Privacy Notice

Last updated 4 August 2026

ForeverFond holds family memories on trust. Books are private by default, and your words, recordings and photographs are never used to train AI models.

Who is responsible

ForeverFond is the controller for the service. Contact hello@foreverfond.com for privacy questions or to exercise a data right. This notice is approved for a closed private beta; the operator's full legal name and service address must be published here before any public acquisition campaign. Until then, public sign-ups must remain closed.

What we collect

We collect account and sign-in details; the stories, names, edits, invitations and book settings you choose to provide; voice recordings and transcripts; photographs, screenshots, voicemail and their necessary file metadata; email replies sent into a Book; payment and transaction references supplied by Stripe; and limited device, security and reliability logs. Family content may contain personal data about people who do not have an account.

Why we use it

We process account and Book data to provide the service and fulfil our contract with you. We process a recording when you deliberately start or upload it so that we can store it, transcribe it and shape a draft for your review. We use limited logs and anti-abuse signals for our legitimate interests in keeping the private service secure and reliable. We keep payment records where required for tax, fraud prevention and legal claims. We do not make decisions that have legal or similarly significant effects about you.

AI processing

Your supplied material is sent only as needed to contracted AI providers to transcribe audio, shape draft prose, arrange kept stories or make editorial suggestions. AI output is a draft: nothing becomes kept Book content until a person reviews and accepts it. We contract providers as processors where applicable and do not permit ForeverFond family content to be used to train general AI models. Do not use ForeverFond for emergency, medical, legal or other high-stakes decisions.

Who receives data

We use service providers for hosting and databases, private object storage, authentication and deployment, AI routing and models, email delivery, background jobs, payments, error monitoring and analytics. Current core providers include Vercel, Neon, Cloudflare, Resend, Stripe, Trigger.dev, OpenAI and Anthropic. They receive only the data needed for their role. We may disclose information where law requires it or to protect users and the service. We do not sell family content or personal data.

Family sharing

A Book is visible only to authorised members and to people using an active private sharing or unveiling link. Initiators control invitations and may see who contributed. Tell invitees what the Book is for, and only upload another person's recording, message or photograph when you have a lawful basis and the right to do so. Shared image derivatives are stripped of EXIF and location metadata; original files remain private.

Retention and deletion

Book text and source files remain while the account or Book is active so the keepsake can be revised and re-exported. Original voice recordings are retained for active accounts as part of the keepsake source. After 24 months without account activity, we will email before moving recordings to restricted archive storage; you may delete them instead. A deletion request removes online data subject to a short recovery window and legal record duties. Rolling backups expire within 35 days, so deletion is fully propagated through retained backups no later than 35 days after the online deletion. You may ask for immediate recording deletion at any time.

International transfers

Providers may process data in the United States and other countries. Where EEA or UK data is transferred to a country without an adequacy decision, we use an approved safeguard such as the European Commission's Standard Contractual Clauses or the UK transfer mechanism, together with appropriate technical measures where required.

Your choices and rights

Depending on where you live, you may ask to access, correct, export, restrict, object to or delete your personal data, and may withdraw consent for future recording or AI processing. Email hello@foreverfond.com; we may verify identity and aim to respond within one month where GDPR applies. You can also complain to your local data protection authority. Withdrawing consent does not make earlier lawful processing unlawful.

Security and incidents

We use access controls, private storage, short-lived signed links, transport encryption, backups and least-privilege service credentials. No online system is perfectly secure. If a breach is likely to create a high risk to you, we will notify affected people and regulators as required.

Children

ForeverFond is for adults. Do not create an account if you are under 18. Adults may include childhood memories or photographs only when they have the right to do so and should avoid unnecessary sensitive detail about children.

Changes and contact

We will update this notice when uses or providers materially change and will bring significant changes to account holders' attention before the new use begins. Questions, rights requests and privacy complaints can be sent to hello@foreverfond.com.

Back to ForeverFond