Privacy Policy
Product: The Life Reel (operated by Nanosolve LLC) Status: reviewed 09/15/2026 · revised 09/16/2026 (Contributor and Viewer roles removed) Version: 1.1 · 09/16/2026 Company: Nanosolve LLC, a North Carolina limited liability company Contact: contact@thelifereel.com · 4030 Wake Forest Rd, Suite 349, Raleigh, NC 27609 Launch geography (locked): United States only.
1. Introduction
This Privacy Policy explains how Nanosolve LLC (“Company,” “we,” “us,” or “our”) collects, uses, discloses, and protects personal information when you use The Life Reel website, mobile applications, APIs, physical products, and related services (collectively, the “Service”).
By using the Service, you agree to this Privacy Policy. Our Terms of Service govern the commercial relationship. If there is a conflict about personal data processing, this Privacy Policy controls for that subject.
Controller / operator: Nanosolve LLC, 4030 Wake Forest Rd, Suite 349, Raleigh, NC 27609, contact@thelifereel.com.
2. Who this Policy covers
This Policy applies to:
- Account holders and Owners (must be 18 or older)
- Intended Recipients and claimants (must be 18 or older to create an account, claim, or Take Ownership)
- Visitors to our marketing site
- Purchasers of physical goods (for example, Vault Keys) through our web checkout
- People who open a shared Time Capsule playback using the link and Owner-generated password, including minors, who do not need an account to view (see Section 9.8)
It also describes how we handle personal information about children that adults upload or provide (see Section 9 — Children’s Privacy (COPPA)).
We do not create accounts for anyone under 18, including with parental consent. Parents and guardians use their own adult accounts to create Vaults about children.
3. Notice at collection (summary)
| Category | Examples | Purposes | Sold / shared for ads? | Retention (high level) |
|---|---|---|---|---|
| Identifiers & account | Name, email, account ID, Cognito subject | Account, auth, support, security | No | Life of account + legal holds |
| Commercial | Purchase history, SKU, billing address (not full card) | Checkout, fulfillment, taxes, fraud | No | As required for tax/accounting |
| User Content | Photos, video, audio, captions, Vault metadata | Vault features, preservation, claim | No | While Service operates + wind-down/export period |
| Sensitive / ID verification | Processed by Stripe Identity (may include ID images and face match); we store verification results only, not biometrics | Identity verification, fraud prevention | No | Company: verification metadata only; Stripe: per Stripe policy |
| Device / technical | IP, browser, device type, logs, cookies (including from visitors who open a shared playback link) | Security, operations, debugging | No | Rolling logs |
| Communications | Support emails, death/succession documents | Support, verification, legal | No | Case-by-case + legal holds |
| Inferences | Limited product analytics (aggregate) | Improve Service | No | Aggregated / de-identified |
We do not sell personal information for money. We do not use personal information about children under 13 for targeted or behavioral advertising.
4. Information we collect
4.1 Information you provide
- Account and profile information (name, email, password or authentication credentials, phone if you provide it)
- Billing and shipping information for purchases (processed by Stripe; we do not store full payment card numbers)
- Vault metadata (Vault name, designations, Release Rules, shared playback links, ownership and provenance history)
- User Content / Memories (photos, short video, audio, captions, and similar)
- Identity verification through Stripe Identity when you claim a Vault, Take Ownership, or complete death-succession review (Stripe may process government ID images and selfie/liveness data; we receive verification results — see Section 8)
- Support communications and documentation you submit (including death certificates or succession documents when applicable)
- Marketing preferences if you opt in
4.2 Information collected automatically
- Device and log data (IP address, browser or app version, device identifiers, pages or screens viewed, API requests, timestamps)
- Cookies and similar technologies (see Section 11)
- Approximate location derived from IP address
4.3 Information from third parties
- Stripe — payment processing (Stripe Checkout) and identity verification (Stripe Identity), including payment confirmation, billing status, limited card metadata, and identity-verification session results (we do not receive or store biometric templates or ID images on our systems)
- Amazon Cognito — authentication session and account identifiers when you sign in
- Authentication providers if you sign in with a third-party login (if we offer that option)
5. How we use information
We use personal information to:
- Provide, operate, secure, and improve the Service
- Create and maintain Vaults, Memories, Release Rules, and ownership records
- Process purchases through Company-hosted web checkout (Stripe Checkout), refunds where required by law, and ship physical goods we fulfill directly
- Perform identity verification and fraud prevention
- Send transactional messages (receipts, claim notices, security alerts, material Terms/Privacy updates)
- Provide customer support
- Detect, investigate, and report illegal content (including CSAM) as described in our Terms
- Comply with law, enforce our Terms, and protect safety and rights
- Analyze aggregate or de-identified usage to improve the product (not for behavioral ads on children’s data)
We do not sell personal information for money. We do not use personal information about children under 13 for targeted or behavioral advertising.
6. How we share information
We may share personal information with:
- Service providers / processors who help us operate the Service under contracts that limit their use of the data, including:
- Amazon Web Services (AWS) — hosting, storage (S3), encryption (KMS), databases (DynamoDB), email (SES), logging, and related infrastructure
- Stripe — payment processing (Stripe Checkout) and identity verification (Stripe Identity)
- Amazon Cognito — user authentication and account management
- Other people you authorize — Intended Recipients after authorized release and verification, a person receiving read-only succession access, a new Owner after Take Ownership, and anyone to whom an Owner gives a shared Time Capsule playback link and password (see Section 9.8)
- Professional advisors (lawyers, accountants) under confidentiality
- Authorities and others when required by law, legal process, or to protect rights, safety, or security (including NCMEC where applicable)
- Successors in a merger, acquisition, or asset sale, subject to this Policy
We may disclose aggregated or de-identified information that cannot reasonably identify you.
We do not disclose children’s personal information to third parties for their own independent marketing.
7. Retention
We retain personal information for as long as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce agreements.
| Data type | Typical retention |
|---|---|
| Account & profile | While account is active, then deleted or anonymized per request/law, subject to backup cycles |
| User Content / Memories | While the Vault exists and the Service operates; see wind-down (Section 14) |
| Provenance / audit logs | May be retained longer than content for integrity, security, or legal reasons (as described in the Terms) |
| Payment records | As required for tax, accounting, and fraud (often several years) |
| Identity verification (Company) | Verification session IDs, status/results, timestamps — not biometric data or ID images |
| Identity verification (Stripe) | Governed by Stripe’s privacy policy; users may contact privacy@stripe.com |
| Server logs | Rolling period 90 days |
| Backups | Residual copies may persist up to seven (7) days after deletion before backup cycles complete |
When you request account deletion (Section 13), we delete or de-identify personal information as required by law, subject to legal holds, abuse investigations, and technical limits (including read-only released capsules and provenance records described in the Terms).
8. Identity verification (Stripe Identity)
For claim, Take Ownership, death succession, or similar high-risk actions, we use Stripe Identity to verify identity. The flow uses government ID document checks and selfie/liveness (facial comparison). Stripe processes ID images and biometric matching; we do not store biometric data or ID images on our systems.
Before you start verification, we present a notice describing what is collected and why, and we obtain your consent (including as required under biometric privacy laws that may apply in states such as Illinois, Texas, and Washington). By continuing to verify, you consent to processing by Stripe and to our receipt of verification results as described here, in our Terms, and in that notice.
What we store: We do not retain biometric identifiers, biometric information, or government ID images on our systems. We store only: (1) a Stripe verification session identifier, (2) pass/fail or status, and (3) timestamps.
What Stripe stores: Stripe processes verification data under its own privacy policy (https://stripe.com/privacy). Stripe may retain certain verification data, including biometric information, according to Stripe’s policies. For questions or deletion requests regarding data Stripe holds, contact privacy@stripe.com. We may use Stripe’s redaction tools to delete verification sessions on our side when appropriate.
9. Children’s Privacy (COPPA) — integrated notice
This Section 9 is our integrated children’s privacy notice. It is part of this Policy and is not published as a separate children’s-only policy.
9.1 Our determination
Our position: The Service is intended for adults (18+) only as account holders, claimants, and Owners. We do not create accounts for minors, even with parental consent. The Service is not primarily directed to children under 13. Parents and guardians use adult accounts to store Memories about children under 13. We apply the practices in this Section 9 to that information.
9.2 No direct collection from children under 13
We do not knowingly allow anyone under 18 to create accounts, claim released content, Take Ownership, or submit personal information directly to us as a user.
If we learn we have collected personal information directly from a child under 13, we will delete it (or take other required steps) promptly. Email contact@thelifereel.com with subject line COPPA Request.
9.3 Information about children provided by parents or guardians
Parents/guardians may upload User Content that includes personal information about a child, such as photos, video, audio, the child’s name or age in metadata, designation as an Intended Recipient (claim only after 18+), or Vault Key association data.
When an adult provides that information, they represent they have authority to do so and consent to our processing as described in the Terms and this Policy.
9.4 Consent and Owner authority for information about children (adult accounts)
Owners may create Vaults about their own children or about other people’s children, and may upload content depicting third parties. For personal information about children (including under 13) provided through an adult account, our consent / authority method is:
1. The user must be 18+ and create an authenticated account; 2. The user must agree to the Terms and this Privacy Policy (clickwrap) at account creation and/or checkout; 3. When creating a Vault (any recipient kind, including pet), the user must check an affirmative Owner permissions checkbox stating they have all rights and permissions required for content they upload — including parental/guardian permission for any child depicted, even if the child is not theirs; and 4. Payment by the adult at checkout is an additional consent signal.
We do not offer a path to open an account for a minor. Claim and Take Ownership require the Intended Recipient to be 18 or older.
9.5 How we use and disclose information about children
We use information about children only to provide requested Vault features, secure the Service, fulfill physical goods, comply with law (including CSAM reporting), and support the adult account holder.
We do not sell such information, use it for behavioral advertising, or enable public sharing except as directed by the Owner’s access settings and authorized release/claim features.
9.6 Parental rights
A parent or guardian may email contact@thelifereel.com (subject COPPA Request) to review, delete, or refuse further collection/use of their child’s information, subject to legal holds and technical limits in the Terms. We may verify identity and authority before fulfilling a request.
Vault deletion control: Only the Vault Owner may delete the Vault. After an Intended Recipient who is 18 or older completes Take Ownership, that new Owner controls deletion.
9.7 Geographic note (US launch)
The Service is offered in the United States only at launch. We do not intentionally serve customers outside the U.S. International children’s privacy regimes (e.g., EU/UK) are out of scope until we expand geography.
9.8 Shared Time Capsule playback (viewers without accounts, including minors)
An Owner may share a Time Capsule as a view-only playback. Opening it requires both the link and a password the Owner generates. A person holding both may watch the playback without creating an account, and the Owner may choose to share them with a minor.
We do not ask playback viewers for personal information. Viewing does not require a name, email address, phone number, or account, and we do not invite viewers to submit any.
What we collect when a playback is viewed: limited technical data generated automatically by the request — IP address, browser and device type, timestamps, and essential cookies or session tokens. We use it only to deliver the playback, secure the Service, prevent abuse, and maintain integrity and performance.
How we limit that data: we do not use information collected from playback viewers for behavioral or targeted advertising, to build profiles, or to contact the viewer. We do not sell it. Where a viewer is (or may be) a child under 13, we rely on this internal-operations-only use and retain the data under the schedule in Section 7.
Owner control and responsibility: the Owner generates the link and sets the password, decides who receives them, and is responsible for having the permissions described in our Terms. The Owner may change the password at any time, which ends access for anyone holding the previous password. Anyone holding a current link and password may view the playback until the Owner changes or revokes access, or the content is deleted.
10. Mobile applications and web checkout
10.1 Website and mobile apps
You may access the Service through our website and, when available, mobile applications distributed via the Apple App Store or Google Play. This Privacy Policy applies to all of them.
10.2 Web checkout (not in-app store billing)
Digital Vault purchases (Create Vault, Take Ownership, Capacity Expansion, Celebration of Life, and similar digital features) and physical goods are completed through Company-hosted web checkout powered by Stripe Checkout, not through Apple In-App Purchase or Google Play Billing, unless we expressly state otherwise for a particular SKU.
Physical goods (for example, Vault Keys) are fulfilled and shipped by Company using shipping information you provide at checkout. We do not use separate third-party fulfillment vendors at this time.
When you complete web checkout, Stripe processes payment information according to Stripe’s privacy policy. We receive confirmation and limited billing metadata needed to fulfill your order.
10.3 App store platforms
- Apple: If you download our iOS app, Apple may collect device and download information under Apple’s privacy policy. Our Terms include Apple App Store–specific provisions; Apple is not responsible for our processing of your data.
- Google Play: If you download our Android app, Google may collect information under Google’s policies. You must also comply with Google’s terms for use of the store.
We complete Google Play Data safety and Apple privacy nutrition labels based on this Policy.
11. Cookies and similar technologies
We use cookies and similar technologies for:
| Type | Purpose | Examples |
|---|---|---|
| Essential | Authentication, security, session, checkout | Cognito session cookies, CSRF/session tokens |
| Functional | Remember preferences | none at launch |
| Analytics | Understand aggregate usage | none at launch |
We do not use cookies for behavioral advertising based on children’s content. You can control non-essential cookies through browser settings; some features may not work without essential cookies.
12. Security
We use commercially reasonable administrative, technical, and physical safeguards, including encryption and key management on AWS (envelope encryption with KMS). No method of transmission or storage is completely secure.
As stated in our Terms, Company (or its processors) may be able to decrypt User Content with keys under our or our processors’ control when needed for operations, support, security, abuse prevention, or legal compliance. This is not end-to-end encryption unless we expressly offer and describe a separate mode for your Vault.
13. Your choices: access, correction, deletion, and portability
13.1 Access and correction
Email contact@thelifereel.com to request access to or correction of personal information we hold about you. We will verify your request as required by law.
13.2 Account and data deletion
You may request deletion of your account and associated personal information:
1. Use in-product account deletion tools when available, or 2. Email contact@thelifereel.com from your account email with subject Account Deletion Request, including the email address associated with your account.
We will verify the request and respond within the time required by applicable law. Deletion may be delayed or limited where we must retain data for legal compliance, fraud prevention, dispute resolution, or security (including NCMEC-related preservation). Some information may remain in backups for a limited period.
Vaults and Memories: Only the Owner may delete a Vault. Deleting a Vault also deletes associated Time Capsules, subject to legal holds. Only the Owner may upload to a Vault, and no one else — including an Intended Recipient, a succession recipient, or a person holding a shared playback link and password — can delete a Vault or its content. Deleting your account does not delete a Vault you do not own. After Take Ownership by an adult recipient, the new Owner controls deletion. Parents may request deletion of information about their child under 13 under Section 9.6 while they have authority and as required by law. Residual backups may persist up to seven (7) days.
13.3 Export / portability
Where the Service provides export tools, you may download Memories and certain Vault data. Export formats and completeness may have technical limits. We encourage you to keep personal copies of important content.
13.4 U.S. state privacy rights
Depending on where you live (for example, California, Virginia, Colorado, Connecticut, Utah, and other states with comprehensive privacy laws), you may have additional rights to know, delete, correct, opt out of certain “sales” or “sharing,” or limit use of sensitive personal information.
To exercise rights, email contact@thelifereel.com. We will not discriminate against you for exercising privacy rights.
California residents: We do not sell personal information for money. For requests under the California Consumer Privacy Act (CCPA), as amended by CPRA, please contact contact@thelifereel.com.
Colorado Residents: If you are a resident of Colorado, you may have certain rights regarding your Personal Data under the Colorado Privacy Act, Colorado Revised Statutes § 6-1-1301 et seq. (the “CPA”), subject to certain exceptions and limitations provided by applicable law. We will not process Sensitive Data concerning a Colorado Consumer without obtaining consent where consent is required by the CPA. Sensitive Data may include certain information relating to racial or ethnic origin, religious beliefs, mental or physical health conditions or diagnoses, sexual orientation or sexual activity, citizenship status, biometric identifiers used for identification purposes, certain information concerning children, and other categories of information designated as sensitive under applicable Colorado law. Where required by the CPA, consent must be freely given, specific, informed, and unambiguous. You may withdraw consent in accordance with the procedures described in this Privacy Policy. For requests or to exercise your rights under the Colorado Privacy Act (CPA), please contact contact@thelifereel.com.
Connecticut Residents: If you are a resident of Connecticut, you may have certain rights regarding your Personal Data under the Connecticut Data Privacy Act, Connecticut General Statutes §§ 42-515 et seq. (the “CTDPA”), subject to applicable exceptions and limitations. We process Sensitive Data only as permitted by applicable law. Where the CTDPA requires consent before Sensitive Data may be processed, we will obtain the consent required by law. Where consent is required, you may withdraw your consent in accordance with the procedures made available through the App or by contacting us using the information below.
We recognize that Connecticut law provides enhanced privacy protections for children and minors. We will process Personal Data concerning children and minors in accordance with applicable requirements of the CTDPA and other applicable law. Where required by Connecticut law, we will obtain the appropriate consent before processing a minor's Personal Data and will not process a minor's Personal Data for purposes prohibited by applicable law, including targeted advertising or the sale of Personal Data where such processing is prohibited. For requests or to exercise your rights under the Connecticut Data Privacy Act (CTDPA), please contact contact@thelifereel.com.
Utah Residents: If you are a resident of the State of Utah, you may have certain rights regarding your Personal Data under the Utah Consumer Privacy Act, Utah Code § 13-61-101 et seq. (the “UCPA”), subject to certain exceptions and limitations provided by applicable law. We will process Sensitive Data only as permitted by applicable law and, where required by the UCPA, only after obtaining the consumer's consent. Where consent is required, we will provide a mechanism through which you may provide or withdraw consent in accordance with applicable law. For requests or to exercise your rights under the Utah Consumer Privacy Act (UCPA), please contact contact@thelifereel.com.
Virginia Residents: If you are a resident of the Commonwealth of Virginia, you may have certain rights regarding your personal data under the Virginia Consumer Data Protection Act (VCDPA), subject to applicable exceptions. We do not process sensitive personal data, including precise geolocation data, biometric data, or other categories of sensitive information, without obtaining any consent required by applicable law. If our App collects sensitive personal data, we will provide any notices and obtain any consents required by the VCDPA before such processing occurs. For requests or to exercise your rights under the Virginia Consumer Data Protection Act (VCDPA), please contact contact@thelifereel.com.
13.5 Do Not Track
Some browsers send “Do Not Track” signals. We do not currently respond to DNT signals in a standardized way.
14. Service changes, wind-down, and policy updates
If we discontinue the Service or a material portion of preservation features, we will provide notice and a reasonable opportunity to export available data as described in our Terms (currently at least ninety (90) days where reasonably practicable).
We may update this Privacy Policy. We will post the updated Policy and change the “Last updated” date. For material changes, we will provide notice by email and in-product notice, consistent with our Terms.
15. International users
The Service is offered in the United States only at launch. Personal information is processed in the United States and in other locations where our U.S.-serving providers operate. We may refuse or terminate access from outside the United States. If we later expand internationally, we will update this Policy before intentionally serving those markets.
16. Third-party links
The Service may link to third-party sites (for example, Stripe checkout or support pages). Their privacy practices are their own.
17. Contact
Nanosolve LLC 4030 Wake Forest Rd, Suite 349 Raleigh, NC 27609 contact@thelifereel.com
Last updated: 09/15/2026 Effective date: 09/15/2026