← Back to Home

Privacy Policy

Last updated: July 26, 2026

Our Commitment to Your Privacy

At FamBoard, we believe your family's data belongs to you. We built FamBoard with privacy as a core principle — not an afterthought. This policy explains what data we collect, how we use it, and the choices you have.

1. Information We Collect

Account Information

When you create an account, we collect:

  • Email address (for login and communication)
  • Name (to personalize your experience)
  • Password (encrypted and never stored in plain text)
  • Family member names and profiles you create

Calendar and Task Data

When you connect calendars or create content:

  • Calendar events synced from Google or Outlook
  • Tasks, lists, and meal plans you create
  • Photos you upload for photo frame mode
  • Display preferences and theme settings

Usage Information

To improve FamBoard, we collect:

  • Which features you use
  • Device types and screen sizes
  • Error logs to fix bugs
  • General location (country/region, not precise location)

2. How We Use Your Information

We use your information to:

  • Provide and maintain the FamBoard service
  • Sync your calendars and display your family information
  • Send important service updates and security notices
  • Improve our product based on how you use it
  • Provide customer support when you need help
  • Process payments through our payment provider (Stripe)

3. What We Never Do

  • Sell your personal data to third parties
  • Share your calendar events with advertisers
  • Use your photos for any purpose other than displaying them to you
  • Track your precise location
  • Read or analyze the content of your events or tasks

4. Data Security

We protect your data using industry-standard security measures:

  • All data encrypted in transit (TLS/SSL) and at rest
  • Passwords hashed using bcrypt
  • Regular security audits and updates
  • Access controls limiting employee access to data
  • Secure cloud infrastructure with automatic backups

5. Third-Party Services

We use trusted third-party services to provide FamBoard:

  • Supabase — our database and authentication provider. Holds all household data at rest, plus sign-in email addresses.
  • Cloudflare R2 — object storage for uploaded photos and custom backgrounds, keyed by household.
  • Vercel — for web hosting. Receives request metadata for every page and API call.
  • Stripe— for secure payment processing. Receives the admin's email address, plus billing details Stripe collects directly in its own checkout flow.
  • Resend— sends transactional email. Receives the recipient's email address, the subject line, and the rendered email body, which may include a household name or feedback text.
  • Sentry — error tracking. Receives your user id and email address, plus a household identifier, on every client session.
  • PostHog — product analytics. Autocaptures click and page-view events, including the full current URL. We do not supply PostHog a user identifier; it operates on its own anonymous device id.
  • OpenWeather— receives your household's configured ZIP code only, to show local weather.
  • Upstash Redis — powers rate limiting. Receives key material only — IP addresses, device codes, and household identifiers — never stored message content.
  • Google/Microsoft — for calendar synchronization (with your permission)

6. Your Rights and Choices

You have the right to:

  • Access your personal data at any time
  • Export your data in a portable format
  • Delete your household and all associated data
  • Opt out of non-essential communications
  • Disconnect calendar integrations
  • Request correction of inaccurate data

If you have a FamBoard account, export and deletion are available from Settings > Privacy & Data (/settings/privacy).

7. Data Retention

We retain your data for as long as your household is active. Deleting your household from Settings > Privacy & Data (/settings/privacy) removes household records and photo files immediately. Two things do not go away with it: your account's sign-in email address remains registered with FamBoard as an authentication identity, no longer attached to any household, and an active Stripe subscription is not cancelled by household deletion — cancel it separately in Billing.

8. Children's Privacy

FamBoard is designed for families, including children. Child profiles are created and managed by parents/guardians, and children never sign up or provide information directly. A child profile has no email address of its own, but a parent may set a PIN for it. Entering that PIN on a household device creates a session lasting up to 180 days — a random token, of which only a cryptographic hash is stored — and a child can complete tasks and gigs on that device without the parent present while the session is active. A parent can revoke a child's sessions at any time from Settings. Parents maintain full control over children's data within the family account.

9. Changes to This Policy

We may update this policy from time to time. We'll notify you of significant changes via email and update the "Last updated" date above. Continued use of FamBoard after changes constitutes acceptance of the updated policy.

10. Contact Us

If you have questions about this Privacy Policy or your data, please contact us: