Privacy-first

Your Privacy is Our Priority

Pediary's privacy policy. Learn how we protect your family's health data with industry-leading security and privacy practices.

Last updated: May 2026

Your Privacy is Our Priority

Secure storage

On your device only

On your device only

Your data never leaves your phone: everything stays local, under your control.

AES-256 encryption

Bank-grade security standards protect every stored piece of data.

Never sold

We never sell or share your family's information with third parties.

Pediary is designed with privacy-first principles. Your child's health data is encrypted, never sold, and you maintain complete control over your information.

01.Information We Collect

Pediary collects only the information necessary to provide our health tracking service. All data is stored ONLY on your device:

  • Child profiles (name, date of birth, optional photo)
  • Health events (temperature, medications, symptoms, notes)
We do NOT collect accounts, email, location data, contacts or other personal information. The only data that ever leaves your device is anonymous, aggregated usage statistics (such as which features are used), collected only with your explicit prior consent and which you can turn on or off at any time in the app settings. It contains no personal or health information and cannot identify you. We use it solely to understand how the app is used and where to focus our improvement efforts.

02.How We Use Your Information

Your data is used exclusively on your device to:

  • Store and display your child's health records locally
  • Generate health reports and summaries on your device for medical visits
  • Send local medication reminders via device notifications
  • Export data in standard formats (PDF, JSON) for manual sharing

If you contact us for technical support via email, we can only help with app issues. We do not have access to your health data and you will need to manually send us screenshots or exports if necessary to resolve an issue.

03.Data Storage and Security

Local-Only Architecture:

Pediary stores ALL your data exclusively on your device. We do not use cloud infrastructure or remote servers.

  • AES-256 encryption for all locally stored health data
  • Device-only storage in app's private directory (/data/data/com.pediary.app/)
  • No transmission of personal or health data to external servers (only anonymous, aggregated usage statistics)
  • Complete control: your data never leaves your device

Your Responsibility:

Since all data is stored locally, YOU are responsible for:

  • Backing up your data (use the Export feature)
  • Data will be permanently deleted if you uninstall the app
  • We recommend regularly exporting your health records

04.Android App Permissions

The Pediary Android app requests only the permissions necessary for core functionality. Below is a complete disclosure of all permissions and why they are needed:

  • INTERNET: Used solely to send anonymous, aggregated usage statistics (e.g. which features are used), and only with your explicit prior consent, so we can understand how the app is used and where to focus our efforts. It contains no personal or health data and cannot identify you. The INTERNET permission is used for this and nothing else. You can withdraw your consent or revoke the permission at any time in the settings.
  • POST_NOTIFICATIONS: Used to send medication reminders that you explicitly set up. You can disable notifications in your device settings at any time. We do NOT send promotional or marketing notifications.
  • VIBRATE: Provides haptic feedback for medication reminder alerts. Enhances accessibility and ensures you don't miss important reminders.

Permissions We Do NOT Request:

  • Location access (we never track your location)
  • Camera or photo library (except when you explicitly choose to add a photo)
  • Contacts or phone access
  • SMS or call logs
  • Microphone
  • Bluetooth or NFC

05.Android Data Storage Details

How Your Data is Stored on Android:

  • Local Database: Health records are stored in an encrypted Room database on your device's internal storage, accessible only by the Pediary app.
  • App Data Folder: Located in the app's private directory (/data/data/com.pediary.app/), inaccessible to other apps or users without root access.
  • Uninstall Behavior: When you uninstall the app, ALL data is automatically deleted by Android. There is no way to recover this data. We strongly recommend exporting your data regularly.
  • No Recovery Possible: Since we do not store your data on remote servers, we cannot recover or restore your data if you lose your device or uninstall the app.
  • Android Auto Backup: We do NOT participate in Android's automatic backup system to ensure your sensitive health data is never stored in unencrypted Google cloud backups.

06.Data Sharing

We NEVER sell your data. In fact, we don't even have access to your data.

All data is stored only on your device. Pediary does not operate servers to store, access, or transmit your health records.

Only you control whether to share data:

How to Share Data:

  • Export Feature: export your health records in PDF or JSON format and share with healthcare providers
  • Your Choice: decide what to show to the doctor, what to send, what to share
  • No Automatic Sharing: Pediary does not automatically send data
Legal Requests: Pediary does not store your health data, so we cannot provide it to law enforcement or courts. Your data exists only on your device.

07.Your Rights and Control

You have complete control over your data:

  • Access: Export all your data at any time
  • Correction: Edit or update any health records
  • Deletion: Permanently delete specific records or your entire account
  • Portability: Export data in standard formats (JSON, PDF)
  • Consent: Opt-in/out of any optional features

08.Children's Privacy

Pediary is designed for parents to track their children's health. We comply with COPPA (Children's Online Privacy Protection Act) and similar international regulations:

  • Parent/guardian consent required for all child profiles
  • No direct marketing to children
  • No social features or public sharing of child data
  • Parental controls for all data access and sharing

09.International Compliance

Pediary complies with international privacy regulations:

  • GDPR (EU): Full compliance with data protection rights
  • CCPA (California): California residents' privacy rights respected
  • PIPEDA (Canada): Canadian privacy principles followed
  • LGPD (Brazil): Brazilian data protection compliance

10.Data Retention

Since all data is stored locally on your device:

  • Data exists as long as the app is installed on your device
  • Uninstalling the app permanently deletes ALL data
  • We have no copies, backups, or cloud storage of your data
  • Export your data regularly to maintain your personal backup
No 'account deletion' needed - simply uninstall the app. Your data doesn't exist anywhere except on your device.

11.Cookie Policy and Tracking Technologies

Pediary is committed to transparency about the technologies we use on our website (www.pediary.net).

We Do NOT Use Tracking Cookies:

Our website does NOT use tracking cookies or third-party JavaScript trackers (no Google Analytics, no Facebook Pixel). Traffic statistics are produced by our hosting provider (Aruba) from its server logs, as described below.

Technical Cookies (Strictly Necessary):

The only technology we use is a Service Worker for Progressive Web App (PWA) functionality, which caches static resources (fonts, images, CSS, JavaScript) locally in your browser to enable offline access and improve loading speed. This is considered 'strictly necessary' under GDPR and ePrivacy Directive and does not require explicit consent.

  • Purpose: Enable offline functionality and faster page loading
  • Data Stored: Static website assets (images, fonts, stylesheets, scripts)
  • Duration: Managed by your browser cache settings
  • Third-Party Data: Google Fonts are cached locally; no data is sent to Google after initial download

Browser Local Storage:

We may use browser localStorage to remember your language preference. This does not track or identify you and can be cleared from your browser settings at any time.

Why We Don't Show a Cookie Banner:

We don't show a cookie consent banner because we use no non-essential cookies — only a brief informational notice. The server-log statistics do not store or read any information on your device, so under the EU ePrivacy Directive they do not require consent.

Legal Compliance:

  • GDPR Article 6(1)(f): Legitimate interest for strictly necessary cookies
  • ePrivacy Directive Article 5(3): Exemption for technically necessary cookies
  • CCPA: No personal information collected or sold through website cookies

Your Privacy on Our Website:

When you visit www.pediary.net, our hosting provider (Aruba) keeps standard server logs and produces aggregate, anonymous statistics — the number of visits, pages viewed and the approximate country of origin. We use this only to understand our audience and where to focus our efforts. We do not build profiles and do not identify individual visitors.

Future Changes:

If in the future we introduce cookies or tracking technologies that require consent, we will update this Cookie Policy, implement an appropriate consent banner and notify users at least 30 days before the change takes effect.

GDPRCCPAPIPEDALGPDCOPPAePrivacy

Have questions?

For privacy concerns or questions:

We respond to all privacy inquiries within 72 hours.

Our Commitment:

We will notify you of any material changes to this privacy policy at least 30 days before they take effect. Your continued use of Pediary after such changes constitutes acceptance of the updated policy.