Privacy Policy
Effective September 20, 2026
Our Family Heirloom is a product of MQL Solutions LLC, an Illinois limited liability company doing business as Our Family Heirloom. This page says plainly what we collect, why, and what we will never do with it. Questions: support@ourfamilyheirloom.com.
What We Collect
- Your email address, to deliver your purchase and edit links.
- The family details you type into the book questions: names, relations, and any optional details about how your family came together that you choose to share. We keep these so you can edit your book later.
- Order records: an order id and a Stripe session reference. Your card number goes to Stripe, our payment processor, and never touches our servers.
- If you arrived through a referral link, the code from that link, kept with your order so we can pay the person who sent you. We never tell them who you are: the page they see shows dates and amounts, and no part of your family.
- The shared Family Record, as ciphertext only. Names your family writes on the record page are encrypted on your device with a key made from your two gate keys before they reach us, and stored under an identifier we cannot connect to your order. We hold the parcel so your devices can pass it between them; we cannot open it.
What We Never Store
Your two gate keys. They are used in memory to encrypt your book and are gone the moment it is made. We cannot read them, recover them, or hand them to anyone, because they do not exist anywhere on our side.
About Children’s Names
The names of children in a book are provided by the purchasing adult, their parent or grandparent, to personalize a family keepsake. This site is for adults; we do not knowingly collect information from children themselves, and children’s names appear only inside the family’s own encrypted book.
How We Use It
To create, host, deliver, and edit your book, and to answer you when you write to us. That is the whole list. We do not sell or rent your information, and this site uses no third-party analytics and no advertising trackers. There is one cookie of our own: if you arrive through a link someone shared that carries a code, we keep that code on your device for thirty days so that we can pay them if you buy. It holds the code and nothing else, only we can read it, and it never travels to any other company. In the United Kingdom and the European Union we do not set it at all.
On Your Device
Book pages use your browser’s local storage to remember reading progress, the psalm you are on, and, after a successful unlock, the unlocked state of the gate. All of that stays on your device and is not transmitted to us. The one exception is the Family Record: the names on that page travel between your family’s devices as the encrypted parcel described above, because that is the point of the page.
Where It Lives
We run on carefully chosen processors: Vercel hosts the site and stores generated books in private storage served only through this site’s own pages; Supabase stores order records; Stripe handles payment; Resend delivers email. Each receives only what its job requires. Hosted books live at unguessable addresses, are excluded from search engines, and hold their text encrypted behind your family’s keys.
How Long, and How to Be Forgotten
We keep your order record and family details so your edit link keeps working for the life of the service. If you want your data deleted, email support@ourfamilyheirloom.com from your purchase address and we will delete your order record, your intake details, and your hosted book. Your downloaded file is yours and unaffected. We answer deletion requests within thirty days.
Security, Honestly
We use reasonable technical measures: encrypted connections, private storage, an encrypted book format, and unguessable links. No one can promise absolute security, and we will not pretend to. If a breach ever affects your data, we will tell you promptly and plainly.
Changes
If this policy changes, the effective date above changes with it, and material changes will be noted on this page.