Privacy policy

Privacy

Nupi is an iOS app that helps you make sense of your baby's cries and keep track of their day. This page explains what is stored on your device and in your own iCloud, what is sent to an AI processor when you use the assistant, the optional Sign in with Apple account, and the small set of anonymous usage events sent to our analytics and subscription processors.

Who we are

Nupi is published by an independent developer based in Germany, acting as the data controller in a personal capacity. There is no separate registered company.

For privacy questions, or to exercise any GDPR right (access, correction, deletion, export, objection), email support@nupi.app. This is the primary contact channel for data-protection matters; a postal address can be provided on request.

What stays on your device

Everything you create in Nupi is stored locally on your iPhone using Apple's SwiftData and standard preferences (UserDefaults). This includes:

None of this is transmitted to a Nupi server — Nupi has no servers of its own. Your tracked data stays on your device except for the specific, limited case of asking the AI assistant a question (see below).

Your iCloud (backup & sync)

If you are signed in to iCloud, the on-device data listed above is also synced to your own private iCloud database using Apple's CloudKit, so it is backed up and available on your other devices. It is stored on Apple's infrastructure under your Apple Account and is governed by Apple's privacy policy. It stays private to you — Nupi has no servers and never receives a copy. You can turn this off by disabling iCloud for Nupi in iOS Settings, in which case your data simply stays on the device.

Sign in with Apple (optional)

Nupi works fully without an account. You can optionally sign in with Apple — for example to keep your subscription tied to you across devices. When you do, Apple gives the app a stable, app-specific user identifier and, only the first time and only if you choose to share them, your name and email. These are stored on your device and used to identify your account and link your subscription; they are not sent to a Nupi server (there is none) and are never used for marketing. You can sign out at any time in Settings, and Sign in with Apple is governed by Apple's privacy policy.

Cry audio stays on your device

When you analyze a cry, Nupi uses the microphone only while you are actively recording. The audio is processed entirely on your device to produce the result. It is never uploaded, never sent to a server, and is not retained as a recording after the analysis. Only the resulting cause and confidence read are saved locally to your history.

What we send for an AI answer

The AI assistant is an optional feature. When you send it a question, the following is sent over HTTPS to our AI processor, per message:

For GDPR disclosure, the processor is OpenAI. Their privacy policy applies to the request. Under their commercial API terms, content sent through the API is not used to train their models. We do not store the request after the answer has been returned.

What we do not send

Analytics & tracking

Nupi uses Mixpanel as its product-analytics service. When you use the app, Mixpanel receives anonymous usage events — which features you use (for example "a tracker entry was saved" or "a cry analysis completed"), basic device and subscription context, and an approximate region derived from your IP — tied to a per-install anonymous UUID the app generates on first launch. No name, email, phone number, or advertising identifier is sent, and the content you create (notes, photos, milestone text, AI conversations, cry audio) is never part of these events. Nupi does not use session replay — your screen is never recorded.

The Mixpanel privacy policy applies. Mixpanel stores this data on US infrastructure; for users in the EU or UK, this international transfer relies on the Standard Contractual Clauses Mixpanel provides to its customers. Our legal basis for this processing is legitimate interest under Article 6(1)(f) GDPR — operating and improving the app. To request deletion of historical Mixpanel records tied to your install, email support@nupi.app.

We do not build an advertising profile, and no data is shared with data brokers or ad networks.

Subscription management is handled by RevenueCat, which receives an anonymous per-install UUID and your App Store purchase history so that your Nupi Pro entitlement persists across launches and reinstalls against the same Apple ID. No name, email, phone number, or advertising identifier is sent. See the RevenueCat privacy policy.

Uninstalling the app stops all new data collection from your device. To request deletion of historical RevenueCat records tied to your install, email support@nupi.app with a recent purchase timestamp and approximate region — we can match the install UUID on our side. The UUID is regenerated on reinstall.

This website (nupi.app) serves no analytics or third-party trackers, and we do not set cookies of our own. Web fonts on this site are served by Google Fonts, which may receive your IP address as part of that request. No cookies are set.

Notifications

Nupi does not run a push-notification server. Any reminders are scheduled locally on your device and can be turned off in iOS Settings → Notifications → Nupi.

Children

Nupi is designed for parents and caregivers. It is not directed at children under 13.

Your rights (GDPR)

If you are in the European Union or United Kingdom, you have the right to access, correct, delete, and export your personal data, and to object to processing. Because Nupi stores your content on your device and does not maintain server-side accounts, you can exercise most of these rights directly in the app:

For any request that requires our involvement, write to support@nupi.app.

Changes to this policy

We may update this policy as the app evolves. Material changes will be reflected in the "Last updated" date at the bottom of this page.

Last updated 2026-06-11