Privacy Policy

Our website address is: https://nightnight.me

Data Collection and Processing

We collect and securely store the user’s name, userid, email and contact information, essential for personalized and engaging storytelling.

Given that the primary app users are parents or caregivers, obtaining parental consent is paramount for ethical and legal compliance, particularly with regulations like the Children’s Online Privacy Protection Act (COPPA) in the U.S. and equivalent global standards. We intend to store this information for two years, post which we will seek validation for sub-user data retention.

To ensure full compliance and safeguard our young audience’s privacy, we propose the following consent acquisition strategies and key disclosures to parents during the full implementation

Data Sharing

We do not share any of our user data with third parties without explicit consent of the user.

Data Retention

Only limited data from the user such as name, userid, email and basic contact information is stored on our project cloud instance for a limited period of three months. If you leave a comment requesting removal of your data, the specific user data will be removed within a 10 day period.

For users that register on our website (if any), we also store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except they cannot change their username). Website administrators can also see and edit that information.

Data Rights

If you have an account on this site, or have left comments, you can request to receive an exported file of the personal data we hold about you, including any data you have provided to us. You can also request that we erase any personal data we hold about you. This does not include any data we are obliged to keep for administrative, legal, or security purposes.

Ensuring Parental Consent

Age Verification: An initial step in our account creation process will verify if the user is an adult. Initially, this might be a simple checkbox, but we plan to incorporate a more robust age verification mechanism in the full product rollout.

Direct Notice to Parents: We will implement a system to inform parents directly about the nature of the data collected from their children, its usage, and sharing protocols. This notice will be straightforward, concise, and easily accessible.

Verifiable Parental Consent: In the full product phase, we aim to secure verifiable parental consent through regulatory-approved methods, such as digital signature consent forms.

Parent and Child Sub-accounts: Parents will create a master account with the option to add sub-accounts for their children, thus maintaining control over account creation and reinforcing the consent process.

Periodic Consent Verification: We plan to introduce a feature for periodically reaffirming parental consent, especially following significant updates to our data collection or usage policies.

Communication with Parents

We clearly communicate the following to parents:

Data Collection Purpose: The collection of contact information, user IDs, usernames, and story-related data aims to enhance app functionality, personalize the storytelling experience, and ensure security.

Information Collected: Detailed information on the types of data collected, including user interactions and story creations. While passive data like cookies and IP addresses may be received, these are not stored.

Usage of Collected Data: User and sub-user information will solely be used for story customization and app enhancement, with no third-party sharing.

Parental Rights: Upon full implementation, we will inform parents of their rights to review, delete, or restrict further collection of their children’s data.

Security Measures: Comprehensive security strategies will be employed, including AWS Cognito for authentication, data encryption, minimal data retention, and enhanced database security measures. After two years, all user and sub-user data will be purged unless reconsent is obtained.

Contact Information: Our contact details will be readily available for parents to address any privacy concerns or queries.

Privacy Practice Updates: Parents will be notified of any significant changes to our privacy practices, necessitating renewed consent.

When you log in, we will also set up several cookies to save your login information and your screen display choices. Login cookies last for two days, and screen options cookies last for a year. If you select “Remember Me”, your login will persist for two weeks. If you log out of your account, the login cookies will be removed.

Embedded content from other websites

We do not include any third party content on this site.