| Category | Items |
|---|---|
| Guardian account | Apple/Google sign-in identifier, email, name (if provided), language setting |
| Child profile | Display name (nickname recommended), age range, grade system, language setting |
| Activity records | Task submissions (photos, text, reading logs — photos are stored after EXIF/location data is removed), verification results, points and reward history |
| Device information | Push notification token, child device connection status |
| Website analytics (cookie-free restricted measurement) | Page URL, access time, device and browser type, approximate region, scroll depth, and download and app-store redirect clicks. Analytics cookies and persistent identifiers are not stored; names, email addresses, and child or family identifiers are not sent |
Providing the family task management service (creating, submitting, and confirming tasks), AI verification of children's submissions, settlement of points and rewards, sending service notifications, and improving service quality through cookie-free website journey and download conversion analysis.
Original photos are automatically deleted 30 days after upload. Writing and reading records are retained as learning records while the account is active. From the app's Privacy Management screen, guardians can directly delete child content, export data, and delete the account at any time.
Event-level website analytics data in Google Analytics is retained for up to two months under the property retention setting.
Aggregated reports may be retained longer. Website analytics only runs with Google Consent Mode set to analytics_storage: denied;
Google Signals and advertising personalization are disabled.
| Legal basis | User consent (Article 28-8(1)1 of the Personal Information Protection Act) |
|---|---|
| Items transferred | Submission text and photos (EXIF removed), child profile metadata (age range, grade system, language), task/verification-result metadata |
| Country, timing, and method of transfer | Overseas including the United States; transmitted in real time at the moment of submission; encrypted transmission (HTTPS/TLS) |
| Recipient | Overseas AI verification service provider |
| Purpose and retention | AI verification of children's submissions. Request bodies sent for AI processing are operated on the basis of transient processing without retention |
| How to refuse and its effect | The current version requires AI verification, so if you do not consent to AI verification you cannot proceed with family setup |
Authentication and data storage are handled through an overseas cloud infrastructure provider.
| Measurement method | Cookie-free restricted measurement for service quality improvement. Analytics and advertising storage remain denied |
|---|---|
| Items transferred | Page URL, access time, device and browser type, approximate region, scroll depth, and download and app-store redirect clicks. Analytics cookies and persistent identifiers are not stored |
| Country, timing, and method of transfer | The United States and other countries where Google data centers are located; cookie-free restricted signals are transmitted over HTTPS/TLS while the website is used |
| Recipient | Google LLC (Google Analytics) |
| Purpose and retention | Website journey and download conversion analysis; event-level data for up to two months |
| How to restrict and its effect | Use the browser's content-blocking controls; restricting analytics does not affect use of the service |
Except as required by law, we do not sell personal information. Other than AI verification and infrastructure processing and cookie-free restricted Google Analytics website measurement, we do not provide personal information to third parties. Website analytics data is not used for advertising personalization.
Child data is collected only within the scope consented to by the guardian at sign-up, and child devices are connected only via a connection code issued by the guardian. Guardians can delete child content or disconnect devices at any time.
Guardians can view, export, and delete data within the app, and additional requests (including account deletion) can be directed to contact@noventis.io.
Noventis Privacy Officer (Contact: contact@noventis.io)