Privacy
Your family story deserves clear privacy rules.
This policy explains what Kinvella collects, how family information is used, when service providers process data, and the controls available to you.
Last updated: August 15, 2026
Privacy at a glance
- Your family workspace is private by default.
- You choose who receives family access and whether to create a revocable public story link.
- Portraits used by KinSight may be processed by Amazon Rekognition to calculate visual resemblance.
- Kinvella keeps reusable comparison results so unchanged portraits do not need to be analyzed again.
- You can download a portable export or permanently delete your Kinvella account and the family data owned by that account.
1. Information we collect
Account information
When you create an account, Kinvella collects information such as your name, username, email address, date of birth, password credentials in protected form, and starter portrait/style selections.
Family information you add
Kinvella stores the family content you choose to create, including names, relationships, dates, locations, life events, occupations, family-story details, migration information, KinCrest choices, portraits, and other information entered into a family workspace.
Billing information
Paid subscriptions are processed by Stripe. Kinvella stores Stripe customer/subscription identifiers and normalized subscription status needed to manage plan access. Payment-card entry and payment processing are handled through Stripe rather than Kinvella's own forms.
Support and technical information
We may process support messages, security/session information, request metadata, and limited technical information needed to operate, secure, diagnose, and improve the service. Anonymous public marketing pages may use Google Analytics to measure visits, page usage, traffic sources, devices, and similar site-performance information. Kinvella does not load its Google Analytics tag in authenticated family workspaces or public shared-family Story pages.
2. How we use information
We use information to provide and secure Kinvella, build the family experiences you request, save your changes, manage account access and subscriptions, send account or support communications, prevent abuse, troubleshoot problems, and improve the product.
Kinvella does not need to make your private family workspace publicly searchable in order to provide the service.
3. Private family spaces and sharing
Your family workspace is private by default. Family access can be granted to invited people with the role and permissions supported by Kinvella.
Kinvella also allows an account owner to intentionally create a public story link containing selected family content. Anyone who receives an active public link may be able to view the content included in that shared story. Public story links can be revoked, and republishing after revocation uses a new link.
You are responsible for deciding what family information to enter and what information to share with others.
4. Portraits and KinSight
Kinvella stores uploaded portraits as private family media. Certain portrait workflows may send image bytes to Amazon Rekognition to check whether a portrait contains a usable face and, when you use KinSight, to compare two selected portraits and calculate a visual similarity result.
Kinvella uses Rekognition comparison operations rather than enrolling your portraits in a searchable face collection. Kinvella does not create a Rekognition face collection, does not receive face vectors in the comparison response, and does not intentionally create or store its own facial embeddings.
To avoid unnecessary duplicate processing, Kinvella keeps a limited cached comparison record for unchanged portrait pairs. That record can include portrait hashes, resemblance scores, a coarse photo-quality result, analysis time, provider information, and scoring/version metadata. Replacing or deleting a portrait invalidates cached comparisons that depend on the old portrait when they are no longer reusable elsewhere in the family.
5. Service providers
Kinvella relies on specialized providers where needed to operate the service. Depending on the feature you use, information may be processed by providers such as:
- Amazon Web Services / Rekognition for eligible portrait validation and KinSight facial comparison.
- Stripe for subscriptions, payments, and billing management.
- SendGrid for account and support email delivery.
- Mapbox for map and location experiences.
- Cloudflare Turnstile for spam protection on the public contact form when enabled.
- Google Analytics on anonymous public marketing pages for site-usage measurement. It is not loaded in authenticated family workspaces or public shared-family Story pages.
- Google Fonts for typography assets used by parts of the Kinvella interface.
- External map-library/CDN services only when a fallback map renderer must load its browser assets.
- Hosting and database providers used to run Kinvella and store application data.
These providers process information under their own service terms and privacy obligations. We aim to send each provider only the information reasonably required for the feature it supports.
6. Retention and deletion
Family content generally remains in Kinvella until you edit or delete it, or until the owning account is permanently deleted. Saved KinSight comparison results remain reusable while the underlying portrait pair and scoring version remain valid.
Deleting your Kinvella account permanently removes the active Kinvella account and family data owned by that account, including people, relationships, family events, migration information, portraits, KinCrest data, saved KinSight comparisons, and public story links.
Some operational records, security logs, backups, or third-party records may remain for a limited period as part of ordinary backup, fraud-prevention, accounting, security, or legal-retention processes. For example, deleting Kinvella does not require Stripe to erase transaction records that Stripe must retain independently.
7. Your controls
You can edit or remove family information and portraits through the product, manage sharing, manage billing through the provided billing controls, download a portable family export, and permanently delete your account from Account → Privacy & Data.
For a plain-language explanation of what the export includes and how cancellation, shared-family access, KinSight caching, and deletion differ, see Your Data.
For questions about your information, access to data, corrections, or privacy requests that are not available directly in the product, contact Kinvella support.
8. Security
Kinvella uses technical and organizational safeguards intended to protect private family information, including authenticated access controls, private media delivery, request protections for account-changing actions, and secure production session settings. No online service can guarantee absolute security.
9. Information about relatives and other people
Family histories can include information and portraits about people other than the account holder. Kinvella does not automatically notify a relative merely because you add that person to your private family workspace. You are responsible for having the rights, permissions, or other lawful basis needed to add and share that information, particularly information about living people. Portrait-upload flows require you to confirm that you have permission to use the photo. If you believe information or a portrait about you has been added or shared improperly, contact us.
10. Changes to this policy
We may update this Privacy Policy as Kinvella changes. When changes are material, we will update the date above and provide additional notice when appropriate.
11. Contact
Questions about privacy or your Kinvella data can be sent to frunfola1229@gmail.com or through the public contact form.