Children's Online Privacy Protection Act โ How PocketPals complies
The Children's Online Privacy Protection Act (COPPA) is a U.S. federal law that protects the privacy of children under 13. It requires operators of websites and apps directed to children to obtain verifiable parental consent before collecting personal information from children.
PocketPals is an app designed for children ages 3โ12. We take COPPA seriously โ not as a compliance checkbox, but as a core design principle. Children's privacy is baked into every feature we build.
We collect only: first name, age range (3โ4, 5โ7, or 8โ12), conversation transcripts (text only), and learning progress. Voice audio is processed in real time and never stored.
PocketPals is built by NuStack Digital Ventures LLC (Wyoming). To operate the service, your child's data passes through the following subprocessors. Each has a signed Data Processing Agreement (DPA) with us requiring COPPA-compliant handling:
| Subprocessor | Purpose | Child Data |
|---|---|---|
| Anthropic, PBC | Buddy LLM responses (Claude) | Yes โ conversation text. Does not train on PocketPals data. |
| OpenAI, LLC | Speech-to-text (Whisper STT) | Yes โ voice audio chunks, immediately discarded post-transcription |
| ElevenLabs, Inc. | Buddy voice synthesis (TTS) | Indirect โ Buddy reply text only, no child voice input |
| Supabase, Inc. | Database + storage (us-east-1) | Yes โ profiles, transcripts, memory facts |
| Vercel, Inc. | Application hosting, edge compute | In transit only |
| Stripe, Inc. | Web pathway parent payment + COPPA verification | No child data โ parent billing only |
| RevenueCat, Inc. | Native pathway subscription management | No child data โ parent subscription only |
| Apple Inc. | iOS in-app billing | No child data โ parent App Store account only |
| Google LLC | Android in-app billing | No child data โ parent Play Store account only |
| Resend | Transactional email (parents) | Indirect โ parent email + child first name in digest only |
| PostHog Inc. | Product analytics | Yes โ UUID + event names only. Never first names or transcripts. |
| Sentry, Inc. | Error monitoring | Indirect โ scrubbed payloads only, no child PII |
| Clerk, Inc. | Operator surface authentication | No child data at launch โ ops surface only |
| Inngest, Inc. | Background job processing | Yes โ UUIDs and operation types only |
| Doppler, Inc. | Secrets management | No user data |
| Cloudflare, Inc. | DNS, edge security | In transit only |
PocketPals uses Anthropic's Claude model to power Buddy's responses. The following safeguards are in place per our agreement with Anthropic:
Voice transcripts are retained for 90 days, then converted to summaries. Summaries are retained while the account is active plus 30 days. Moderation and safety events are retained for 24 months. Parental consent records are retained for 7 years. Audit logs are retained indefinitely. Upon account deletion, all child data is deleted within 30 days and you will receive a confirmation email with a deletion certificate ID.
You can exercise any of the rights above by:
We will confirm the action by email and complete it within 30 days of receiving your request.
To request deletion of all data associated with your child's account:
Request Data Deletion โInclude your account email in the message. We will complete deletion within 14 days and send a confirmation email with a deletion certificate ID. What is preserved: parental consent records (7-year legal hold) and anonymized aggregate statistics (no child PII). What is deleted: all transcripts, summaries, memory facts, child profile, and usage data.
Questions about our COPPA compliance?
Read our full Privacy Policy โ
NuStack Digital Ventures LLC ยท Wyoming ยท We respond within 30 days.
COPPA Compliance Notice v3 โ 2026-04-25 ยท NuStack Digital Ventures LLC ยท Wyoming