Privacy Policy
The short version. Children do not create accounts in KidsAccount and cannot sign in. We never ask a child for a date of birth, an age, an email address, or a password — there is nowhere in our system to put them. A parent types a nickname for each child, and that is the only thing resembling a name we hold. All money in the app is simulated. There is no advertising and no analytics or tracking software of any kind.
Who this is from
KidsAccount is an independent app built and operated by a single developer. It is not a company, a bank, or a financial institution. Questions about this policy or about your data go to brett.cantrell.ai@gmail.com.
What we collect
This is the complete list. Everything here exists because the app cannot work without it.
| What | Where it comes from | Why we hold it |
|---|---|---|
| Parent email address and account identifier | Your Apple or Google account, when you sign in | The only real identity in the system. It is how you sign back in and how your family is linked to you. |
| A nickname for each child | Free text typed by the parent | So you can tell your children apart in the app. See the note below — this is not a real name. |
| An emoji for each child | Chosen by the parent | Display only. |
| A device identifier for each child's device | Generated by the app on that device | Authenticating that one device, and nothing else. Explained further below. |
| A push notification token | Apple's or Google's notification service, if notifications are allowed | Delivering notifications. Nothing else. |
| Purchase records | Apple, when you buy an extra child or parent slot | Knowing what your family has paid for. We receive a transaction reference and the product bought — never your card details. |
| The activity you create in the app | You and your children using it | Simulated balances, allowances, savings goals, and transactions. This is the app's actual content. |
What we never collect
- No date of birth or age for a child. There is no such field anywhere in our database.
- No email address or password for a child. Children never create an account and never sign in.
- No real financial data. KidsAccount is not connected to any bank. It never touches real money, real accounts, or real card numbers. Every balance is simulated.
- No location data, no contacts, no photos, no microphone access.
- No advertising. There are no ads in the app and no advertising software in it.
- No analytics or tracking. There is no analytics, attribution, or crash-reporting SDK in the app. We do not build profiles and we do not track anyone across other apps or websites.
About the nickname
When you add a child, the app asks for a nickname — a color, a fruit, an inside joke, anything. It is a label so you can tell rows apart. Nothing checks it, nothing requires it to be a real name, and nothing in the app needs it to be one. If you would rather we held nothing resembling your child's name, use something unrelated. The app works exactly the same.
About the device identifier
When a child joins, the app generates a random identifier for that device and stores it alongside their profile. When that device asks for the child's data, we check the identifier matches. That is its entire job.
We want to be straightforward about this rather than bury it: under the United States Children's Online Privacy Protection Act (COPPA), a persistent identifier collected from a child counts as personal information. COPPA allows one to be collected without parental consent where it is used only to provide support for the internal operations of the service — which is what this is. We use it solely to authenticate that device. It is not used to build a profile, is not combined with anything else, is never used for advertising, and is never shared.
A push notification token can likewise be attached to a child's profile, so their device can receive a notification. It is used only to deliver notifications.
How children join
A child never creates an account. The parent generates a short-lived code on their own device, and the child's device scans it to join the family. These codes expire automatically. There is no child login, no child password, and no way for a child to sign up on their own.
Where the data lives and who can see it
Data is stored in a hosted Postgres database provided by Supabase, our backend provider. Sign-in is handled by Apple and Google. Purchases are handled by Apple. Those are the only third parties involved, and each receives only what it needs to do its part.
We do not sell data. We do not share it for advertising. We do not disclose it to anyone else, except where we are legally required to.
Access is restricted at the database level so that one family's data is only reachable by that family.
How long we keep it
We keep your family's data for as long as you use the app. Delete a child and their profile and activity are removed. Ask us to delete your account and we remove the family and everything belonging to it.
Your choices
- See or correct anything. Nearly all of it is visible and editable in the app. Email us for anything that isn't.
- Delete a child. Available in the app, and it removes their data.
- Delete everything. Email us and we will remove your family's data.
- Turn off notifications. In your device settings, or by declining the prompt.
As the parent, you are in control of your children's information here. If you would like us to delete anything belonging to your child, or you want to know what we hold, email brett.cantrell.ai@gmail.com and we will handle it.
Changes to this policy
If this policy changes we will update the date at the top of this page. If a change is significant, we will make it obvious in the app rather than relying on you to re-read this page.
Contact
Email: brett.cantrell.ai@gmail.com
Questions, deletion requests, or anything about your family's data — this address reaches a person, not a queue.