Privacy Policy
Last updated: 1 October 2026
Lunaro is a family organiser. Pilot Canareez Pty Ltd handles the information described here to provide family accounts and related services.
Information in Lunaro
Adult and parent accounts use a Firebase Authentication account, normally signed in with an email address and password. Children sign in with their family code, a username and a password set by a parent. A child's password is checked by Lunaro's server and stored only as a one-way (scrypt) hash, never as readable text, so it cannot be recovered; a parent sets a new one when needed. To protect child sign-in, Lunaro also keeps recent failed-attempt and cooldown information and hashed identifiers for up to five recently used devices. Family records include names, roles, membership and profile settings. People in a family can create tasks, assignments, approvals, task history, points and progress. Private Inbox notes belong to their owner; Shared Inbox items are visible within the family. Preferences include theme and celebration choices.
Where commercial features are used, Lunaro records entitlement, subscription or gift status and limited operational records. Payment processing may be handled by an external platform or payment provider. Lunaro also keeps limited support, administrator, security, transaction and deletion records needed to operate and review the service.
Children and family access
A parent manages child membership and may assign or review a child's tasks and progress. A child may have a separate sign-in. Family membership determines access; private notes are not included in a family-wide export. Parents should consider what they put in shared items and child profiles.
Use and sharing
We use this information to sign people in, provide family features, calculate progress, manage access and billing status, respond to support issues, and protect the service. Information is processed by the service providers needed for authentication, data storage and applicable payments. Other family members may see family-shared content and task information according to their role.
Where information is stored
Lunaro runs on Google Firebase and Google Cloud services, including Firebase Authentication, Cloud Firestore, Cloud Functions and Firebase Hosting. The primary Firestore database is hosted in Sydney, Australia (australia-southeast1). Some Google and Firebase services, such as authentication and hosting, may process or handle information outside Australia.
Export, deletion and retained records
In Settings, an authorised parent can download a family-data export. People can also download their own supported backup and history files. These exports have different scopes; a family export does not include another person's private Inbox.
Settings provides confirmed requests for own-account deletion, authorised parent deletion of a child profile, and whole-family deletion. Some requests require processing or review, including where billing or record safety needs resolving. Deletion removes the account or family data in scope from the live service through the applicable deletion process; limited transaction, security and deletion evidence may remain where needed for operations. Lunaro keeps daily database backups for recovery, and copies of deleted data may remain in those backups for up to 14 days until they expire under the backup schedule. These database backups do not include sign-in accounts. An external subscription may need separate cancellation. See account deletion instructions.
Contact and changes
See Support for help or privacy questions. You can email marktconnolly@gmail.com. This page will be updated when practices change.