Privacy Policy
Effective August 29, 2026
COPPA direct notice
Provetree is used by families with learners ages 11–16. Only a parent or legal guardian may create an account. Creating a parent account (including via Google or Apple) is how we obtain verifiable parental consent before collecting information about a learner. We do not let a child create an independent account.
What we collect
We collect only what we need to run a parent-managed household:
- Parent email
- Parent display name
- Household name, derived from the parent display name when the account is created
- Parent password (stored by our identity provider, Amazon Cognito; we do not store plaintext passwords)
- Learner display name only (chosen and controlled by the parent; we do not collect a learner's legal name, school, grade, or date of birth)
- Gameplay and progress events: session start/completion, lane picks, scores, hints, concepts practiced, streaks — used so the parent can see what was practiced
- Tutorial leads: if a parent starts the free tutorial without an account, we store the parent email and display name they entered, with source "tutorial", and only after they check the consent box
- Browser sessionStorage holds the parent auth session after sign-in, and (for the tutorial) the lead the parent entered
Why we collect it
We use this information to create and authenticate the parent account, attach learner profiles to the household, run Solo Discovery and tutorial sessions, show the parent a progress summary, and (for tutorial leads) follow up if they asked to try the product.
What we do not do
We do not advertise to children. We do not show third-party ads. We do not sell personal information. There are no public learner profiles, no public matchmaking, no open chat, and no independent learner sign-in in this product.
How long we keep it
Account, household, learner profile, progress, and lead records are stored in our primary database until the parent deletes the account. Purchase and entitlement records are kept after deletion as a payment record, with the household reference removed so they no longer identify anyone. In-progress discovery sessions are held in Redis for about 6 hours; when a parent deletes an account we also delete remaining Redis session keys whose session ids we know, and any leftover keys expire by that TTL. Short-lived OAuth sign-in handoff tokens are held in Redis for about 30 seconds. Product telemetry is Prometheus counters and distributions tagged by gameplay mode only — not by learner or household. We keep rolling database backups for up to 35 days (automated snapshots and point-in-time restore). After you delete an account, live records are removed immediately; a restore from that backup window could still contain the deleted household until those backups expire. Our operational server logs are kept for about 30 days and are not part of account deletion.
How to review or delete information
Use Delete account on the parent dashboard, or email support@provetree.app from the parent account email. Deletion removes the Cognito login, parent account, household, learner profiles, progress records, and tutorial leads. Parents may also refuse further collection by not creating additional learner profiles and by deleting the account.
Contact
Provetree. support@provetree.app