Privacy Policy
Last updated: September 27, 2026
In short
- Without an account, everything you log is stored only on your iPhone. Nothing reaches us.
- With an account, we store your baby's data in the cloud (Google Firebase, in Madrid, Spain) so it isn't lost and you can share it with your partner.
- No ads, no analytics tools, and we never sell or give your data to anyone.
- You can delete your account and all its data from the app, in Settings, at any time.
1. Who is responsible
Gotita is developed by Jaime Gutiérrez Martín, an individual based in Spain ("we"). For any privacy question, write to hola@gotita.app.
2. Using Gotita without an account
You can use Gotita without creating an account. In that case, what you log (feeds, diapers, sleep, measurements, medicines, meals and your baby's details) is stored only on your iPhone and its widgets. It is not sent to our servers and we have no access to it. If you delete the app, it's deleted.
iCloud backups of your iPhone may include this data; they are handled by Apple under its own privacy policy.
3. What data we process if you create an account
Account data
- An internal user identifier.
- Your email and, if you provide it, your name. If you sign in with Apple and hide your email, we receive an Apple relay address.
- If you sign up with email, your password is stored encrypted by Google Firebase; we cannot see it.
- If you sign in with Google, Google also shares your profile photo. Gotita doesn't use it and removes it from your account when you sign in.
Your baby's data
- Name, date of birth and, if you choose, whether they're a girl or a boy (only for growth charts).
- What you log: bottle and breast feeds, diapers, sleep, weight, length and head circumference, vitamin D and medicines, meals, foods tried and possible reactions, and any notes you write.
- Who logged each entry, when you share your baby with someone else.
Gotita+ purchases
Purchases are processed by Apple; we don't receive your payment details. To know whether you have Gotita+ we use RevenueCat, which receives an identifier (anonymous or, if you have an account, your Gotita user ID), your purchases and technical data such as store country and device model. RevenueCat does not receive your baby's data.
4. Why we use it and our legal basis
| Purpose | Legal basis (GDPR) |
|---|---|
| Creating and maintaining your account, storing data in the cloud and syncing it across your devices. | Performance of a contract (Art. 6(1)(b)). |
| Storing your baby's health data in the cloud. | Your explicit consent (Art. 9(2)(a)), given when you create the account. |
| Sharing your baby with the people you invite. | Performance of a contract and your consent. |
| Managing Gotita+ and purchases. | Performance of a contract (Art. 6(1)(b)). |
| Answering your messages. | Your consent and our legitimate interest in helping you (Art. 6(1)(a) and 6(1)(f)). |
| Complying with legal obligations (e.g. tax). | Legal obligation (Art. 6(1)(c)). |
We make no automated decisions that affect you and do no profiling. We don't use your data for advertising or to train artificial intelligence models.
5. Who we share it with
Only with the providers Gotita needs to work, acting as processors under contract:
- Google (Firebase Authentication and Cloud Firestore): sign-in and database. Database data is stored in the europe-southwest1 region (Madrid, Spain).
- RevenueCat, Inc. (USA): Gotita+ subscription management.
- Apple: Sign in with Apple and App Store payments, under its own privacy policy.
When you share a baby with someone else (for example, your partner) using an invite code, that person can see and log all of that baby's data, and see your name.
We don't sell your data or give it to third parties, except where required by law.
6. Transfers outside the EU
Some providers may process data outside the European Economic Area (for example, Firebase Authentication or RevenueCat in the USA). Such transfers rely on the EU-U.S. Data Privacy Framework and/or the Standard Contractual Clauses approved by the European Commission.
7. How long we keep it
- For as long as you have an account.
- If you delete your account in the app (Settings › Delete account), your account and the cloud data of the babies you created are deleted. If someone else created a baby, you just leave it and its data stays with the person who created it.
- When deleting, you can choose to keep a copy on your iPhone; that copy never reaches us.
- Purchase records may be kept as long as the law requires.
8. Your rights
You can ask to access, correct or delete your data, restrict or object to its processing, receive it in a portable format, and withdraw your consent at any time. Many of these you can do directly in the app (edit or delete entries, or delete your account). For anything else, write to hola@gotita.app.
If you believe we haven't handled your data properly, you can complain to the Spanish Data Protection Agency (aepd.es) or your local supervisory authority.
9. Children
Gotita is meant to be used by adult parents and caregivers. You enter your baby's data as their legal guardian or with their guardian's permission. Gotita is not directed at children under 14.
10. Security
Data travels encrypted (HTTPS/TLS) and is stored encrypted on Google's servers. Access rules prevent anyone who isn't a member of a baby from reading or writing its data.
11. Other iPhone features
- Notifications: reminders (feeds, medicines, allergens, weekly summary) are scheduled on your iPhone and don't go through our servers.
- Siri and Shortcuts: voice requests are processed by Apple under its privacy policy.
- PDF report: created on your iPhone. Only the people you choose to share it with receive it.
12. This website
gotita.app uses no cookies or analytics tools, and serves its fonts from its own server. It is hosted on Firebase Hosting (Google), which logs technical data such as IP addresses to serve the page and protect it from abuse.
13. Changes
If we change this policy, we'll update the date above and, if the change is significant, let you know in the app.