Otohpia

Privacy

Your data, plainly explained

Last updated August 21, 2026

The short version

What we store: your name and email, what you share with us about your family, and the photos you add.

Who sees it: you. Your family’s data is never sold, never used for advertising, and never shared beyond the services that run Otohpia.

How to delete it: from Settings, any time. One photo, one album, or your whole account. Deleted means gone.

What we store

Your account: your name and email address, and when you accepted this policy.

Your conversations: what you share in them about your family, names, birthdays, the people who matter, the stories behind your photos. Otohpia remembers them so you never have to explain your family twice.

Your photos: the photos you add, and what’s embedded in them, like when and where they were taken. Photos our sorting rejects as screenshots or junk are not kept.

Your albums: the books we build together, their chapters, layouts, and text.

Your taste: your style choices, and which photos you keep or remove, so the curation gets better for your family.

Faces, and how we find your child in your photos

To find the person an album is about, we match one reference photo you choose across the photos you gave us. This is face recognition, the smallest kind we know how to build: it runs on your photos only, for your album only. Faces are processed by AWS and deleted immediately after the matching finishes. We keep only the reference photo itself, so future albums can start from it.

There is no shared face database. Face data from your photos, biometric data in legal terms, is never kept after an album is built, never pooled with other families, and never used to train anything.

You give this consent separately, on the screen where you pick the reference photo. You can withdraw it in Settings, which blocks any future photo analysis. Albums already built stay as they are.

Children

Most albums are about children. Everything about a child, their name, birthday, photos, and the stories you tell, is used for one purpose only: building your family’s albums. Never for training, never for analytics that could identify them, never shared with anyone.

No AI training on your data

Your conversations and your photos are not used to train AI models. If that ever changes, it will be strictly opt-in, asked plainly, and off by default.

Who processes your data

Otohpia runs on a small set of services, and your data goes to them only to do their job: Supabase stores your data in the United States, AWS matches faces and deletes them immediately, as described above, Anthropic’s Claude powers your conversations and writes your albums’ stories, Google Photos imports the photos you pick, Google’s Gemini helps judge photo quality, Vercel hosts the site, and Resend delivers our emails. None of them may use your data for their own purposes.

Otohpia’s use of information received from Google APIs follows the Google API Services User Data Policy, including its Limited Use requirements: we do not use Google Photos data to develop, improve, or train generalized AI or ML models, and we transfer it only to the service providers named in this section that process it to build your book.

Deleting your data

You can delete any photo, any album, or your entire account from Settings. Deletion is immediate and permanent: the files, the conversations, the albums, and the account itself. There is no recycle bin and no “deactivated” state we quietly keep.

A downloadable export of your data is coming. Until it ships, email us and we’ll put one together for you by hand.

Before we launch: the waitlist and survey

If you joined the waitlist, we have your name and email. If you took the survey, we have your answers, and your email only if you chose to leave one. We also record which page sent you here and how far you got through the survey, tied to a random session id, not to you. Every email we send has a one-click unsubscribe link. To have waitlist or survey data removed entirely, email us.

Contact us

Back to Otohpia