KindHarbor Privacy Policy
KindHarbor is designed for data minimization.
Parent data: Parent authentication is handled by Supabase Auth and Apple or email magic link. Subscription state is handled through Apple and stored in Supabase only as needed for entitlement and message limits.
Consent record: KindHarbor stores which App Store transaction established verifiable parental consent, including the method, transaction identifier, and timestamp.
Child profile data: KindHarbor stores only nickname, age band, avatar color, parent owner, and timestamps. KindHarbor does not ask for or intentionally collect a child's full name, birthdate, school, phone number, email, home address, photos, voice recordings, passwords, or precise location.
Chat data: Child questions, AI responses, safety category, transcript metadata, usage ledger entries, and safety events are stored in Supabase so parents can review, export, and delete child data.
AI processing: The iOS app does not contain LLM API keys. Chat requests are sent to Supabase Edge Functions, which may use Anthropic models when production LLM mode is enabled. Mock mode may be used during testing.
Parent preview: Messages a parent sends in the parent preview are processed only to generate a preview answer and are not stored. KindHarbor keeps only a count of preview messages used.
No ads or analytics: The MVP has no ads and no third-party analytics.
Parent controls: Parents can review transcripts and safety events, export local JSON, adjust topic settings, delete a child profile and related child data, and delete the entire parent account and all stored data.
Retention: Chat transcripts, safety events, usage records, and audit entries are automatically deleted after 12 months. Parents can delete a child profile's data or the entire parent account sooner at any time, which removes the related data immediately.
Questions about this policy: [email protected]