Privacy Policy

Last updated: January 17, 2026

Bank-Level Security: Your data is protected with AES-256 encryption and is COPPA & GDPR compliant.

Introduction

ParentSignal.io ("ParentSignal," "we," "our," or "us"), a company registered in Israel, is committed to protecting the privacy and security of your personal information and the personal information of children whose accounts are monitored through our Service.

This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our child safety monitoring platform. As a service designed specifically for parents monitoring their children's online activity, we take our privacy obligations extremely seriously.

Please read this Privacy Policy carefully. By using ParentSignal, you agree to the collection and use of information in accordance with this policy.

COPPA Compliance - Children's Privacy

✓ COPPA Compliant

ParentSignal fully complies with the Children's Online Privacy Protection Act (COPPA) and international equivalents for protecting children's data.

How We Handle Children's Data

ParentSignal is designed for use by parents and legal guardians (users must be 18+). We do not knowingly collect personal information directly from children. All data about children is provided by and controlled by their parents/guardians.

Parental Consent Requirements

  • Verifiable Parental Consent: By creating an account and adding a child profile, you confirm you are the parent or legal guardian of the child, or have explicit consent from the parent/guardian.
  • Right to Review: Parents can review all data collected about their child at any time through the dashboard.
  • Right to Delete: Parents can delete their child's profile and all associated data at any time.
  • Right to Refuse: Parents can stop the collection of their child's data at any time by removing the child profile.

Children Under 13

We handle data of children under 13 with the highest level of care:

  • We only collect data necessary for the monitoring service
  • We never use children's data for marketing or advertising
  • We never share children's data with third parties except as required for the service
  • We implement enhanced security measures for children's data
  • Parents have complete control over their child's data

Data Minimization - We Only Collect What's Necessary

We follow strict data minimization principles. We only collect information that is absolutely necessary to provide our monitoring and alert services.

What We Collect

Parent/Guardian Information

  • • Email address (for account and alerts)
  • • Password (hashed, never stored in plain text)
  • • Name (optional)
  • • Subscription and billing information

Child Profile Information

  • • Child's name or nickname
  • • Age/date of birth
  • • Social media usernames
  • • ID verification documents (encrypted, deleted after 90 days)

Monitoring Data

  • • Social media comments and posts
  • • Following/follower lists
  • • Media content (for safety analysis)
  • • AI-generated safety classifications

What We DON'T Collect

  • ❌ Social media passwords (we never ask for them)
  • ❌ Private direct messages (unless specifically authorized)
  • ❌ Location data
  • ❌ Device identifiers for tracking
  • ❌ Any data beyond what's necessary for monitoring

Security & Encryption Standards

Bank-Level Security

  • AES-256 Encryption: All sensitive data is encrypted at rest using AES-256-GCM, the same standard used by banks and governments.
  • TLS 1.3: All data in transit is encrypted using TLS 1.3, the latest and most secure protocol.
  • Secure Key Management: Encryption keys are stored separately and rotated regularly.
  • Hashed Passwords: Passwords are hashed using bcrypt with salt, never stored in plain text.

Additional Security Measures

  • • HTTPS-only access (HTTP requests are automatically redirected)
  • • Regular security audits and penetration testing
  • • Access controls and role-based permissions
  • • Secure cloud infrastructure with SOC 2 compliance
  • • Intrusion detection and monitoring
  • • Regular security updates and patches

GDPR & International Compliance

ParentSignal complies with the General Data Protection Regulation (GDPR) for users in the European Economic Area and other international privacy laws.

Your Rights Under GDPR

  • Right of Access: Request a copy of your personal data
  • Right to Rectification: Request correction of inaccurate data
  • Right to Erasure: Request deletion of your data ("right to be forgotten")
  • Right to Restrict Processing: Request limitation of data processing
  • Right to Data Portability: Receive your data in a portable format
  • Right to Object: Object to certain types of processing

To exercise any of these rights, contact us at daniel@parentsignal.io.

How We Share Your Data

We do NOT sell your personal information. We only share data in the following limited circumstances:

  • Service Providers: We use trusted third-party services (cloud hosting, AI analysis, email delivery) that process data on our behalf under strict data protection agreements.
  • Legal Requirements: We may disclose data if required by law, court order, or government request.
  • Safety: We may share information if we believe disclosure is necessary to prevent harm or illegal activity.
  • Business Transfers: If ParentSignal is involved in a merger or acquisition, your data may be transferred as part of that transaction.

Data Retention & Deletion

We retain your data only as long as necessary:

  • Account Data: Until you delete your account + 30 days
  • Scan Results & Alerts: 12 months, then automatically deleted
  • Child Profiles: Until removed by parent or account deletion
  • ID Verification: 90 days after verification, then securely deleted
  • Log Data: 90 days for security purposes

To delete your data: Use the account settings to delete your account, or email daniel@parentsignal.io. We will complete deletion within 30 days.

🍪Cookies & Tracking

We use minimal, essential cookies:

  • Authentication Cookies: Required to keep you logged in
  • Preference Cookies: Remember your settings
  • Analytics: We use PostHog for anonymous usage analytics to improve our service (you can opt out)

We do NOT use advertising cookies or share cookie data with advertisers.

Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by email and by posting the updated policy on this page with a new "Last Updated" date.

By using ParentSignal, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our privacy practices, please do not use our Service.