Privacy Policy
Embrace Pregnancy — The 2-in-1 of Pregnancy An app by Embrace Life Technologies S.P.A. Società Benefit
As of: March 2026
1. Data Controller
Embrace Life Technologies S.P.A. Società Benefit Bozner Str. 5B, 39044 Neumarkt, Italy
Email: [email protected] Website: https://embrace-pregnancy.app
2. Overview: Our Data Protection Principles
The protection of your personal data is of utmost importance to us. The Embrace Pregnancy app is designed so that as little personal data as possible leaves your device. Nearly all data you enter in the app — your name, your due date, diary entries, photos, and your chat history — is stored exclusively on your device and encrypted with the industry-standard AES-256. It does not leave your device.
Only when you actively use the AI companion feature or the read-aloud feature is data transmitted for that specific purpose. Details can be found in the sections below.
3. Locally Stored Data (remains on your device)
The following data is stored exclusively on your device and is never automatically transmitted to our servers or third parties:
| Data Category | Specific Content |
|---|---|
| User Profile | Your first name, estimated due date, selected language, display setting (light/dark mode) |
| Diary | Your personal text entries for the journal prompts in the app |
| Bookmarks | Chapters and sections of the companion book you have saved |
| Baby Family Tree | Names of family members, baby names, gender (optional), ultrasound photo (optional), pregnancy test photo (optional) |
| Chat History | All saved messages from your conversation with the AI companion Verena |
Encryption
All of the above data is encrypted with AES-256-GCM (Web Crypto API) before being stored on your device. Photo data is also stored in encrypted form. The encryption key never leaves your device.
Legal basis: Art. 6(1)(b) GDPR (performance of a contract / use of app features)
Data Export (voluntary, user-controlled)
You can export your data at any time as a JSON file to your device. This export file is unencrypted — you are responsible for its safe storage. There is no automatic cloud sync and no cross-device synchronisation.
4. Data Transmitted When Actively Using Certain Features
4.1 AI Companion (Verena)
When you use the AI companion Verena, the following data is transmitted to our servers and from there to our AI service provider:
| Data Point | Description |
|---|---|
| Your message text | The text you enter in the chat function |
| Conversation history | The previous messages of the current chat session (maximum the last 100 messages) |
| Pregnancy week | An anonymous number (e.g., “22”), calculated based on the locally stored due date. The due date itself is not transmitted |
No identifying data is transmitted — neither your name, nor your due date, nor a device ID or email address.
Data flow:
App on your device -> Embrace LifeTechnologies server (Bolzano, IT) -> Anthropic (AI provider)
Retention period: The proxy server does not store your chat content. Messages are processed only for the duration of the request and are not logged afterwards. For processing by Anthropic, their own privacy policy applies (see Section 6).
The chat history on your device is retained until you manually delete it. You can delete it at any time using the reset button in the app.
Legal basis: Art. 6(1)(b) GDPR (provision of the requested feature)
4.2 Read-Aloud Feature (Text-to-Speech)
When you activate the read-aloud feature, the corresponding book text section (max. 5,000 characters) is transmitted for speech synthesis. This consists exclusively of companion book content — no personal data.
Data flow:
App -> Embrace LifeTechnologies server (Bolzano, IT) -> OpenAI (TTS service)
The generated audio file is streamed back and not stored on the server.
Legal basis: Art. 6(1)(b) GDPR (provision of the requested feature)
5. Technical Safeguards
| Measure | Description |
|---|---|
| Access control | The proxy server only accepts requests with a valid API key |
| Rate limiting | Maximum 5 chat requests and 5 read-aloud requests per minute per IP address |
| Security headers | Industry-standard HTTP security headers (HSTS, CSP, XSS protection) |
| No server-side logging | Chat and TTS content is not logged on the proxy server |
| No cookies | The app does not set any tracking or analytics cookies |
| No analytics | No analytics or tracking services (Google Analytics, Mixpanel, etc.) are used |
| No account required | No registration or login is required to use the app |
6. Third-Party Providers
6.1 Anthropic (AI Companion)
For the AI companion feature, we work with Anthropic, PBC, 548 Market St, PMB 90375, San Francisco, CA 94104, USA.
Anthropic processes your chat content to generate AI responses. For the transfer to the USA, we rely on the Standard Contractual Clauses offered by Anthropic pursuant to Art. 46(2)(c) GDPR.
More information: Anthropic Privacy Policy
6.2 OpenAI (Read-Aloud Feature)
For the read-aloud feature, we use the text-to-speech service of OpenAI, LLC, 3180 18th Street, San Francisco, CA 94110, USA.
OpenAI processes exclusively the read-aloud book text sections (no personal user data). For the transfer to the USA, Standard Contractual Clauses pursuant to Art. 46(2)(c) GDPR are used.
More information: OpenAI Privacy Policy
6.3 Cloudflare (Network Infrastructure)
Our proxy server is accessible via a Cloudflare Tunnel. In this process, Cloudflare, Inc., 101 Townsend St, San Francisco, CA 94107, USA, processes connection metadata (in particular IP addresses) to secure network access.
Cloudflare does not have access to the content of your messages.
More information: Cloudflare Privacy Policy
7. Your Rights (Data Subject Rights Under GDPR)
You have the following rights at any time:
- Access (Art. 15 GDPR): You can request information about the data stored about you.
- Rectification (Art. 16 GDPR): You can have incorrect data corrected.
- Erasure (Art. 17 GDPR): You can request the deletion of your data. Since your data is stored exclusively on your device, you can delete it at any time directly in the app (Settings -> Reset data).
- Restriction of processing (Art. 18 GDPR)
- Data portability (Art. 20 GDPR): Using the app’s export function, you can download your data as a structured, machine-readable file.
- Objection (Art. 21 GDPR)
- Complaint to the competent data protection supervisory authority: Garante per la protezione dei dati personali (Italy)
For enquiries, please contact: [email protected]
8. Data of Minors
The app is intended for adult users. We do not knowingly collect data from individuals under the age of 18.
9. Changes to This Privacy Policy
We reserve the right to amend this privacy policy as needed. The current version is always available on our website. The date of the last update is indicated at the beginning of this document.
10. Contact
For data protection enquiries, please contact:
Embrace Life Technologies S.P.A. Società Benefit Email: [email protected] Bozner Str. 5B, 39044 Neumarkt, Italy
This privacy policy was prepared based on a technical analysis of the app’s source code (as of March 2026). Responsible: Embrace Life Technologies S.P.A. Società Benefit.