Sign In
Sign In

Privacy Policy

Effective date: July 30, 2026

MemriTree LLC (“MemriTree,” “we,” “us,” or “our”) helps people turn written memories, recordings, photographs, and family stories into keepsake stories.

This Privacy Policy explains the information we collect through the MemriTree website, applications, and related services (collectively, the “Service”); how we use and disclose that information; and the choices available to you.

By using MemriTree, you acknowledge the practices described in this Privacy Policy.

1. Information We Collect

We collect information that you provide, information created through your use of MemriTree, information received from service providers, and limited technical information about how the Service is accessed and used.

Account and Authentication Information

When you create or use a MemriTree account, we may collect:

  • Your name, display name, and email address
  • Your account and authentication method
  • Email-verification and password-reset status
  • Account identifiers and authentication metadata
  • Session information and login-related records
  • Information received when you sign in using Google, such as your Google account identifier and profile information made available through the sign-in process

MemriTree does not store your actual password in its application database. Email-and-password authentication, password hashes, authentication records, and session information are managed by our authentication provider, Supabase.

Story Materials and Generated Content

MemriTree processes and stores the information you provide or create while making a story. Depending on how you use the Service, this may include:

  • Written memories, source material, prompts, and notes
  • Audio recordings and transcripts
  • Answers to follow-up questions
  • Names, relationships, dates, locations, and descriptions
  • Story drafts, completed stories, paragraphs, titles, and summaries
  • Captions, illustration instructions, and image prompts
  • Photographs and other uploaded files
  • AI-generated illustrations
  • Edits and revisions
  • Story-sharing and audio-visibility settings
  • Public or shareable story slugs
  • Generation status, usage, cost, and failure records
  • Internal analysis and structured information used to create the requested story

Family stories can contain personal or sensitive information about you or other people. You control what you submit and should avoid including information that you do not have the right to share or are not comfortable having processed as described in this policy.

Information About Other People

You may submit stories, photographs, recordings, gift information, or other materials concerning relatives, friends, or other people who do not have MemriTree accounts.

This information generally comes from you rather than directly from those individuals. It may include their names, likenesses, voices, relationships, locations, life events, health experiences, and other personal details.

You are responsible for having an appropriate basis or permission to provide this information and to make it visible to others. A person who believes information about them has been included without appropriate authorization may contact us at privacy@memritree.com.

Audio Recordings

When you record a memory, the recording is initially created in your browser and then uploaded for storage and transcription.

The original audio may be retained after transcription so that it can remain associated with the story. The transcript is stored separately and may be used to generate the story.

You may control whether audio is visible on a shared story page. MemriTree does not currently provide a separate user-facing control for deleting an audio recording while retaining the associated transcript or story.

Photographs and Generated Images

Photographs and generated illustrations are stored in private storage and ordinarily displayed using temporary signed links.

Uploaded photographs are generally stored in their original form. MemriTree does not currently remove all embedded file metadata before storage. Depending on the original file, that metadata could include information such as the date, device, or location associated with the photograph.

Uploaded personal photographs are not currently sent to our AI provider for story generation or illustration generation. Image prompts and references to previously generated illustrations may be sent when you request an AI-generated image or image revision.

Purchases, Subscriptions, Credits, and Gifts

When you make a purchase, subscribe to a plan, buy a story pack, manage recurring billing, receive credits, request a refund, or purchase or claim a gift, we may collect or receive:

  • Your selected product, plan, or story pack
  • Purchase and subscription status
  • Story-credit and usage information
  • Transaction amount and currency
  • Billing name, email address, and related billing information
  • Stripe customer, checkout, payment, subscription, invoice, and product identifiers
  • Limited payment-method details made available by Stripe
  • Refund, dispute, fraud-prevention, and risk-related information
  • Stripe webhook and transaction records
  • Gift buyer information
  • Gift recipient name and email address
  • Optional gift messages
  • Gift-delivery, claim, and redemption status
  • Hashed gift-claim tokens

Payment information is processed by Stripe. MemriTree does not receive or store complete payment-card numbers or card security codes.

Gift-recipient information may be collected before the recipient creates a MemriTree account. A recipient may be required to create or sign in to an account using the designated email address to claim a gift.

Communications

When you contact us by email or through another functioning communication channel, we collect your contact information and the contents of your message.

We may also receive records related to account verification, password resets, gift delivery, billing notices, and other service-related communications sent by Supabase, Resend, Stripe, or another service provider.

Technical, Usage, and Diagnostic Information

When you access MemriTree, we and our providers may automatically process information such as:

  • Internet Protocol address
  • Browser and device type
  • Operating system
  • Referring page
  • Pages and features accessed
  • Request and page URLs, which may include shared-story URLs
  • Dates and times of access
  • Authentication and session information
  • User, story, media, generation, and transaction identifiers
  • Feature usage and generation timing
  • Error messages, failure details, and diagnostic information
  • General geographic information inferred from an Internet Protocol address
  • Security, fraud-prevention, and abuse-detection information

Application and provider logs are generally designed not to record complete story source material or AI responses. However, error messages, diagnostic details, file paths, identifiers, or provider responses may occasionally contain information associated with an account or story.

Information Stored in Your Browser

MemriTree uses cookies, local storage, session storage, and similar browser technologies to support authentication, session management, draft recovery, product flows, preferences, and feature status.

Information stored in your browser may include:

  • Authentication and session information
  • Unfinished memory or story source material
  • Answers to follow-up questions
  • Draft generation state
  • Story and generation identifiers
  • Narrator descriptions
  • Tutorial, microphone-access, and interface-status settings
  • Story visit or read status

This information remains on the device and browser where it was stored until it is cleared, replaced, or removed by the application or browser.

If you use MemriTree on a shared or public device, you should sign out and clear stored browser information when appropriate.

2. How We Use Information

We use information to:

  • Create, authenticate, and manage accounts
  • Provide the features and functionality of MemriTree
  • Record, upload, transcribe, generate, save, display, edit, and share stories
  • Create titles, summaries, captions, illustrations, and other requested content
  • Store and deliver photographs, audio, transcripts, and generated images
  • Maintain story-sharing and media-visibility settings
  • Process purchases, subscriptions, story packs, credits, gifts, refunds, and billing
  • Deliver account, authentication, gift, payment, security, and service communications
  • Provide customer support and respond to privacy requests
  • Investigate failed generations, bugs, payment problems, abuse, and security incidents
  • Maintain internal reporting, administrative tools, and operational dashboards
  • Measure Service usage and performance
  • Improve the reliability, usability, and quality of the Service
  • Prevent fraud, misuse, unauthorized access, and violations of our agreements
  • Comply with applicable legal, tax, accounting, and regulatory requirements
  • Establish, exercise, or defend legal claims

We may combine information collected through different parts of the Service when reasonably necessary for these purposes.

3. AI Processing

MemriTree uses the OpenAI application programming interface to provide AI-assisted story creation, transcription, and image-generation features.

Depending on the feature you request, information sent to OpenAI may include:

  • Your original written memory or audio recording
  • A transcript of your recording
  • Names, dates, places, relationships, and other details contained in the story
  • Answers to follow-up questions
  • Existing or generated story text
  • Editing preferences
  • Captions and image prompts
  • A reference derived from a previously generated image when you request an image revision

OpenAI processes this information to return transcripts, story content, structured information, image prompts, generated images, or other requested results.

AI outputs may contain errors, omissions, unexpected content, or interpretations you did not intend. You should review generated stories and illustrations before saving or sharing them.

AI providers may retain requests and outputs for limited periods or for purposes such as security and abuse prevention, subject to their agreements, policies, and the settings applicable to MemriTree’s account. MemriTree does not control every aspect of a provider’s internal processing or retention.

MemriTree does not sell your story materials to AI providers.

4. How We Disclose Information

We disclose information only as reasonably necessary to operate MemriTree, process your requests, comply with law, protect rights and safety, or complete a business transaction.

Service Providers

We use service providers that process information on our behalf or in connection with the Service. Current providers include:

  • Supabase, for authentication, databases, private file storage, and related infrastructure
  • Vercel, for website hosting, application infrastructure, technical logs, and analytics
  • OpenAI, for story processing, transcription, and image generation
  • Stripe, for checkout, payments, subscriptions, recurring billing, refunds, gifts, fraud prevention, and related financial services
  • Resend, for delivery of transactional email, including gift messages, support-request receipts, and story-ready notifications
  • Google, when you choose Google sign-in
  • Adobe Typekit, for web-font delivery

These providers may process account, content, payment, device, communications, or technical information as necessary to perform their services.

We may replace providers or add providers as MemriTree develops. Any provider receiving personal information will be used for a legitimate operational purpose and will be subject to applicable contractual or legal obligations.

At Your Direction

We disclose information when you ask us to do so, such as when you make a story shareable or public, display its audio, send a gift, or otherwise direct us to provide information to another person.

Legal, Safety, and Enforcement Purposes

We may disclose information when we reasonably believe doing so is necessary to:

  • Comply with a law, regulation, legal process, court order, or governmental request
  • Protect the rights, property, safety, or security of MemriTree, our users, or another person
  • Investigate fraud, abuse, unauthorized access, or security incidents
  • Enforce our Terms or other agreements
  • Establish, exercise, or defend legal claims

Business Transactions

If MemriTree is involved in a merger, acquisition, financing, restructuring, bankruptcy, sale of assets, or similar transaction, information may be reviewed, disclosed, or transferred as part of that transaction.

No Sale or Targeted Advertising

MemriTree does not sell personal information.

MemriTree does not currently share personal information for cross-context behavioral advertising or use story materials to target third-party advertising to you.

5. Story Visibility and Sharing

Stories begin as private unless you choose a shareable or public visibility setting.

When you make a story shareable or public:

  • A person generally does not need a MemriTree account to view the shared page.
  • Anyone who has or discovers the story URL may be able to view its visible contents.
  • Share URLs may contain human-readable story slugs and should not be treated as passwords or confidential access tokens.
  • Shareable story pages are intended for people with the link and request no indexing by search engines.
  • Public story pages may potentially be discovered, indexed, cached, or displayed by search engines or other services.
  • Visitors may copy, save, download, screenshot, print, forward, or otherwise disclose content they can access.
  • Visible photographs, illustrations, and audio may be opened or downloaded while their temporary media links remain valid.
  • Information about the identities of visitors is not ordinarily provided to the story owner.

Audio visibility is controlled separately. If you do not want visitors to hear the original recording, keep the audio hidden.

You may disable sharing by changing the story’s visibility. Disabling sharing should make the shared story page unavailable through MemriTree, although previously created temporary media links may continue working until they expire.

Deleting or disabling a shared page cannot retrieve copies already saved or distributed by other people, search engines, archives, or third-party services.

6. Cookies, Analytics, and Similar Technologies

MemriTree and its providers use cookies and similar technologies where needed for:

  • Authentication and account sessions
  • Security
  • Checkout and payment processing
  • User preferences
  • Browser-based story and draft recovery
  • Service operation and performance

Our current website analytics provider is Vercel Web Analytics, which is designed to operate without analytics cookies and to store anonymized analytics information.

Other providers, including Supabase, Stripe, Google, and Adobe, may use cookies or similar technologies in connection with the services they provide.

MemriTree does not currently use Meta Pixel, Google Analytics, session-replay software, or advertising trackers.

7. Retention and Deletion

We retain information for as long as reasonably necessary to provide the Service and fulfill the purposes described in this policy.

The appropriate retention period depends on the nature of the information and why it is needed. For example:

  • Account and story information may be retained while your account or story remains active.
  • Audio, transcripts, photographs, and generated images may be retained while associated with an active story.
  • Gift and billing information may be retained to administer purchases, claims, subscriptions, refunds, accounting, taxes, disputes, fraud prevention, and legal obligations.
  • Security, diagnostic, and generation-failure records may be retained to operate and protect the Service.
  • Provider logs and records are retained according to provider settings and policies.
  • Information stored in your browser may remain until it is cleared, overwritten, or removed.
  • Backup copies may remain until the applicable backup is overwritten or expires.

When you delete a paragraph, image, story, or other content through the product, the item may be removed from ordinary display and use without being immediately erased from every database, storage system, log, backup, or provider system.

Story deletion currently disables sharing and marks the story as deleted. Certain underlying records, photographs, generated images, audio files, transcripts, and associated metadata may remain in restricted systems until they are manually or automatically removed.

We may also retain information when reasonably necessary to:

  • Complete a transaction
  • Maintain financial or tax records
  • Prevent fraud or abuse
  • Resolve a dispute
  • Enforce an agreement
  • Comply with law
  • Protect the security and integrity of the Service
  • Establish, exercise, or defend legal claims

We may be unable to delete information that another person copied, downloaded, or shared outside MemriTree.

8. Your Choices and Privacy Rights

Depending on the feature, you may be able to:

  • Edit or delete story text
  • Remove photographs or illustrations from a story
  • Control whether a story is private, shareable, or public
  • Control whether audio is visible on a shared story page
  • Manage subscriptions, billing, and payment methods through Stripe
  • Clear browser-stored information through your browser settings
  • Choose what story information and media to provide

MemriTree does not currently provide a self-service tool for complete account deletion or a complete export of all account information. You may request assistance by emailing privacy@memritree.com.

Depending on where you live and subject to applicable exceptions, you may have the right to request:

  • Access to personal information we maintain about you
  • Correction of inaccurate personal information
  • Deletion of personal information
  • A portable copy of certain personal information
  • Information about how personal information has been used or disclosed
  • An opportunity to appeal certain decisions concerning a privacy request
  • An opportunity to opt out of certain data practices

MemriTree does not sell personal information or currently share it for cross-context behavioral advertising, so there is no sale or targeted-advertising activity to opt out of at this time.

To protect accounts and personal information, we may ask you to verify your identity before completing a request. We may deny or limit a request when permitted or required by law, including where information must be retained for security, financial, contractual, legal, or fraud-prevention purposes.

You will not be discriminated against for exercising an applicable privacy right.

9. Children’s Privacy

MemriTree is intended for adults. You must be at least 18 years old to create a MemriTree account or use the Service.

We do not currently collect a date of birth or operate a technical age-verification process during signup. If we learn that a person under 18 has created an account or directly provided personal information, we will take reasonable steps to investigate and delete or restrict the account and information as appropriate.

Adults may create stories that include children’s names, photographs, voices, family relationships, or personal experiences. The adult submitting or sharing that content is responsible for having an appropriate basis to do so.

A parent or guardian who believes a child’s information has been submitted improperly may contact us at privacy@memritree.com.

10. Security

We use administrative, technical, and organizational measures designed to protect personal information.

Depending on the information and system involved, these measures include:

  • Authentication and access controls
  • Private storage buckets
  • Row-level database security
  • Temporary signed media links
  • Server-side credentials and environment-based secrets
  • Payment processing through Stripe
  • Stripe webhook-signature verification
  • File-size and file-type validation
  • Separation of administrative and ordinary user access

No website, application, database, storage provider, payment system, or Internet transmission can be guaranteed to be completely secure. You use the Service and provide information at your own risk.

You are responsible for maintaining the confidentiality of your account credentials and for promptly notifying us if you believe your account has been accessed without authorization.

11. International Use

MemriTree is operated from the United States.

The Service may be technically accessible from other countries. If you use MemriTree outside the United States, your information may be transferred to and processed in the United States or in other countries where MemriTree’s service providers operate.

Those countries may have privacy laws that differ from the laws where you live.

12. Third-Party Services and Links

MemriTree may link to or interact with services operated by other companies, including Stripe, Google, and shared external websites.

This Privacy Policy does not govern a third party’s independent services or privacy practices. You should review the privacy information provided by the applicable third party.

13. Changes to This Privacy Policy

We may update this Privacy Policy as MemriTree, our providers, or applicable legal requirements change.

When we update the policy, we will revise the effective or “Last updated” date at the top. If a change is material, we may provide additional notice through the Service, by email, or through another appropriate method.

Your continued use of the Service after an updated policy takes effect is subject to the updated policy.

14. Contact Us

For questions about this Privacy Policy or to make a privacy request, contact:

MemriTree LLCEmail: privacy@memritree.com