BridgeVoice
Privacy Policy
BridgeVoice is designed to help families communicate while keeping parents in control. This policy explains what information the app handles, why it is used, and the choices available to families.
Effective August 5, 2026 · Document version 2026-08-05
Who operates BridgeVoice
BridgeVoice is a product of Keystone Labs, part of Keystone Group Holdings LLC.
Information BridgeVoice handles
The app stores the child profile, communication tiles and phrases, photos, routines, preferences, family voice recordings, and local usage history needed to provide communication and parent progress features.
When a parent chooses cloud-backed features, BridgeVoice also handles the parent email address, authenticated account and household identifiers, approved caregiver memberships and permissions, invitations, device notification tokens, alerts, acknowledgements, and subscription status.
When a parent sends feedback, BridgeVoice includes the device model, operating system, app version, build number, and privacy-safe status categories. A screenshot and any written details are included only when the parent chooses to share them.
Local-first communication
Core communication works without an account after setup. Child profiles, communication items, photos, routines, preferences, recordings, and usage history are stored on the device by default.
Parents can export or share a backup. Exported files may contain sensitive family information and are controlled by the destination the parent selects.
Website interaction analytics
On the BridgeVoice website, we record limited interaction events—such as selecting a launch link, starting or submitting the launch form, or playing the commercial—to understand campaign and content interest and to protect the service from misuse. We do not use these events to collect child names, photos, phrases, or communication content, and we do not record a page view simply because someone visits a page.
If a visitor arrives through a tagged campaign link, the website may keep the first source, medium, campaign, and creative labels for that browser session. It also creates a random session identifier in browser session storage. On the server, that session identifier and the request address are converted into separate one-way identifiers before an event is stored; the raw values are not stored with the event. If an adult joins the launch list, the validated source label may also be stored with that email signup and used for aggregate confirmed-signup reporting; BridgeVoice does not store the full landing-page URL or free-text campaign parameters for that purpose. Browser privacy controls can block session storage, and session storage is normally cleared when the browser session ends.
Optional cloud and AI features
Cloud sync, caregiver access, household recovery, notifications, and other protected cloud features require a permanent parent account and server-authorized household access. Lock-screen notifications use privacy-safe text.
If a parent requests AI photo labeling, the selected image is sent securely to a cloud service to suggest a label. The parent reviews the suggestion before saving it. Manual labels, family recordings, installed device speech, and core communication remain available without this AI feature.
BridgeVoice Voice uses the parent-selected Male or Female voice. When a phrase is not already prepared on the device, BridgeVoice may send that phrase text through BridgeVoice to ElevenLabs to create downloadable audio. BridgeVoice does not include the child's name, photo, recording, or local communication history in that request. Returned audio is stored on the device for reuse. A parent can turn BridgeVoice Voice off in Voices to stop new phrase requests; existing downloads remain until the parent deletes them. Device speech remains available as a backup if a download cannot finish. Demo profiles do not use BridgeVoice Voice.
BridgeVoice uses service providers only to operate requested features, including hosting and authentication, purchases, notifications, and optional AI processing. BridgeVoice does not use child data to train its own general-purpose AI models.
How information is used and shared
Information is used to provide and secure the app, synchronize features a parent enables, process purchases, deliver approved notifications, respond to support and feedback, and prevent misuse.
BridgeVoice does not sell personal information, show third-party advertising, use information for cross-app tracking, or provide a public social feed. Information is shared only with service providers needed to run a requested feature, with people a parent explicitly authorizes, when the parent exports or shares it, or when required by law or necessary to protect safety and rights.
Children and parent controls
BridgeVoice is a parent- and caregiver-managed communication tool. Children do not create accounts or provide an email address. A parent PIN protects settings, progress, exports, account controls, and other configuration areas.
Parents decide whether to add photos or recordings, enable cloud or AI features, invite another person, and send feedback. Caregiver access is limited by the role, child, permissions, duration, and revocation choices approved by an authorized parent.
Retention, deletion, and security
Local information remains on the device until a parent deletes it, removes the app, or replaces the device data. Cloud information is retained while needed to provide an active account or requested service, meet security and legal obligations, and resolve disputes. Parents can sign out, remove local recordings and history, export data, revoke caregiver access, or request account deletion from Privacy & Safety in the app.
BridgeVoice uses access controls, authenticated requests, encryption in transit, and data-minimization practices designed to protect information. No system can guarantee absolute security, so parents should protect their device, Parent PIN, email account, invitation links, and exported backups.
Your choices and policy updates
Parents may use core local communication without cloud or AI features, decline optional permissions, review device permissions, disable notifications, revoke invitations, export information, or delete information through the app and device settings.
This policy may be updated as BridgeVoice changes. Material changes will be reflected here with a new effective date and, when appropriate, communicated in the app or release notes.
Contact
Privacy questions can be sent to support@bridgevoiceos.com.