Last updated 24 September 2026

Privacy Policy

KidPocket is a parent-managed virtual pocket-money app for children. This page explains what information we collect, why we use it, how parents control it, and how to contact us.

Who We Are

KidPocket is provided by Ludo Studio. Contact us at [email protected] for privacy requests and product support.

Postal address: To 74, Hoa An, Cam Le, Da Nang, Vietnam.

What KidPocket Does

Parent-managed

A parent or guardian creates the account, manages family data, sets the Parent PIN on each device, and controls deletion requests.

Virtual money only

Balances and ledger entries are educational records entered by the parent. KidPocket does not hold, move, lend, or process real money.

Child-focused

Kid Mode lets a child view their own pocket, request purchases, and customize a virtual Pocket Card.

Information We Collect

Category Examples Why We Use It
Parent account Parent email address, authentication identifiers, sign-in state. To create and protect the parent account, sign the parent in, and associate family data with the parent.
Family setup Family record, selected currency, timestamps. To organize the pocket-money records a parent manages.
Child profile Child display name or nickname, avatar selection, Pocket Card customization. To show the correct child pocket in Parent Mode and Kid Mode.
Pocket ledger Virtual income, purchases, purchase requests, approvals or declines, notes entered by the parent. To keep a parent-controlled history of virtual pocket-money activity.
Device security state Local Parent PIN hash, local Kid Mode binding, local install marker. To protect leaving Kid Mode and to reopen the app in the selected child mode when appropriate.
App configuration Remote Config values such as minimum supported build number and update URLs. To keep unsupported builds from continuing to run.

Information We Do Not Collect

  • Child email addresses or phone numbers.
  • Exact child date of birth.
  • Precise location, contacts, photos, microphone recordings, or camera recordings.
  • Advertising identifiers for child-directed advertising.
  • Public profiles, social graphs, or child-to-child messaging.
  • Bank account, payment card, wallet, transfer, or stored-value information.

How We Share Information

We use Firebase services to provide authentication, data storage, and app configuration. We do not sell personal information, and we do not use KidPocket for behavioral advertising to children.

We may disclose information if required by law, to protect the security of KidPocket, or with the parent account holder's direction.

Children's Privacy

KidPocket is designed for parent-managed use with children aged 4-10. The parent or guardian is the account holder and remains responsible for supervising the child's use of the app.

KidPocket does not provide child-to-child messaging, public child profiles, behavioral advertising to children, or independent child accounts.

Parent Controls

  • Parents can create, edit, and delete child profiles in the app.
  • Deleting a child profile hides the child profile while preserving historical ledger records unless a broader family-data deletion is requested.
  • Parents can delete the parent account and family data from the app.
  • If a parent cannot access the app, they can email [email protected] from the parent account email address for deletion help.

What May Be Retained

After deletion, we may retain limited records if required for security, fraud prevention, legal compliance, dispute handling, or backup recovery. De-identified or aggregate records that no longer identify a parent, family, or child may also be retained.

Security

KidPocket uses parent email/password authentication, Firestore authorization tied to the signed-in parent, and a local Parent PIN for leaving Kid Mode. Parent PIN plaintext is not stored. Production logs should not contain passwords, PINs, authentication tokens, or excessive child personal data.

Contact Us

For privacy, support, or deletion help, email [email protected]. Please contact us from the parent account email address so we can verify the request.