STORYKEPT

Privacy

LAST UPDATED JULY 28, 2026 · STORYKEPT IS A SERVICE OF KOS SOFTWARE, LLC

What we collect

If you join the waitlist: your email address, nothing else. If you have an account: your name and email from Google sign-in, the recordings and transcripts in your vault, the questions your family asks, and the emails (and optional phone numbers) of members you invite. That’s the complete list. No analytics trackers, no advertising pixels, no fingerprinting.

Cookies

We set only the cookies sign-in technically requires — the session that keeps you logged in. Nothing tracks you, which is why there is no cookie banner: there is nothing to consent to beyond what makes the site work.

What we do with it

We run the service — that’s the whole use. Waitlist emails get a note when StoryKept opens to new families. We never sell, rent, or share your data with advertisers or data brokers, and we never train AI models on your family’s content.

Family vaults

Recordings, transcripts, and questions inside a vault belong to the family that made them. Vaults are private: access requires sign-in, and every video is served through expiring, signed links — never public URLs. We don’t mine vault content, we don’t train AI models on it, and no machine ever writes words on behalf of the people recorded. If a family ever chooses to reimagine how someone appears — a voice, a likeness — it happens only by that person’s own separate, written consent. What they said is never touched.

Children

StoryKept accounts are created by adults. Children appear in recordings and use member access only under a parent or guardian’s vault, by that parent’s invitation and consent. We never knowingly collect information from a child directly.

Where things live

Vault data is stored on servers we run in the European Union (Hetzner, Germany), and recordings are processed on those same servers — they don’t pass through third-party AI services. Sign-in is handled by Google. If the WhatsApp channel is enabled in the future, those messages will pass through Twilio and Meta’s WhatsApp infrastructure, like any WhatsApp Business conversation — and this page will say so plainly.

How long we keep it, and your rights

Vault content stays until you delete it or close your account; encrypted backups expire within 90 days after that. Routine server logs are kept up to 90 days. You can ask us at any time to show you what we hold about you, correct it, export it, or delete it — email us and it’s handled, no forms, no friction. These rights apply to everyone, not just where GDPR or the CCPA requires them. We make no automated decisions with legal or similarly significant effects about anyone, and if you’re a California resident: we don’t sell or “share” personal information, and we will never treat you differently for exercising any of these rights.

Changes

If this policy materially changes, account holders hear about it by email or in the app before it takes effect — never silently. See also our Terms of Service.

Questions

Write to mystorykept@gmail.com. A person reads it.