Privacy Policy — Baby Plates
Last updated: September 25, 2026
Baby Plates ("the App") helps parents track their baby's first foods, reactions and allergen introductions. This policy explains what information the App handles, why, and how you control it. Short version: your baby's records live on your device, are backed up to your account only after you sign in with Apple, photos never leave your device, and we use no advertising or third-party analytics SDKs.
Who we are
Baby Plates is published by Mustafa Kendigüzel (Qora), Türkiye. Contact: support@qorai.app.
Your account (Sign in with Apple)
After setup, the App asks you to sign in with Apple. We receive your Apple user identifier and — only if you choose to share them — your name and e-mail address (Apple's "Hide My Email" works). We use these to link your records to your account so you can restore them on a new device. We do not store passwords.
We do not send marketing e-mails, and we never sell or share your address.
Information you enter
You may enter your baby's name, birth date, feeding approach, dietary framework, known allergies and family allergy history, food logs (foods tried, reactions, symptoms, notes), daily task check-ins and saved foods. This information is stored on your device and, once you are signed in, backed up to our cloud database (hosted by Convex, Inc. in the United States) so it can be restored on another device. Photos you add (baby profile, "first bite moments") are stored only on your device and are never uploaded. If you tell us in the App why you are cancelling a subscription, we store your answer with your account and use it only to improve the App. If your answer is at least 10 words in your own words, we add one month of Premium to your account for free as a thank you.
Subscriptions
Subscriptions are sold through Apple's App Store. To validate purchases and unlock features, the App uses RevenueCat, a subscription management service. RevenueCat receives a pseudonymous account identifier (a random ID generated for your account, which does not contain your name or e-mail address), the App Store purchase receipt, your device model and OS version, and the App's version — never your baby's records. Apple processes your payment under its own privacy policy. RevenueCat notifies our servers when a subscription starts, renews, is cancelled or expires, so your account shows the right status. RevenueCat's privacy policy: https://www.revenuecat.com/privacy
Product analytics
To understand which features are used, the App records a small number of first-party events (for example: setup completed, plans screen viewed, purchase completed, food logged with the reaction type) in our own database. No advertising SDKs, tracking pixels or third-party analytics services are used, and we do not track you across other apps or websites. We also record the App Store country your account uses, the App version and, only if you choose to answer, how you heard about the App and any referral code you enter. We combine this with your subscription status from RevenueCat (for example: trial started, renewed, amount paid) to see which channels bring families who find the App useful.
If you installed the App after tapping an Apple Search Ads ad, Apple's AdServices framework tells us which campaign and keyword led to the install, and the same information is shared with RevenueCat. We use it only to see which ads bring people who find the App useful. It uses no advertising identifier, needs no tracking permission, and contains no personal information.
What we do not do
- We do not sell or share personal information.
- We do not use advertising SDKs or cross-app tracking.
- We do not upload photos.
Children
The App is designed for parents and caregivers, not for use by children. The baby-related details are entered by the parent and are treated as the parent's data.
Sharing you initiate
"Share progress" and the "Pediatrician report" (PDF) create summaries that you can send through the iOS share sheet to anyone you choose. Nothing is shared unless you do it.
Data retention and deletion
- Profile › Account › Delete account deletes your account and all cloud records immediately.
- Sign out keeps records on the device but stops cloud sync.
- Profile › Reset app or uninstalling deletes everything on the device.
- Subscription records held by Apple and RevenueCat follow their retention policies; to request deletion of RevenueCat records, e-mail support@qorai.app.
Security
Data travels over TLS; your session token is stored in the iOS Keychain. Cloud records are protected by your Apple sign-in.
International transfers
Cloud records are stored in the United States (Convex). Subscription events (RevenueCat) are also processed in the United States. By signing in you consent to this transfer.
Your rights
Depending on where you live (for example under GDPR or KVKK), you may have rights to access, correct, export or delete information. Use the in-app deletion above or e-mail support@qorai.app.
Changes
We will post updates to this page and update the date above.
Contact
support@qorai.app