Security & Compliance
Your data, our posture
KidPrivacy processes the inputs you submit for analysis. This page states, plainly, what we handle and what we do not claim.
What we handle
lists of apps/devices, child age, and privacy-focus selections for family privacy screening.
Data handling commitments
- Submissions run the product pipeline and are retained only as long as needed for your audit log (paid tiers) or until you delete the run.
- We apply access controls consistent with GDPR Art. 32 (security of processing) where personal data is processed.
- BYOK keys (Enterprise), when offered, are stored server-side only and never exposed to the browser.
Honesty rule: KidPrivacy is a screening aid for parents/schools. We do not guarantee COPPA/GDPR-K compliance of any app, 100% safe installs, or that you will never miss a risk. We do not claim guarantee / 100% / never miss.
Our compliance posture
- KidPrivacy is decision-support, not a law firm, clinic, or certified auditor.
- For binding advice, consult a qualified professional in the relevant domain.
Subprocessors & payments
refs: FTC COPPA · GDPR children’s data (Art. 8) · ICO children and the UK GDPR