FamilySoraGet the app

Privacy Policy

Sorable Sdn Bhd

Last updated June 6, 2026

Introduction

Sorable Sdn Bhd ("we", "us", "our") operates FamilySora, a private family vault for documents, child records, and reminders. This Privacy Policy explains what information we collect, how we use it, who can access it, and the choices you have. By creating an account or using FamilySora, you agree to this policy.

Our promise

FamilySora is built for families who want a private place for records and reminders — not a social network. We do not show ads, sell your personal information, or share your data with third parties for their marketing purposes.

Information we collect

Account information: email address, display name, and authentication identifiers from email one-time passcodes or Sign in with Apple. Family data: family name, membership roles, and invite records. Child profiles: names, dates of birth, notes, and related metadata you enter. Documents: file names, types, expiry dates, notes, and the files you upload. Reminders: titles, due dates, and linked records. Device data: session tokens stored securely on your device and, if you enable them, local push notification identifiers. We do not collect precise location, contacts, or browsing history inside FamilySora.

Information about children

FamilySora lets parents and guardians store records about their children. We do not knowingly collect information directly from children under 13. Child profile data is provided by the adult account holder who manages the family vault and is responsible for obtaining any consent required in their jurisdiction.

How we use your information

We use your information only to provide and improve FamilySora: authenticate you, store and sync your family vault, enforce family access permissions, deliver reminders and notifications you request, process optional subscriptions, respond to support requests, and maintain the security and reliability of the service.

Who can see your data

Your data is visible only to you and members of your family vault whom you or the family owner authorize. Database access is protected by row-level security on every table. Uploaded documents are stored in a private bucket — never in a public directory — and are opened through time-limited signed URLs. Sorable Sdn Bhd staff do not browse family vaults except when necessary to provide support you request or to comply with law.

Service providers

We use trusted infrastructure and service providers to run FamilySora. Supabase provides authentication, database, and encrypted file storage. Apple provides Sign in with Apple when you choose that option. RevenueCat may process subscription status if you purchase a paid plan. Push notification services may deliver alerts you enable on your device. These providers process data on our behalf under contractual obligations and only as needed to operate the service. Our marketing website at https://familysora.com is hosted separately and does not receive your vault contents.

Encryption & security

Data is encrypted in transit using TLS. Data at rest is encrypted on our cloud infrastructure. On iOS and Android, your sign-in session is stored in the device secure store (Keychain or Keystore), not in ordinary app storage. We apply access controls, private storage buckets, and database row-level security designed to keep each family's data visible only to invited members. FamilySora is not end-to-end encrypted: we can access vault data when required to operate the service, respond to support you request, or comply with law.

What we do not do

No ads. No social feeds. No public profiles. No selling or renting your personal information. No cross-family data sharing. No tracking for advertising purposes.

Data retention

We retain your information while your account is active. If you delete your account from Settings, we delete your profile, family membership, child profiles, document metadata, uploaded files, reminders, and authentication account, subject to limited backup retention on our infrastructure providers that is automatically purged on their standard schedule.

Your rights & controls

You can export a copy of your account metadata as JSON from Settings at any time. You can permanently delete your account and associated data from Settings. Depending on where you live, you may also have rights to access, correct, restrict, or object to certain processing of your personal information. To exercise these rights, email support@familysora.com. We will respond within a reasonable time.

International transfers

FamilySora is operated from Malaysia and uses cloud infrastructure that may process data in other countries. Where required, we rely on appropriate safeguards for cross-border transfers.

Changes to this policy

We may update this Privacy Policy from time to time. We will post the revised policy in the app and on https://familysora.com/privacy and update the "Last updated" date. Continued use of FamilySora after changes take effect means you accept the updated policy.

Pricing & payments

FamilySora uses simple pricing: a free plan for core features and an optional FamilySora Pro subscription for unlimited storage and family invites. If you subscribe, payment processing is handled by Apple or Google through their respective app stores; we do not store your full payment card details.

Contact us

Questions about this Privacy Policy or your data? Email support@familysora.com. Data controller: Sorable Sdn Bhd.

Terms of Service