Privacy Policy
Last updated: August 7, 2026
Introduction
Jaenworld ("we", "us", or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the Jaen Babymon app (on phones, tablets and companion watches) and the jaenworld.com web services.
Jaen Babymon is built local-first: your baby's audio and video are streamed directly between your own devices and are never stored on β and on your home network never even pass through β our servers.
We are based in Estonia and comply with the EU General Data Protection Regulation (GDPR) and Estonian data protection laws.
Camera & Microphone β What Never Leaves Your Devices
The app's core job is streaming video and audio from the device at the crib (Baby Unit) to your device (Parent Unit). Here is exactly what happens with that data:
- Direct, peer-to-peer: on your Wi-Fi or hotspot, the stream travels straight from the Baby device to the Parent device β it does not touch the internet or our servers at all.
- End-to-end encrypted: the stream is protected with WebRTC DTLS-SRTP encryption between your two devices. No one else β including us β can watch or listen.
- Never recorded by us: we do not receive, store, or have any ability to access your audio or video. There is no cloud recording.
- Analysis stays on-device: sound-level and motion analysis run entirely on the Baby device. Only derived events (e.g. "sustained loud sound") are sent to the Parent device β never raw audio or video.
Remote monitoring (paid tiers):when you monitor away from home, the encrypted stream is forwarded through our relay servers (signaling relay and TURN media relay). The relay is "blind": it forwards the already-encrypted data byte-for-byte and cannot decrypt it. Nothing is recorded or stored.
Information We Collect
1. Account Information
- Email address and name (provided when you create your account on jaenworld.com)
- Password (stored only as a salted hash β we never see the plain password)
- Subscription tier and license status (used to enable your plan's features; the app checks these periodically and caches the result for a few days of offline use)
2. App Usage Data
- A random per-install app identifier β generated on the device, not a hardware ID; it carries no personal information and resets if you reinstall
- Non-identifying usage events while signed in (e.g. screen views, an alarm fired, connection lost, battery-low events), with app version and platform
- Update checks (platform + current version, so we can offer the right update)
- We use no third-party analytics, crash-reporting, or advertising SDKs
3. Feedback Reports (only when you send one)
- Your message, the app version and platform, your device model name and OS version
- Optionally a screenshot of your current screen β you see the exact image first, can annotate it, and can untick it; it is uploaded as shown, without redaction
- Technical diagnostics attached to the report
4. Remote-Sharing Metadata (paid tiers, only if you use remote access)
- Your device's public encryption key and crib-room membership (who may connect to which crib) β public routing material only, never private keys
- Invited caregiver contacts (email, name) that you explicitly add
5. Cloud Sync (optional β off unless you turn it on)
Cloud Sync is part of a paid plan and is off by default, for every account. It starts only when you turn it on yourself while signed in β either by answering the first-run prompt, by using the switch in Settings, or by creating or accepting a co-parent share (sharing cannot work without it, and both of those screens say so before you press the button). Paying for a subscription does not switch it on by itself. It exists so your records reach your own other devices and any co-parent you invite. When it is on, these are uploaded to our servers:
- Your care log β sleeps, feeds, nappies, pumping sessions, medication, growth entries and the other events you record, with their times, anything you typed into a note, and medicine names and doses
- Your baby's profile β name, birth date, due date, gender if you set one, and the avatar photo if you choose one
- With each entry, who logged it β the caregiver name you typed, if you named one β and an id for the phone that wrote it, so two phones merge the same day instead of duplicating it
Camera and microphone streams are never uploaded β this is the recorded log and profile only. Turning Cloud Sync off stops further uploads but does not erase what is already in your account: in the app, open the baby (tap their name at the top of the screen, then Edit) and choose βRemoveβ, then open the baby switcher and choose βDelete permanentlyβ β that erases the account copy too. Or delete the whole account at jaenworld.com/delete-account. See βData Retention & Account Deletionβ below.
What we do NOT collect
- No audio or video recordings β ever
- No device location β the app never requests GPS or location permission. (Visits to this website resolve an approximate city from a shortened IP address; that is described under βCookies and Trackingβ below, and it is not tied to your account.)
- No address book access
- No advertising identifiers, no ads, no cross-app tracking
- Your care log (sleep, feeding, history) stays on your device unless you turn on Cloud Sync β see section 5 above and βData That Stays On Your Deviceβ below
Data That Stays On Your Device
The app keeps your monitoring history, care log (sleep and feeding), and preferences in a local database on your device, encrypted at rest with AES-256 (SQLCipher). Pairing secrets and sign-in tokens live in your device's secure keychain/keystore. Pairing secrets, sign-in tokens and your monitoring history are never uploaded to us. Your care log and baby profile are uploaded only if you turn on Cloud Sync, which is off by default and available on a paid plan β see section 5 above for exactly what that sends. You can export or erase all of it from the app's settings, and the local copy is removed when you uninstall the app.
How We Use Your Information
We use your information to:
- Authenticate you and operate your account and subscription
- Enable remote monitoring on paid tiers (routing your encrypted stream β never reading it)
- Understand which features are used and fix problems (usage events and feedback reports)
- Offer you the right app updates
- Provide customer support
- Comply with legal obligations
We do not sell your data, we show no ads, and we do not use your data for advertising of any kind.
Data Storage and Security
Storage Location
Account data is stored on our servers within the European Union. All traffic between the app and our servers uses TLS encryption; media between your devices uses end-to-end DTLS-SRTP.
Security Measures
- End-to-end encryption for all baby audio/video
- Per-pairing keys β no shared or hardcoded secrets between households
- Passwords stored as salted hashes; optional multi-factor authentication (TOTP)
- Sign-in tokens kept in the platform keychain/keystore, unlockable with Face ID / fingerprint
- Local history encrypted at rest (AES-256)
Data Retention & Account Deletion
We retain your account data for as long as your account is active. You can delete your account either directly in the app (Settings βΈ Account βΈ Delete account) or on the web. Deletion is scheduled with a 7-day grace period β sign-in is blocked immediately, and a cancellation link is emailed to you in case you change your mind. After the grace period your account data is permanently erased.
Your Rights Under GDPR
As an EU-based company, we ensure you have the following rights:
- Right to Access: Request a copy of your personal data
- Right to Rectification: Correct inaccurate or incomplete data
- Right to Erasure: Request deletion of your personal data
- Right to Restriction: Limit how we use your data
- Right to Data Portability: Receive your data in a machine-readable format
- Right to Object: Opt-out of certain data processing activities
- Right to Withdraw Consent: Revoke consent for data processing at any time
To exercise any of these rights, contact us at the address configured for this deployment.
Data Sharing and Third Parties
We do not sell your personal data, and we do not share it with analytics or advertising companies. Your information is shared only with:
- Infrastructure Providers: EU-based server hosting and email delivery needed to run the service (bound by GDPR-compliant agreements)
- Sign-In Location Check: when you sign in, we send the IP address you connected from to ipapi.co, which returns an approximate city and country. We use it to notice a sign-in from somewhere unfamiliar and warn you. They receive the IP address and nothing else β no account details, no data about your baby. If the lookup fails or times out we simply record the location as unknown and carry on.
- Push Notification Delivery: if you use push alerts, Google (Firebase Cloud Messaging) and, on iPhone and iPad, Apple (Apple Push Notification service)deliver the notification to your device. They receive your device's push registration token, which kind of alert it was, an event identifier, a timestamp, an identifier for the crib device, and the short notification text β which we compose on our own servers from the alert type, so it never contains anything you typed. They do notreceive audio, video, your baby's name, your room labels, or any sound or movement measurement. Both act as processors on our instructions, and transfers outside the EU rely on the European Commission's Standard Contractual Clauses. You can turn push alerts off in the app at any time, which asks our servers to delete your token; signing out deletes it too.
- Connection Set-Up Away From Home: when you watch from outside your home, your devices ask public STUN servers operated by Google what your connection looks like from the internet, so the two phones can find a route to each other. Those servers see your device's IP address and nothing else β no audio, no video, no account details, and no data about your baby. They are not used at all when both devices are on the same Wi-Fi, where the phones reach each other directly. If a direct route cannot be found, the encrypted stream is relayed through our own TURN server, which cannot decrypt it and does not store it.
- Legal Requirements: When required by law or to protect our rights
- Business Transfers: In case of merger, acquisition, or sale of assets (you will be notified)
Cookies and Tracking
The jaenworld.com website uses cookies for sign-in only β there is no advertising cookie and no preference cookie. For detailed information, see our Cookie Policy. The Jaen Babymon app itself uses no cookies and no tracking technologies.
Website audience measurement. We count visits to this website so we can see which pages are read. To do that we record the page path, the referring page, how long the page was open, your browser and operating system, and a shortened form of your IP address (the last part is removed), from which we resolve an approximate country and city.
We do not store anything on your device to do this β no analytics cookie, no identifier in local storage, nothing to consent to. Visits are grouped using a value we calculate on our own server from the shortened IP and browser, mixed with a secret that changes every day, so that identifier cannot be carried from one day to the next. There are no third-party analytics, and this data is never combined with your account.
To be exact about what that does and does not give you: the identifier expires nightly, but the record it sits in still holds the shortened IP, the browser and the operating system for as long as we keep it. Somebody with access to our database could therefore still group those records by hand. We delete the whole record after 90 days, we do not do that grouping, and we would rather say so plainly than claim an anonymity the data does not have.
Children's Privacy
Jaen Babymon is made for parents and caregivers β accounts may only be created and operated by adults. The service is not intended for users under 16 years of age, and we do not knowingly collect personal information from children under 16.
Although the app monitors an infant, the baby's audio and video never reach our servers on the local path and are never stored by us (see "Camera & Microphone" above). We hold no profile of your child; any care-log entries you keep about your baby stay encrypted on your own device.
International Data Transfers
Your data is primarily stored within the EU. If we transfer data outside the EU, we ensure adequate protection through:
- EU Standard Contractual Clauses (SCCs)
- Adequacy decisions by the European Commission
- Other legally approved safeguards
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by:
- Email notification to your registered email address
- Prominent notice on our website and application
- In-app notification
Your continued use of Jaen Babymon after changes constitutes acceptance of the updated policy.
Contact Us
If you have questions about this Privacy Policy or wish to exercise your rights, contact us:
Email: our contact page
Data Protection Officer: reachable via the email above
Company: Jaenworld
Location: Estonia, European Union
Response time: We aim to respond to all privacy requests within 30 days as required by GDPR.