’s personal information protection contact and operator: Baoshiji operator

Contact channel: Use the “App Support” or developer contact channel listed on Baoshiji’s App Store product page, and put “Baoshiji children’s personal information request” in the subject. We usually verify and respond within 15 business days.