Privacy Policy — Campfire
Last updated: 16 August 2026
Campfire is an app for fathers to write to their children. You will put things in here you may never have said out loud. This policy tells you exactly what happens to those words, in plain English.
Where something is only partly true, this policy says so. That is deliberate.
Who we are
Campfire is operated by Raistone Ltd, 28 Kingswood Rise, Four Marks, GU34 5BD, United Kingdom.
Questions, complaints, or requests about your data: sam.newman1212@gmail.com. We answer within 5 working days.
What we collect
Your email address. So you can sign in, and so we can send you a sign-in link. If you sign in with Apple and choose to hide your email, we only ever see Apple's relay address.
What you write. Your answers to the weekly questions.
What you record. If you answer by speaking, we store the audio recording and the text transcribed from it.
Your answers to follow-up questions. Answering a week's question is a conversation: we ask something that follows from what you said, and you reply. Those answers are stored the same way as any other entry, including the audio if you spoke them.
Your first name, and your child's first name. Used to address the book and nothing else. You choose what to enter, and you may enter anything you like.
Notification settings. Which day and hour you would like to be reminded, and your phone's time zone, so that "9am" means your 9am.
A device token, if you allow notifications, so we know which phone to send them to.
We do not collect your location, your contacts, your photos, or your browsing. We do not use advertising identifiers. There is no analytics SDK and no tracking of any kind in this app.
If you joined the waiting list on this website, we hold the email address you typed and, where the link you followed said so, one short word for where you came from (for example "reddit"). No cookie is set, nothing is shared with an advertiser or a mailing service, and we will write to you once, when the app opens. Ask us at any time and we will delete it — see Contact, below.
What we do with it
Only what the app obviously needs:
- Sign you in
- Store your entries and show them back to you
- Turn your recordings into text
- Suggest follow-up questions about an entry you have written
- Read those questions aloud, if you switch that on
- Send you the weekly reminder, if you have asked for one
We do not sell your data. We do not share it for advertising. We do not build a profile of you.
Who else touches your data
The companies that help us run this, each doing one job:
| Who | What they do | What they see |
|---|---|---|
| Supabase | Runs our database, sign-in and file storage | Your account and everything in it |
| Deepgram | Turns recordings into text | Your voice recordings only |
| Anthropic | Suggests follow-up questions about an entry you have written | The text of that entry, and the question it answered |
| ElevenLabs | Reads a question aloud, if you turn that on | The question only — never your answer |
| Expo | Delivers push notifications | Your device token, and the words of the notification |
| Apple | Sign in with Apple, App Store | Your Apple sign-in |
Your words leave in exactly three places, and nowhere else:
- Recordings go to Deepgram, purely to be transcribed.
- What you have written goes to Anthropic, purely so we can suggest follow-up questions about it. We do not send your name, your child's name, your email address, or any of your other entries — only that one answer and the question it answered.
- A question, if you switch on reading aloud, goes to ElevenLabs so it can be spoken. Only the question is sent — never your answer. Leave that switch off and nothing goes to them at all.
Anthropic does not train its models on data sent through its API.
If we have added a crash-reporting service, it receives error details only — never your entries, transcripts, email address or IP address.
Your data is stored in the European Union (Supabase, eu-west-1).
Transcription (Deepgram) and follow-up questions (Anthropic) may be processed in
the United States under appropriate safeguards. Neither keeps your words to
train anything.
Security, stated honestly
What is true:
- Every connection is encrypted (HTTPS)
- Your entries are encrypted at rest on the server
- Your recordings sit in private storage with no public web address at all
- The database itself refuses to hand your entries to any other user. This is not a setting we remember to check; it is enforced on every single request
What is NOT true, and we will not claim:
Campfire is not end-to-end encrypted.
We could technically read your entries, in the same way that any service which stores your writing could. We do not, and we never use your words to train anything. But we will not tell you it is impossible, because that would be a lie, and this is the wrong product to lie in.
If end-to-end encryption is what you need, Campfire is not currently the right app for you.
AI, and what it is not allowed to do
Your recordings are transcribed by machine. That transcript is stored exactly as it came back, in a field the database physically refuses to let anything change afterwards. You can correct your own words whenever you like; nothing else ever will.
A language model also reads an entry once you have written it, in order to suggest follow-up questions about it. It asks questions. That is the entirety of what it does.
No language model rewrites, summarises, tidies or "improves" anything you write, and none ever will. This is the promise the whole product rests on. The code that sends your entry for follow-up questions performs exactly one database write, and that write stores questions — it cannot alter your entry, and the machine transcript of a recording is stored in a field the database physically refuses to let anything change afterwards.
Your words and recordings are never used to train AI models — not by us, not by our transcription provider under the terms we have agreed with them, and not by Anthropic, which does not train on data sent through its API.
How long we keep it
For as long as you have an account, because the whole point is that it lasts.
If you delete your account, everything goes immediately, and permanently within 30 days. Not 30 days because we are slow — everything is removed within seconds — but because our host keeps automatic backups for around a week, and your data lives on in those until they expire. Thirty days is the honest number.
Your rights
You can, at any time:
- See everything we hold. Settings → Send myself a copy gives you every word you have written as a plain text file. No request needed, no waiting.
- Correct anything. Every entry is editable.
- Delete everything. Settings → Delete my account. This genuinely deletes, including every voice recording.
- Object, restrict, or complain. Email us at sam.newman1212@gmail.com.
If you are in the UK or EU, you may complain to your data protection authority. In the UK that is the Information Commissioner's Office (ico.org.uk).
Our lawful basis for processing is performance of a contract — we cannot give you the app without storing what you write — except for notifications, which rely on your consent, withdrawable at any time in Settings.
Children
Campfire is for adults writing to children. It is not intended for use by anyone under 16, and we do not knowingly collect data from children. Your child's first name is the only thing about them we store, and only because you typed it.
Changes
If we change this policy in a way that matters, we will tell you in the app before it takes effect. Not by quietly updating a date at the top.