Last updated: August 10, 2026
Nightly Stories helps families build a calm, personalized bedtime ritual. This Privacy Policy explains what information we collect, why we collect it, and the choices you have. We wrote it in plain language and cut the legalese where we could — because you shouldn't need a lawyer to understand what happens with your family's data.
Nightly Stories ("we," "us," or "our") operates the Nightly Stories mobile application (the "App") available on iOS and Android, and the website at nightlystories.app (the "Site"). Together, the App and Site are referred to as the "Service."
This Policy applies whenever you download, sign up for, or use the Service.
When you create an account, we collect information you provide directly, including:
To personalize stories, you may add one or more child profiles. These are set up and managed by the parent and may include:
We do not require a child's last name, contact information, exact date of birth, photograph, or precise location.
If you use the Sleep features, we store the bedtime, wake time, and any notes you log for each night, plus which stories were read and completed.
All purchases are processed by Apple's App Store or Google Play. We do not receive or store your credit card, bank, or full payment details. We do receive from the stores a transaction identifier, product identifier, purchase date, and subscription status so we can unlock your entitlement in the App.
To keep the App running reliably, we collect limited technical data:
If you opt in to notifications, we store the device token issued by Apple Push Notification service or Firebase Cloud Messaging so we can send you your evening story reminder.
We use the information described above to:
We do not use your information — or your child's information — to build advertising profiles, and we do not sell personal information to anyone.
Nightly Stories is a family app set up and managed by a parent or legal guardian. Children do not create accounts, do not communicate with other users, and cannot make purchases within the App.
We designed the App to comply with the U.S. Children's Online Privacy Protection Act (COPPA) and equivalent child-data protections under the EU/UK GDPR. Specifically:
If you believe your child has provided us information without your consent, please contact us at nightlystoriesapp@gmail.com and we will delete it promptly.
We do not sell, trade, rent, or otherwise transfer your personally identifiable information to outside parties. The only exceptions are the limited situations described below, and we don't consider transfers to the trusted service providers who help us operate the Service — under strict confidentiality — to be "sharing" in this sense.
We share information with third parties that operate infrastructure on our behalf, under contracts that restrict their use of the data to providing the service. See Section 6 for the full list.
We may disclose information if required by law, subpoena, or valid legal process, or when we believe in good faith that disclosure is necessary to protect the safety of a child, our users, or the public.
If Nightly Stories is involved in a merger, acquisition, or asset sale, information may be transferred as part of that transaction. We will notify you before information becomes subject to a different privacy policy.
We may share information for any other purpose disclosed to you at the time we collect it, with your explicit consent.
We work with the following processors. Each is bound by its own privacy commitments; links to their policies are provided so you can review them.
We do not integrate advertising SDKs, tracking pixels, or social-media SDKs.
We use encryption in transit (HTTPS/TLS) for all traffic between the App and our servers, and encryption at rest for stored data on our provider infrastructure. Access to production systems is restricted, logged, and requires multi-factor authentication.
No system is perfectly secure. If we ever discover a breach that materially affects your information, we will notify you promptly as required by applicable law.
We retain your account information for as long as your account is active. When you delete your account, we permanently remove your account, child profiles, sleep logs, and generated stories from our production databases within 30 days.
Backups and logs may retain residual copies for up to 90 additional days before being overwritten in the ordinary course. Certain records (e.g., subscription transaction records) may be retained longer where required by tax, accounting, or legal obligations.
Depending on where you live, you may have rights under laws such as the EU/UK GDPR, California Consumer Privacy Act (CCPA), and similar laws, including the right to:
You can exercise most of these rights directly from within the App (Profile → Account Details), or by writing to us at nightlystoriesapp@gmail.com. We do not discriminate against users for exercising their privacy rights.
Nightly Stories operates globally. Depending on where you are, your information may be processed in countries other than your own, including the United States. Where required by law, we rely on appropriate transfer mechanisms — such as the European Commission's Standard Contractual Clauses — to protect your information during international transfers.
Cookies are small text files that a website places on your computer or mobile device when you visit it. They're widely used to make sites work more efficiently and to remember your preferences between visits.
The Nightly Stories mobile app does not use browser cookies. Our website at nightlystories.app uses only strictly necessary storage — for example, to remember your accessibility preferences and to keep your session working. We do not use advertising cookies, cross-site tracking cookies, or third-party analytics cookies on the website.
Every modern browser lets you control cookies through its settings — you can block all cookies, delete existing ones, or ask to be prompted before one is stored. Blocking essential cookies may cause parts of the website to stop working correctly.
The California Online Privacy Protection Act (CalOPPA) applies to any commercial site that collects personal information from California residents. To comply with CalOPPA, we agree to the following:
The CAN-SPAM Act sets the rules for commercial email in the United States. We use email to communicate with you about your account, subscription, and service updates — not for unsolicited marketing. To comply with CAN-SPAM, we agree to:
If you'd like to stop receiving marketing emails from us, click the unsubscribe link at the bottom of any such email, or write to nightlystoriesapp@gmail.com. We'll remove you from all marketing lists promptly. Note that you'll still receive essential account-related messages (e.g., subscription confirmations, security notices).
We may update this Policy from time to time. If we make material changes, we will notify you through the App or by email before the changes take effect, and update the "Last updated" date at the top of this page. Continued use of the Service after the effective date means you accept the updated Policy.
Questions, requests, or concerns? Reach the Nightly Stories team at
nightlystoriesapp@gmail.com