Privacy Policy
Last updated: pre-launch draft (under final review with counsel).
Hey Susan (“Susan,” “we,” “us”) is an AI assistant for pregnancy and new-parent life, delivered as a messaging-app chat. This policy explains what we collect, why, who processes it, and the choices you have. Plain-English summary first; detail below.
Short version
- We don't sell your data, and we don't run ad retargeting.
- What you tell Susan is used to provide the service to you — to track, remind, answer, and check in — nothing else.
- Susan is an AI assistant, not a medical service. See our medical disclaimer.
- You can delete your data at any time by emailing hi@heysusan.app.
Who we are
Hey Susan is operated by Blackswan Ventures Inc. (British Columbia, Canada), the data controller for the purposes of this policy. Contact: hi@heysusan.app.
What we collect
On the waitlist page (before you sign up):
- The email address you enter in the form.
- If you selected one, the parenting stage you are in (expecting / newborn / etc.).
- UTM parameters from the link you arrived on (so we know whether Reddit, search, or a friend sent you).
- Your browser user-agent and HTTP referer, stored alongside your waitlist row for spam investigation. Not shared.
When you use Susan (the chat assistant):
- Your messaging-app account identifier (e.g. your Telegram chat ID) and the name your account shows, so we can hold a conversation with you.
- The messages you send Susan, and her replies. (Messages you relay to your partner through HeyBeNice! are a deliberate exception — see the HeyBeNice! section below: we keep scores about them, never the text.)
- The baby- and parent-care information you choose to log — feeds, diapers, sleep, growth, milestones, medications, and similar — and the times you log them.
- Your approximate location and/or time zone, so we can show times in your local clock and surface the right regional emergency and support resources.
- Usage metadata (e.g. counts of messages and features used) to operate the service and keep costs sustainable.
HeyBeNice! (the partner-message relay)
HeyBeNice! lets you send a message that the AI rewords into a kinder version and delivers to your linked partner, always marked as coming via Susan. It is deliberately built to store as little as possible:
- We do not keep the message text. Your original message and the kinder version are processed in the moment (by our LLM provider, below) to create and deliver the rewrite, and are not stored afterward. What we keep is numbers and flags only — a kindness score and safety/category flags, with timestamps — so Susan can reflect trends back to you.
- Your partner opts in first. Before any relayed message is delivered, the receiving partner is asked once for their consent in their own chat.
- Safety screening. Every relayed message passes a safety screen first; messages indicating threats, abuse, or crisis are not relayed and are routed to support resources instead.
- Agreement records. When you accept our Terms of Service (or a partner opts in to relays), we record the acceptance — account identifier, terms version, surface, and time. These records are proof of agreement and may be retained after account deletion as part of the minimal legal records described under “How long we keep it.”
How we use it
- To provide the service — track what you log, send reminders and check-ins, and answer your questions.
- To remember your conversations — Susan keeps your chat history so she can recall things you've talked about (for example, a topic you raised earlier in the week) and follow up helpfully. This memory is used only within your own chat — or your household's, if you choose to link a family member's account — and deleting your account deletes it.
- To generate Susan's replies, your messages are processed by our LLM provider (see sub-processors below). We use the paid API tier, whose terms exclude using customer data for model training.
- To keep you safe — if a message indicates a crisis, we route you to appropriate emergency and support resources.
- To operate, debug, and improve the service. We do not sell your data or use it for third-party advertising.
Who processes your data (sub-processors)
We use a small set of vetted providers, each bound by a data-processing agreement:
- Telegram — the messaging platform Susan runs on (message transport).
- Google (Gemini / Vertex AI) — our LLM provider; your messages are processed to generate Susan's replies.
- Supabase — database hosting for your account and logged data.
- Vercel — application hosting.
- Stripe — payment processing, when paid plans launch (card details go directly to Stripe; we never store them).
How we protect it
Your data is stored in a database with row-level security enabled; application access uses a restricted service role, and the public web client cannot read or write your rows. We limit access to what is needed to run the service.
How long we keep it
We keep your account data while your account is active. When you ask us to delete it, we remove your account and associated data. Some minimal records may be retained where required for legal, security, or accounting reasons.
Your choices and rights
- Access / export — ask us for a copy of your data.
- Deletion — delete your account and all associated data at any time by emailing hi@heysusan.app.
- Correction — ask us to correct inaccurate information.
- Depending on where you live (e.g. EEA/UK, California, Canada), you may have additional rights; contact us to exercise them.
Children's privacy
Hey Susan is for parents and caregivers, who must be adults. The information you log is about your baby or child and is entered by you, the parent. We do not knowingly collect personal information directly from children.
International processing
We are based in Canada and our providers may process data in Canada, the United States, and other countries. Where required, transfers are covered by appropriate safeguards.
Changes to this policy
We'll update this page when our practices change and revise the “last updated” line above. Material changes will be communicated before they take effect.
Contact
Questions about privacy → hi@heysusan.app.