Welcome to Habitopia (operated by Habitopia LLC, "we", "our", or "us"). We are committed to protecting the privacy of parents, guardians, and children using our mobile application and related services at https://www.habitopiaapp.com.
This policy explains how we collect, use, disclose, and protect information in compliance with global privacy frameworks including GDPR, COPPA, and applicable local privacy laws.
1. Data Controller
- Legal entity: Habitopia LLC
- Privacy email: support@habitopiaapp.com (Support center)
- Website: https://www.habitopiaapp.com
- Jurisdiction: United States of America
2. Information We Collect
We do not collect sensitive personal data such as biometric or health data, financial card details, or national identity numbers.
Adult / Legal Guardian Information
- Account data: email address and encrypted password for authentication (guardians and children who have their own login), display name, language preference, and optional profile picture.
- Security controls: a parental PIN, when enabled. Habitopia stores only a one-way hash of the PIN on our servers (Supabase) so it can be verified across devices. The PIN itself is not stored in plain text on the device.
Child Profiles
Child profiles are created exclusively by a verified parent or legal guardian. Some children may also have their own authenticated account (email and password) when a guardian links a dedicated device login.
- Basic data: display name or nickname, and age/date of birth. If the child has a linked login, an authentication email address.
- Gamification progress: completed chores, virtual coins, XP, badges, cosmetics, and internal system logs.
- Age data: processed solely to calibrate visual complexity, chore difficulty, and reward balance. It is never used for profiling, behavioral analysis, or advertising.
Family, Technical & Approximate Location Data
- Custom family group name and cryptographic/QR pairing tokens between family devices.
- Push notification tokens and unique device identifiers needed to deliver notifications and secure the service.
- Approximate location: city, region, and timezone inferred from device locale settings and, when needed, from the IP address of the connection (looked up via a geolocation provider such as ipwho.is). We do not use GPS or continuous location tracking. This helps schedules and family locale settings.
We do not use third-party advertising or behavioral analytics SDKs, and we do not operate crash-reporting or product-analytics services such as Sentry in the app. Operational records necessary to deliver notifications and secure the service may be stored in our database.
3. Children's Privacy
- No independent registration: all minor profiles must be created and managed by an adult guardian.
- No direct advertising or profiling: we do not display targeted third-party advertisements to children or build behavioral profiles for minors.
- Parental responsibility: parents remain responsible for the information configured in their family account.
4. Purpose & Legal Basis
- Account management: guardian email, password, and family name - performance of a contract.
- Gamification and progress: child nickname, age, chores, XP, and coins - guardian consent and contract performance.
- Notifications: device push token - legitimate interest and guardian consent.
- Subscription verification: device ID and store entitlements - performance of a contract.
- Approximate location / timezone: IP-based city/region/timezone inference - legitimate interest (service configuration) and guardian consent where required.
- Security: operational technical records needed to secure accounts and the parental PIN - legitimate interest.
5. Third-Party Services & Transfers
Habitopia does not process or store payment card details. Transactions are handled by the official app stores. We share only necessary data with Supabase (cloud database and authentication), Expo / EAS (app infrastructure), RevenueCat (subscription status), Firebase Cloud Messaging (push notifications), Apple App Store / Google Play Store (payments), and an IP geolocation provider (e.g. ipwho.is) for approximate city/timezone inference.
6. Retention & Erasure
Data is retained while a family account is active. When a primary guardian deletes their account, all family data, child profiles, and gamification progress are permanently purged from active databases within 30 days, except where law requires limited retention.
7. Your Privacy Rights
Parents and guardians can access and rectify information, request erasure, object to or restrict processing, request portability, or withdraw consent. To exercise these rights, contact Support.
8. Changes to this Policy
We may update this policy periodically. Material changes will be communicated through in-app notifications or this website before becoming effective.