Important: Baby profiles, health information and care records may be sensitive personal information. A parent or other guardian should read this policy and decide whether to provide it.

Baoshiji · PRIVACY POLICY

Privacy Policy

Baoshiji is a baby life journal for parents and other caregivers. This policy explains how the operator of Baoshiji (referred to as “we” or “us”) handles personal information in the Baoshiji iOS app, companion Widget, Watch app and this compliance website.

Applicable versionBaoshiji 1.0.0 (Build 22.1)
UpdatedSeptember 8, 2026
EffectiveSeptember 8, 2026

1. Scope and basic principles

This policy covers baby profiles, care records, statistics, routines, local reminders, data export and recovery, iCloud sync, family collaboration, Siri and Shortcuts (iOS 16+), in-app purchases, Widgets and the Watch app currently provided by Baoshiji. Information handled by third parties through their independent websites or services is governed by their own rules.

We follow the principles of specified purposes, necessity, transparency and security. Baoshiji currently has no independent account system and does not use advertising or third-party monitoring SDKs. Product analytics is enabled only if you turn it on separately; PostHog receives feature usage, operation results, sync results, necessary app/system information and a random identifier, but not baby names, health records, notes, photos or record content. We do not operate as a business that sells personal information.

Product positioning: Baoshiji is intended for adults or caregivers with the relevant legal capacity. It is not designed for children to use independently. When information about a child under 14 is involved, a guardian should also read the Children’s Personal Information Protection Rules.

2. How we process personal information

The information involved depends on whether you use a feature. You may leave optional fields blank, but related display, statistics, sync or sharing functions may be limited.

ScenarioInformation that may be involvedPurpose and method
Caregiver profileNickname, optional avatar, internal random identifier, creation and update timesTo show who made a record, distinguish caregivers and complete your profile. Stored in on-device Core Data and not currently synced through CloudKit.
Baby profileName or nickname, date of birth, gender, optional avatar, internal random identifierTo create a baby profile, calculate age in months, isolate records by baby, show statistics and support family collaboration.
Care and health recordsFeeding, sleep, diapers, temperature, height, weight, head circumference, activity, medication, nutrients, vaccines, routines, record time, caregiver nickname and notes you enterTo save records, generate timelines and statistics, and provide reminders and exports. Medication, temperature, growth, vaccine and other health-related content may be sensitive personal information.
Avatar selectionPhotos you actively select or takeTo crop, compress and save a caregiver or baby avatar. We do not use photos for facial recognition. When using the system photo picker, the app receives only the photos you select.
Reminders and settingsNotification authorization status, reminder switches, routine times, quiet hours, interface preferences and the selected babyTo schedule local notifications on the device. On iOS 26+, when you enable system alarms, AlarmKit schedules care-plan alarms and keeps related components consistent.
iCloud sync and family collaborationBaby profiles, feeding, sleep, diaper and activity records, family member profiles and other synced information, plus CloudKit share titles, participant display names, roles, permissions and invitation statusTo sync the listed data across your devices through Apple CloudKit and collaborate with selected family members when you initiate or accept a share. Caregiver profiles, temperature, growth, medication, nutrients, vaccines, custom units and routines are local data and are not currently synced through CloudKit.
Siri and ShortcutsBaby selection, record parameters and status-query requests that you actively provideOnly to perform basic records, timers or status queries when you invoke them; voice processing is performed by Apple’s system, and Baoshiji does not directly request or read microphone access.
Baoshiji VIP purchaseProduct identifier, purchase result, subscription status and restore-purchase resultTo display products through Apple StoreKit, validate transactions and sync entitlements. Apple handles payment credentials; Baoshiji does not directly receive them.
Widget, Live Activity and WatchThe selected baby and necessary feeding or sleep status, today’s summary, entitlement status and control commandsTo provide summaries and controls across your own devices through Apple App Groups, WidgetKit, ActivityKit and WatchConnectivity; we do not directly connect these features to a third-party server.
Local diagnostics and crash reportsFeature event names, non-fatal error types and necessary context; system-generated crash reportsFeature events and non-fatal errors are written to Apple unified logging and are not actively uploaded by Baoshiji to a self-hosted server. Uncaught crashes are generated by iOS and viewed in App Store Connect and Xcode Organizer.
Product analytics (optional)Feature usage, operation results, sync results, necessary app/system information and a random identifier; no baby names, health records, notes, photos or record contentOnly after you actively enable Product Analytics, explicitly allowed low-sensitivity product events are sent asynchronously through PostHog to identify issues and improve recording, sync and reminder experiences. You can disable it at any time.
Website, compliance and support pagesIP address, browser or device type, request time, visited pages and other ordinary network logsProcessed by the Alibaba Cloud website infrastructure for page access, content delivery, security protection and necessary operations. See the third-party list and Alibaba Cloud’s privacy policy.

We do not ask for identity document numbers, precise location, contacts, microphone content or identifiers used for advertising tracking. If a future feature requires such information, we will update this policy before processing it and obtain authorization or separate consent as required by law.

3. System permissions

  • Camera: Requested only when you actively take an avatar photo or scan a family collaboration invitation QR code. It captures that photo or reads the invitation link; the main features remain available if you refuse.
  • Photo selection: Requested only when you actively choose an avatar, and used to select the image you specify. The app does not actively read your entire photo library.
  • Microphone: Voice feedback is disabled in the current version; we do not request or use microphone access.
  • Notifications: Requested only when you enable them, for local reminders such as routines. You can disable them in the app or iOS Settings.
  • System alarms (AlarmKit): Used only on iOS 26+ when you enable system alarms for care plans; authorization and alarm status are managed by iOS.
  • iCloud: Used for CloudKit sync of data that supports sync and for family collaboration, subject to your Apple ID, iCloud switch, network status and Apple’s service terms.

You can manage permissions in iOS Settings. Withdrawing a permission does not affect processing based on valid authorization before withdrawal, but the related feature may no longer work.

4. Sharing, entrusted processing, transfer and disclosure

1. Sharing with family members

Only when you actively create or accept a CloudKit share will the relevant baby profile and associated records be made available to participants you choose. Apple’s system interface and Baoshiji’s family collaboration feature jointly manage permissions; the share creator can stop sharing or remove members.

2. Third-party processing

Apple provides processing capabilities for iCloud/CloudKit, StoreKit, push notification infrastructure and system components. If you actively enable Product Analytics, PostHog receives only feature usage, operation results, sync results, necessary app/system information and a random identifier to identify issues and improve the experience; it does not receive baby names, health records, notes, photos or record content, and you can disable Product Analytics at any time. The open-source SSZipArchive dependency integrated in the app only extracts and reads compressed content on the device when you actively import an Excel recovery package; temporary files are cleaned up afterward, and data is not uploaded to the dependency or a self-hosted server. Alibaba Cloud Computing Co., Ltd. provides server access, content delivery and security acceleration for the website, compliance and support pages. Email initiated from the support page is passed by the iOS system mail editor to the mail service you choose; Baoshiji does not automatically collect or attach device data through a feedback SDK. Names, purposes, information types and privacy policies are listed in the Third-Party Information Sharing and SDK List.

3. Transfer and public disclosure

We do not actively transfer or publicly disclose your personal information. If a transfer is required because of a merger, separation or asset transfer, we will notify you and require the recipient to remain bound by this policy; otherwise we will act as required by law. We will not publicly disclose personal information unless you provide separate consent or the law permits it.

5. Storage, sync and security

  • On-device storage: Business data is mainly stored in the device’s Core Data database. Caregiver profiles, custom units, temperature, growth, medication, nutrients, vaccines and routines are currently local only. Timer state, interface preferences and cross-component summaries are stored locally or in the App Group container.
  • iCloud storage: When iCloud is enabled, baby profiles, feeding, sleep, diaper and activity records, and family member profiles are stored and synced through Apple CloudKit; the local data listed above is not currently synced through CloudKit. Storage regions, backups and retention rules depend on your Apple ID region, iCloud configuration and Apple’s rules.
  • Retention: We retain information while it is needed to provide the feature. After you delete a baby, the app first hides the profile and cleans up related records in the background. CloudKit deletion sync and system backups may take a reasonable amount of time. Uninstalling the app does not necessarily delete data synced to iCloud, system backups or copies shared with others.
  • Export and recovery files: You can generate and share an Excel recovery package through the system, or select a local package for preview, validation and merge import. Import does not delete existing local data by default. After a file leaves the app, you control where it is stored, copied and received; please keep it secure.

We use permission isolation, query isolation by baby identifier, Apple data protection, minimized logging and dependency review. Internet transmission and storage are never absolutely secure; if a security incident may harm personal information rights, we will take remedial measures and provide notices or reports as required by law.

Apple, Alibaba Cloud and other services may process data in different regions based on account regions and service architecture. Feedback you actively send through system email is processed by the mail service you choose; Baoshiji does not automatically attach baby profiles, care records or diagnostic logs through a feedback SDK. We do not actively transmit baby care records overseas through a self-hosted server. If we later decide to conduct such cross-border processing, we will provide separate notice and obtain required consent.

6. How you can manage personal information

To the extent provided by applicable law, you may access, copy, correct, supplement and delete relevant personal information, restrict or refuse processing, withdraw consent and ask for an explanation of this policy.

  • View or edit your information, or delete a baby profile, in “My Information” and “Baby Management”.
  • Correct or delete care records on their detail pages; generate an Excel recovery package through “Data Export”, or select a local package for preview and merge import.
  • Withdraw notification, camera and other permissions in notification settings or iOS Settings.
  • Stop sharing or remove participants in family collaboration, or manage accepted shares through Apple’s system.
  • Baoshiji currently has no independent account registration, so there is no separate “close account” process. You can delete in-app data, turn off iCloud sync and uninstall the app; synced data must also be managed through Apple’s available methods.

If the app does not yet provide a relevant control, you can submit a request through the contact channel in this policy. To protect baby and family data, we may verify consistency between the requester and the device, Apple account or guardianship relationship. We usually respond within 15 business days, unless the law provides otherwise.

7. Children’s personal information

Personal information of a minor under 14 is sensitive personal information. Before creating a baby profile or recording a child’s information, a guardian should read and agree to the Children’s Personal Information Protection Rules, and provide only information necessary for records, reminders, statistics, sync or family collaboration. Baoshiji does not use third-party monitoring SDKs; uncaught crashes are generated by iOS under Apple’s service rules.

If we discover that a child has provided personal information directly without a guardian’s consent, we will delete it or take other protective measures as soon as reasonably possible after verification.

8. Policy updates

We may update this policy when features, processing purposes, third-party services or legal requirements change. Significant changes include adding sensitive information types, changing purposes, expanding sharing recipients or materially affecting your rights. We will notify you through an in-app notice, website announcement or another appropriate method; where consent is legally required, we will obtain it again.

9. Contact us

Personal information processor and operator: Baoshiji operator

Contact channel: Please use the “App Support” or developer contact channel listed on Baoshiji’s App Store product page for privacy questions, and include “Baoshiji privacy request” in the subject. We usually verify and respond within 15 business days.