★ privacy ★
a short privacy notice.
written for actual humans. last reviewed 2026-05.
what we collect
- · account info you give us (email, display name, hashed password)
- · a 30-second voice sample per reader — encrypted at rest, never used for training shared models
- · the listener’s name and (optionally) age
- · session metadata: which book, which reader, how long. used to render your activity dashboard.
- · billing data via stripe (we never see your full card number)
what we don’t collect
- · any audio from the listener (the child)
- · any voice sample for anyone who didn’t sign their own consent
- · behavioral tracking. no engagement metrics. no streaks. no “your child is falling asleep 12% faster”.
- · third-party analytics or ad pixels
who we share with
- · ElevenLabs (TTS), as a subprocessor. they receive the voice sample and the book text needed to synthesize.
- · Stripe (payments).
- · Neon (database) and Amazon S3 (audio + documents).
- · nobody else. no analytics, no advertising, no “partners”.
how long we keep things
- · voice samples: while the reader is active. on revoke: deleted from our cache same minute, deleted from ElevenLabs within 24 hours.
- · consent records and audit logs: kept indefinitely. these protect you.
- · billing records: as long as our auditors require (typically 7 years).
- · session metadata: 24 months, then aggregated and the per-row records dropped.
your rights
you can revoke a reader’s consent from the reader’s portal. you can ask us to export or delete your household data by emailing bedtime@0p.studio from the address on file. we’ll do it within 30 days, or sooner if it’s urgent. for residents of the EU, the UK, California, Colorado, Connecticut, and Virginia, this paragraph is GDPR / CCPA / CDPA / CTDPA / VCDPA-equivalent.
children
we do not collect personal information about children. listeners are referred to only by a name and an age the household provides, used solely to filter the library by age-appropriateness.