Introduction
Edureserve ("we," "our," or "us") operates the HabitStreak application (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service. We are committed to protecting your privacy and ensuring transparency in our data practices.
This Privacy Policy complies with major international privacy regulations including the EU General Data Protection Regulation (GDPR), California Consumer Privacy Act (CCPA), Children's Online Privacy Protection Act (COPPA), and other applicable privacy laws worldwide.
Information We Collect
Personal Information
We may collect the following types of personal information:
- Account Information: Email address, password (encrypted), display name
- Profile Information: User role (parent/child), family relationships
- Habit Data: Daily habit check-ins, progress tracking, rewards earned
- Communication Data: Messages between family members within the app
- Device Information: Device identifiers for push notifications
Children's Information (COPPA Compliance)
Our Service is designed for families and includes child accounts managed by parents. We comply with COPPA requirements:
- We require verifiable parental consent before collecting information from children under 13
- Parents have full control over their child's account and data
- We collect only the minimum necessary information for the Service to function
- Children cannot share personal information publicly through our Service
Automatically Collected Information
- Usage Data: App usage patterns, feature interactions, session duration
- Technical Data: IP address, browser type, operating system, device type
- Analytics Data: Anonymous usage statistics for app improvement
How We Use Your Information
We use the collected information for the following purposes:
- Service Provision: To provide and maintain the HabitStreak Service
- Account Management: To create and manage user accounts
- Communication: To send service-related notifications and updates
- Improvement: To analyze usage patterns and improve our Service
- Safety: To protect against fraud, abuse, and security threats
- Legal Compliance: To comply with applicable laws and regulations
Legal Basis for Processing (GDPR)
For users in the European Economic Area, our legal basis for processing personal data includes:
- Contract Performance: Processing necessary to perform our Service agreement
- Legitimate Interest: For app improvement, security, and fraud prevention
- Consent: For marketing communications and optional features
- Legal Obligation: To comply with applicable laws
Information Sharing and Disclosure
We do not sell, trade, or otherwise transfer your personal information to third parties, except in the following circumstances:
- Service Providers: Trusted third parties who assist in operating our Service (e.g., hosting, analytics) under strict confidentiality agreements
- Legal Requirements: When required by law or to protect rights, property, or safety
- Business Transfers: In the event of a merger, acquisition, or asset sale
- Parental Access: Parents have full access to their children's data within the family account
Data Security
We implement industry-standard security measures to protect your personal information:
- Encryption of data in transit and at rest
- Regular security audits and updates
- Access controls and authentication measures
- Secure hosting infrastructure
- Employee training on data protection
However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to protect your personal information, we cannot guarantee absolute security.
Data Retention
We retain personal information for the following periods:
- Account Data: Until account deletion or as required by law
- Habit Data: For the duration of active Service use
- Technical Data: Up to 2 years for security and analytics purposes
- Children's Data: Deleted upon parental request or when no longer necessary
You may request deletion of your data at any time, subject to legal retention requirements.
Your Rights
Depending on your location, you may have the following rights:
All Users
- Access and update your personal information
- Delete your account and associated data
- Opt-out of marketing communications
- Request information about data processing
GDPR Rights (EU/EEA Users)
- Right to access your personal data
- Right to rectification (correction) of inaccurate data
- Right to erasure ("right to be forgotten")
- Right to restrict processing
- Right to data portability
- Right to object to processing
- Right to withdraw consent
CCPA Rights (California Residents)
- Right to know about personal information collected
- Right to delete personal information
- Right to opt-out of the sale of personal information (Note: We do not sell personal information)
- Right to non-discrimination for exercising privacy rights
Parental Rights (COPPA)
- Review your child's personal information
- Request deletion of your child's information
- Refuse further collection of your child's information
- Change consent decisions
International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. We ensure adequate protection through appropriate safeguards such as Standard Contractual Clauses approved by the European Commission and other internationally recognized transfer mechanisms.
Third-Party Services
Our Service may contain links to third-party websites or integrate with third-party services. We currently use:
- Supabase: Database and authentication services
- Analytics Services: For usage analysis and app improvement
- Push Notification Services: For sending notifications to your device
We are not responsible for the privacy practices of these third parties. We encourage you to review their privacy policies.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last Updated" date. For significant changes, we may provide additional notice through the Service or via email.
Terms of Service
This Privacy Policy should be read in conjunction with our Terms of Service, which govern your use of the HabitStreak application and define the legal relationship between users and Edureserve.
Contact Us
If you have any questions about this Privacy Policy or wish to exercise your privacy rights, please contact us:
Edureserve
Email: contact@edureserve.com
Website: https://app.edureserve.com
For EU residents: You also have the right to lodge a complaint with your local data protection authority.
Important Notice for Parents
HabitStreak is designed for family use. Children under 13 require parental consent to use the Service. Parents maintain full control over their children's accounts and data. If you believe your child has provided personal information without proper consent, please contact us immediately.