LittleWonder
HomeWonder LibraryCommunityPricing
LittleWonder
HomeWonder LibraryCommunityPricing

LittleWonder

Privacy Policy

How LittleWonder handles photos, accounts, and story data

Last updated: September 26, 2026 · version privacy-child-photo-2026-09-26

Children's information & who may use LittleWonder

LittleWonder is designed for parents and other authorized adult caregivers, not for children to create or manage accounts on their own. You must be an adult and, when you upload a child's photo or name, you must be that child's parent or legal guardian (or otherwise have authority to provide the photo and name for this purpose).

We do not knowingly allow children under 13 (US) / under 14 (Korea) to create accounts or upload photos themselves. We collect account and payment information from the adult account holder.

What we collect (child-related)

Child given name (first name / nickname used in the story) for story personalization only.

Child photo (face photo you upload) for identity likeness in illustrations and quality & safety checks.

Derived story art (personalized page images) to deliver and play the story you purchased or created.

Consent records (timestamp, locale, policy version/hash, purpose) to prove notice and consent and for audit.

Technical metadata such as file type and processing status (EXIF/GPS are stripped).

We do not collect the child's voice. We do not build or store faceprints, facial geometry templates, or biometric embedding databases.

How we use child photos

Generate personalized storybook images in which the child is the main character.

Run automated quality / likeness / safety checks needed to deliver that service.

Store private media so you can re-use a verified photo and play completed stories.

Respond to support, security, legal, and deletion requests.

We do not use child photos or names for advertising, marketing lookalikes, model training by LittleWonder, or sale/share of personal information.

Sharing a completed story at your direction

Sharing is off by default. An adult account holder may create a private bearer link for one selected completed story version. Anyone who has the link can watch that story without signing in.

The shared story may include its title, the child's name in dialogue or subtitles, personalized illustrations, adult narration, music, sound effects, and motion. Its link preview may show a personalized cover containing the child's likeness. Original uploaded photos, original adult voice recordings, internal generation materials, and other story versions are not shared.

You may stop sharing or create a new link. This blocks later page and media requests through the old link, and deleting the story also revokes it. Sharing has no automatic expiration, so you must stop it when you no longer want the link to work.

LittleWonder cannot recall screenshots, downloads, saved copies, or messenger previews that a recipient or service already stored. This user-directed delivery is separate from sharing personal information for behavioral advertising, which LittleWonder does not do.

AI processing & service providers (processors)

To provide the service we use processors acting on our instructions, including OpenAI (vision validation, image generation, automated judges; United States API), Cloudflare (Worker compute, R2 storage), Supabase (auth and database), Stripe (adult payments only), ElevenLabs (adult narrator voice only if you opt in), and Resend (transactional email to the adult).

These providers process data to provide LittleWonder, not to sell your data to advertisers.

International transfers (including Korea → US/other): Child photo and name may be processed in the United States and other countries where our processors operate, as needed to perform the contract (create and deliver your personalized story) and under our processor arrangements. Details of items, countries, purposes, and retention are listed in this Policy.

We do not use a separate optional “opt out of OpenAI” toggle for the essential generation path — that path is required to deliver personalization.

Retention (child media classes)

Replaced / orphan original photo: delete promptly after replacement or orphan detection.

Failed upload / rejected validation: do not keep as a reusable character asset; purge promptly.

Generation candidates / temporary anchors: short TTL; purge after success/failure window.

Active character photo: until you replace/delete the character or close the account.

Completed paid story pages: while your account retains the story; after soft-delete, hard purge (target 30 days after soft-delete unless legal hold).

Consent / audit events: for the life of the account relationship plus limited legal retention.

Abuse / CSAM review holds: as required by law / vendor safety processes — may override “delete immediately” claims.

We do not keep child photos indefinitely “just in case.” We do not promise “zero storage forever” or “never retained even for safety review.”

Deletion & requests

You may delete a character/photo or a story in-product where available. Character photo deletion purges associated private originals as engineered; completed purchased stories are not mass-deleted solely because a source photo was replaced.

Account deletion / privacy requests: contact hello@littlewonder.io with subject “Privacy request”. We will process access/deletion requests for the adult account holder regarding data we hold, including child data they submitted, subject to law and fraud/security limits.

No sale / no training / no marketing re-use

We do not sell personal information and do not share it for cross-context behavioral advertising.

We do not use child photos or likenesses to train LittleWonder models, ads, or public demos without a separate, explicit program (none at launch).

We require API providers’ no-training-on-API-data posture for OpenAI API business use; ops must keep DPA / store:false / ZDR settings verified.

Sensitive / biometric note

We process photographs. We do not create or store biometric templates (face geometry embeddings) for identification databases. If that changes, we will update this Policy and obtain any additional consents required.

Child safety

Report safety concerns or unlawful content to our support email. We cooperate with lawful requests and maintain procedures for severe abuse reports required by platform and legal obligations.

We cannot truthfully promise that every temporary safety review copy is instantly and forever erased in every jurisdiction; where law requires limited retention for child-safety reports, that exception applies.

Privacy / data requests: hello@littlewonder.io

View Terms of Service

LittleWonder

© 2026 · A new bit of magic every night

TermsPrivacyChild safetySupport