Privacy Policy — Sleepy Whisper
Last updated: 3 September 2026
Sleepy Whisper is a baby monitor made by TAIO Labs. This policy covers the Android app published as com.taio.sleepywhisper.
This policy is short because the app does very little that a privacy policy normally has to describe.
We do not collect anything
Sleepy Whisper has no servers. There is no account, no sign-in, and no identifier that reaches us. We do not receive your video, your audio, your alerts, your device information, your location, or usage analytics, because there is nowhere for any of it to go.
Specifically, the app contains:
- No analytics or telemetry library.
- No crash-reporting library.
- No advertising library or advertising identifier.
- No third-party software development kits of any kind.
- No STUN or TURN relay servers. The list of ICE servers is empty in every client the app ships.
What stays on your devices
Video and audio are live only. They are never recorded and never written to storage, on your phone or anywhere else. When you close the stream, nothing remains of it.
The following are stored on your own device and are never transmitted to us:
| Stored on your device | Why |
|---|---|
| Pairing keys and tokens | So paired devices reconnect without you re-entering a code |
| Noise threshold from calibration | So the app does not have to relearn your room every night |
| Alert history (times and types) | So you can see what happened overnight |
| Appearance and mounting settings | So the app looks and points the way you left it |
You can delete all of it at any time by uninstalling the app, or clear the alert history from within the app.
The one file the app writes is an image of your pairing QR code, and only at the moment you choose to share it. It is placed in the app's own cache directory, and the permission granted to the app you share it with expires with that share.
How your devices talk to each other
Video and audio travel directly between your own devices over your own local network, encrypted in transit using WebRTC's DTLS-SRTP. The phone in the nursery acts as the server. Nothing passes through us or through any third party.
The app requires the INTERNET permission. On Android that permission governs all network access, including connections between two devices on the same Wi-Fi network, which is the only thing this app uses it for. It does not contact any remote service.
Access is protected by a six-digit code that changes every five minutes, and a device must be paired before it can view the stream.
Permissions and why they exist
| Permission | Why |
|---|---|
| Camera | To show you the nursery |
| Microphone | To hear the room, detect noise, and let you talk back |
| Notifications | To alert you when something stirs, or when the monitor needs attention |
| Foreground service (camera, microphone, data sync) | So monitoring continues with the screen off, which is the entire purpose |
| Wake lock, exact alarms, ignore battery optimisations | So the monitor is not killed overnight by power management |
| Network state and local network access | To find and reach your other device |
Children
The app is used by adults to watch over their own children. It collects no personal information from anyone, including children, and transmits none.
Changes
If a future version ever sends anything off your devices, this policy will be updated before that version is released, and the change will be described in the app itself rather than only here.
Contact
Questions about this policy, or about anything the app does with your data:
TAIO Labs taioappsdevelopment@gmail.com
You do not need an account, a reference number, or anything from inside the app to ask. There is no account to look up, because we hold nothing about you.