Privacy Policy
Privacy Policy
Last updated August 1, 2026
Bean is a private family organizer for expecting and new parents. This policy explains the information Bean processes when you use the mobile app or public website.
Information Bean handles
- Your email address, name, account identifier, and household membership.
- Household details such as parent names, a baby nickname, due date, and birthday.
- Captures, log entries, assistant questions, saved links, tags, notes, and photos you choose to upload.
- If you enable notifications, a device installation identifier, push token, timezone, reminder preferences, and delivery status.
- Technical request information needed for security, reliability, and abuse prevention. Bean does not store raw IP addresses or user-agent strings in its Better Auth session records. Authentication rate limits use keyed pseudonymous buckets that are pruned after their short abuse-control window.
- If you choose to share anonymous usage data, a random analytics installation identifier, app version, and coarse interactions such as opening Bean, completing an onboarding step, or successfully creating a capture. Analytics never includes names, dates, capture or chat text, symptoms, photos, files, notification content, or household and account identifiers.
- On the public website, cookie-free aggregate page views, App Store link clicks, and validated campaign codes from the page URL. Bean creates no persistent web analytics identifier.
How Bean uses information
Bean uses this information only to authenticate you, provide and sync your private household, organize captures, answer questions, save resources, prevent abuse, and maintain and improve the service, and send notifications you enable. Bean uses opted-in anonymous mobile usage data and cookie-free aggregate website activity to understand onboarding, campaign performance, and feature reliability. Bean does not sell personal information, show advertising, or use third-party advertising trackers.
AI processing
To organize captures, tag links, and answer questions, Bean sends the text you provide and relevant household context to Anthropic’s commercial API. Bean does not send saved photos or microphone audio to Anthropic. Anthropic states that commercial API inputs and outputs are not used to train its models by default and are normally retained for up to 30 days, subject to its legal and safety obligations.
Voice and photos
If you use voice input, your device’s speech-recognition service may process audio to produce editable text. Bean does not save the recording. Photos are uploaded only when you choose one and are stored privately for your household.
Service providers and storage
Bean stores its self-hosted Better Auth identities and private household data in separate, access-restricted Neon/Postgres roles. During the staged app migration, Clerk continues to authenticate older approved app versions. Resend delivers email sign-in codes, and Apple or Google processes sign-in when you choose that provider. Bean also relies on Vercel for hosting and file storage, Anthropic for AI features, Apple, Google, or the device platform for speech recognition, and Expo/EAS for building and delivering the app and routing enabled push notifications through Apple Push Notification service or Firebase Cloud Messaging. For people who opt in to anonymous mobile usage data, and for cookie-free aggregate website activity, Bean also uses PostHog as a product analytics service provider. Events go first to Bean’s server, which accepts only an approved list of event names and coarse properties before forwarding them without account, household, or health information. These providers process information only to supply their services to Bean.
Analytics choice and retention
Mobile usage analytics is optional and off until you choose it. You can change that choice in Settings. Turning it off deletes the analytics identifier from your device and stops future mobile events. Previously collected anonymous events and aggregate website events are retained for no more than 12 months and are not linked back to your Bean account.
Retention and deletion
Email verification codes expire after 10 minutes and are stored only in hashed form. Better Auth sessions expire after 30 days unless you sign out or delete the account sooner. Short-lived pseudonymous authentication rate-limit buckets are designed to be pruned after one day. Bean retains household information while the household or an account remains active. You can permanently delete your account from Settings in the app. Deletion removes your sign-in and items attributed to you. Shared household details and items added by another member remain for that member. If you are the last member, Bean deletes the household and its stored files. Provider backups and security logs may take a limited period to expire.
Security and children
Bean uses authenticated household access and encrypted network connections. No system is perfectly secure. Bean is intended for adults and is not directed to children under 13.
Contact
For privacy questions or deletion help, email support@ourbean.app.