WhizKids

Privacy

Last updated 3 September 2026

The short version

What we collect

From the parent: an email address and either a password (stored as a one-way hash) or a Google sign-in. Optionally a name and a date of birth for the parent's own account.

For each child profile: a nickname the family chooses (we block nicknames that look like phone numbers, addresses or unkind words), an avatar, a grade, and an optional 4-digit PIN (stored as a hash). Nicknames should not be a child's real full name.

Learning activity: which questions a profile answered and whether they were right, lessons practiced, puzzles finished, XP, streaks, badges and cards earned. This is what makes progress, recommendations and the parent dashboard work. We also keep a first-party log of product events (for example "lesson completed") tied to the profile number only, to understand what children enjoy.

Technical: your browser's time zone (so streaks roll at your midnight), and standard server logs. We rate-limit sign-in attempts by network address; addresses are not stored with profiles.

What we never do

Third parties

Google Sign-In (only when a parent chooses it, and only on the sign-in screen). Listen Mode may generate audio for a lesson using Google's Gemini speech service; the text sent is the lesson or question itself, never anything about the child, and the audio is cached so each text is generated once. Some answer photos are loaded from Wikimedia Commons.

Parent choices

Contact

Questions or requests about a child's data: use Send feedback from your account, or email the address on the About page.