Privacy Policy
Chipster Kids is used by children, so this policy is written to the UK Children's Code as well as UK GDPR. It says plainly what we hold, why, who else touches it, and how to get rid of it.
Last updated: 10 August 2026
In force — pending professional review
This document applies to your use of Chipster Kidstoday and is the agreement between us. It was written specifically for this service against the UK Children's Code and UK GDPR rather than adapted from a template, and it is published in full so it can be checked. It has not yet been reviewed by a qualified adviser, and a small number of details are still marked as outstanding below. We will tell you before any material change takes effect, and your legal rights as a consumer apply regardless of what this document says.
1.Who we are
Chipster Kids is an online service that teaches children about artificial intelligence through short, gamified missions, served at chipsterkids.com. The data controller — the organisation legally responsible for the personal data described here — is Ankit Yadav, registered at Chawadi, Alwar, Rajasthan, India.
We are established outside the United Kingdom, so we are not registered with the Information Commissioner's Office — that register covers controllers established in the UK. Because we offer this service to families in the UK, UK GDPR still applies to us in full. UK GDPR Article 27 also requires us to designate a representative in the UK, and that appointment is in progress and not yet complete. We will name them here as soon as it is. In the meantime, write to us directly at synthvantage.official@gmail.com about anything in this policy — we answer every request ourselves, and your rights under UK GDPR are unaffected either way.
For anything in this policy, contact synthvantage.official@gmail.com. You can also complain to the ICO — see the end of this policy for how.
2.The short version
- Only adults can open an account. Children never sign up, never enter an email address, and never choose their own password — you create their profile and set the password that opens it.
- We ask for as little as possible. For a child that is a nickname, a name only you see, and — optionally — a birth year. Not a date of birth, not a school, not a photograph, not a location.
- Nothing about your child is public by default. The leaderboard is switched off unless you switch it on, and even then it shows a nickname and a cartoon avatar, never a real name.
- The data stays in the UK. Accounts and learning records are held in London, United Kingdom (eu-west-2).
- We do not sell data, show adverts, or track you around the internet. There are no advertising or analytics trackers in this product.
- You can take it all back. Download everything we hold about a child, or delete it permanently, from your dashboard.
3.For children: what we know about you
This bit is for you, not your grown-up. Here is the honest answer to “what does this app know about me?”
- We know your nickname — the fun name your grown-up picked with you.
- We know which missions you have finished and how you did on the quizzes.
- We know how long you spend learning, so your grown-up can see it too.
- We know which questions you tapped to ask the mascot.
- We do not know where you live, what school you go to, or what you look like. We never ask for a photo.
- Other children can never see your real name. If you are on the leaderboard, they only see your nickname and your robot picture.
- Nobody can send you a message here. There is no chat. When you ask the mascot something, you tap a question from a list that grown-ups have already checked.
If anything here makes you uncomfortable, tell the grown-up who set up your profile. They can turn things off, or delete everything, whenever you want.
4.What we collect about you, the parent
- Your email address and name— to create your account, sign you in, and contact you about your children's learning.
- Your password — stored only as a cryptographic hash. We cannot read it.
- Your consent record— that you confirmed you are the parent or guardian, and when. The Children's Code requires us to be able to show this.
- Your timezone— so “today”, streaks and any time limits you set mean your local day, not a server's.
- Two-factor details, if you switch it on. The secret is generated in your browser and stored by our authentication provider; it is never written to our own logs.
- Subscription status — which plan you are on and when it renews. Card numbers never reach us; see section 10.
5.What we collect about your child
A child profile exists inside your account. Children have no login of their own, no email address, and no way to change what is stored about them.
- A nickname — the only thing about a child that can ever appear on a screen another family sees, and only if you opt in.
- A display name — what you call them inside your own dashboard. This is never shown publicly, never printed on a certificate, and is deliberately not readable by the parts of the product that generate public content.
- A birth year, optionally — a year, never a full date of birth. It is used only to pitch the reading level of a lesson. Leave it blank and the product still works.
- A profile password— set by you, stored only as a hash, used so one sibling cannot open another's profile.
- Learning records — which missions were opened and passed, each quiz answer and whether it was right, scores, attempts, and the lesson text generated for them.
- Time and activity— minutes spent learning, days active, streaks, and a log of actions such as “opened a mission” or “submitted a quiz”, so you can see what they are doing.
- Which pre-approved questions they tapped in the Ask feature, so you can review them.
- Awards, collectible cards and, if you opt in, a leaderboard entry holding nickname, avatar, missions passed and time taken — and nothing else. There is no column in that table that could identify a child.
6.What we never collect
The Children's Code asks services to collect the minimum needed. These are not “off by default” — the product has nowhere to put them.
- No photographs or video of a child, and no facial images of any kind.
- No location data, GPS or otherwise. No geolocation feature exists.
- No school name, class, address or telephone number.
- No full date of birth — the year alone, and only if you give it.
- No contact details for a child. Children have no email address here.
- No free-text a child has written. There is no chat, no comments, no profile bio and no open text box anywhere on the child's side of the product.
- No advertising identifiers, and no third-party tracking or analytics.
The last two are enforced by how the product is built, not by policy. The Ask feature works by tapping a question from a list reviewed in advance, so there is no route by which a child's own words could be stored or reach anyone.
7.Why we are allowed to use it
Under UK GDPR we must have a lawful basis for each use. Ours are:
- Performing our contract with you — running the account, delivering missions, recording progress, and taking payment. This covers most of what we do.
- Your consent — for anything optional, most importantly putting a child on the leaderboard. Consent is asked for separately, is off until you give it, and can be withdrawn at any time without losing anything else.
- Legal obligation — keeping billing and tax records, and responding to data protection requests.
- Our legitimate interests— keeping accounts secure and preventing abuse. We rely on this narrowly, because the Children's Code expects a child's interests to come first when the two are weighed.
8.Default settings and your controls
The Children's Code says settings must be high-privacy by default, and that a child should not have to do anything to be protected. In this product:
- The leaderboard is off. A new child profile has no leaderboard entry at all — not a hidden one. Turning it off later deletes the row rather than concealing it.
- Nothing is shared with anyone outside your household. There are no friend requests, no following, and no way for another user to contact a child.
- You can pause instantly. Pausing a child, or the whole account, stops play immediately — including a session already open on another device.
- You can cap screen time with a daily minute limit and an allowed time-of-day window. Both are enforced on every screen a child can reach, in your local time.
- You can review everything — every quiz answer, every question they asked the mascot, and how long they spent.
These live on the Children page in your dashboard.
9.How the AI lessons work
Lessons and quiz questions are generated for each session rather than taken from a fixed library. Two things about that matter for privacy.
Nothing identifying is sent to the AI model.The request contains the mission topic and an age band such as “7–9”. It does not contain your child's nickname, name, birth year, account identifier, answers or history. The model is asked to write a lesson about a subject; it is not told who will read it.
Generated content is checked before a child sees it. Every lesson and every question passes through a separate automated safety review, and anything that fails is withheld and recorded. Photographs shown beside questions are checked the same way and are rejected if they show an identifiable face, whatever the licence permits.
Read-aloud narration uses your own device's built-in speech engine. The lesson text is not sent to any speech service.
11.Where it is kept, and for how long
Accounts and learning records are stored in London, United Kingdom (eu-west-2).
- While your account is open — we keep the learning record, because it is what the progress reports are made of.
- When you delete a child — their profile and everything attached to it is erased immediately and permanently. This cannot be undone, which is why the dashboard asks you to type the nickname to confirm.
- When you close your account — the same, for every child on it.
- Billing records — kept for as long as UK tax law requires, currently six years after the end of the accounting period, even after an account closes. These hold the transaction, not the learning data.
- Safety records — the log showing that generated content was checked before a child saw it is kept while the account is open, because deleting it would make the safety trail unverifiable.
12.Streaks, leaderboards and nudges
The Children's Code asks services to be straight about features designed to keep children engaged, so here is the honest account. This product has daily streaks, awards that get rarer, collectible cards, limited-time missions and an optional leaderboard. All of those are engagement mechanics, and we use them because mastery-based learning needs children to come back.
Where we draw the line:
- We never nudge a child to weaken their own privacy. Nothing in the product asks a child to join the leaderboard, share anything, or turn a protection off — those decisions belong to you, and are only in your dashboard.
- We do not send notifications to children, because we hold no contact details for them. Streak reminders go to you.
- Time limits you set are enforced even mid-streak. A streak never overrides a limit.
- There is nothing to buy inside the child's experience. No loot boxes, no currency, no purchases a child can make.
13.Profiling and automated decisions
We do not profile children for advertising or build behavioural profiles for anyone else.
We do adapt the teaching automatically: a child who fails the same mission repeatedly is re-taught the same idea with different examples, and quizzes weight questions towards recent material. Quiz marking is automatic, and passing decides whether the next mission unlocks.
These are decisions about learning, not about a person's rights, and you can see every input behind them in the reports. If you think an automatic decision has gone wrong, contact us and a person will look at it.
14.Your rights
You can exercise these for yourself and on behalf of your child. Children have the same rights, and the Children's Code expects them to be easy to use rather than technically available.
- See it — download everything held about a child as a file, from your dashboard, immediately.
- Correct it — edit a nickname, name or birth year at any time.
- Delete it — erase a child, or the whole account, permanently.
- Take it elsewhere — the export is machine-readable.
- Object, or ask us to stop — including withdrawing leaderboard consent, which removes the entry.
The first three do not require you to ask us: they are buttons in Settings. For anything else, contact synthvantage.official@gmail.com and we will respond within one month.
16.Keeping it safe
- Passwords — yours and your children's profile passwords — are stored only as hashes.
- Two-factor authentication is available on your account and, once on, is required to sign in.
- Access rules are enforced by the database itself, not only by the application, so one family's records cannot be read by another even if application code were wrong.
- Card details are handled entirely by our payment provider and never reach our systems.
- Traffic is encrypted in transit, and data is encrypted at rest by our hosting provider.
No system is perfectly secure. If a breach affects your rights we will tell you, and the ICO, within the timescales the law requires.
17.Changes to this policy
If we change how we use data in a way that matters, we will update the date at the top and tell you by email before the change takes effect — not quietly. Where a change needs your consent, we will ask for it rather than assume it.
18.How to complain
Please contact us first at synthvantage.official@gmail.com — most things are quicker to fix directly.
You also have the right to complain to the Information Commissioner's Office, the UK regulator for data protection, at ico.org.uk/make-a-complaint, or by calling 0303 123 1113. You do not need our permission, and you can go to them at any point.