Parenting Applied

Privacy

What this site collects, and what it never asks for

Last updated August 3, 2026

Pre-launch note: Draft wording. This page has not yet been approved for publication, and it must be reviewed against the finished Meta reporting work before it goes live.

The short version

  • The quiz asks about your situation in fixed multiple-choice answers. There is no box to type in anywhere on this site.
  • We never ask for your child's name, exact birth date, school, contacts, private messages, or other identifying details. There is nowhere in our database to put them.
  • The only personal detail we hold is the email address you give at checkout, and it is stored encrypted.
  • Your card details are entered in Stripe's own payment form and never reach this site.
  • No advertising pixel and no third-party tracker runs on this site today. The code for a Meta pixel is here and it is switched off.

What the quiz asks

The quiz is a fixed set of multiple-choice questions about the decision in front of you: how soon you have to decide, what your child can use today, what a phone would actually have to do, what you would accept, what has already gone wrong, and how the adults at home see it.

Every answer is one of a fixed list. There is no free-text field anywhere in the quiz, and the server refuses any field it does not recognise.

One question asks for your child's age as a band — 9 to 10, 11 to 12, 13, or 14 and older. That band is the only thing about your child's age that exists here.

We never ask for, and could not store, any of this:

  • your child's name
  • their exact date of birth
  • their school
  • their phone number, usernames, or handles
  • the names of their friends
  • screenshots, messages, or a written account of something that happened

There is no column in our database for any of those, so none of them can be stored by accident.

Your answers are kept as short codes against an anonymous session. That session carries no name and no address, and there is no account to attach it to.

What your browser keeps

While you are answering, your browser keeps a draft of your answers on your own device, so a reload or an accidental back does not lose your place. It is cleared when you reach your result.

It is cleared straight away if you tell us a safety concern may be involved. That must not sit in the history of a shared family computer.

We do not use cookies to recognise you or to advertise to you. Cloudflare, which hosts this site, may set its own cookies for security and bot protection; those are not ours and are not used for advertising.

How you got here

If you arrived from an ad or a shared link, we record the campaign labels carried in that link — the source, the campaign, the ad set and the creative — and the ad platform's click identifier if one is present.

It is recorded once, on your first screen, and never changed after that. Every value is checked against a strict list of permitted characters before it is stored, so nothing written into a link can travel with it.

This is first-party. No cookie and no third-party tag is involved.

Your email address

You give an email address at checkout, before you pay. It is the only personal detail we ask for, and it is the only way back into a purchase, because there is no account and no password.

We use it to send you the private link to your kit, to send that link again if you lose it, to send the confirmation link a refund request needs, to tell you when a refund has been requested and when it has been sent, and — if you buy the First 30 Days program for your kit and start it — to send its twelve dated emails.

It is stored encrypted, under a key that is not in the database. A copy of the database on its own yields nothing readable.

It is also passed to Stripe as the address for your payment receipt.

We keep it for 400 days after the purchase and then a scheduled job clears it. It is never cleared while a refund request is open, because it is the credential your refund depends on.

We do not send marketing email, and there is no mailing list to be added to.

Paying

Your card details are entered in a form served by Stripe, inside Stripe's own frame. The number, the expiry date and the security code never reach this site, and we never see them.

What Stripe tells us afterwards, and we keep: the card brand, its last four digits, whether it is debit or credit, the country it was issued in, the results of Stripe's security checks, whether your bank asked for its extra confirmation step and what it answered, and Stripe's own reference numbers for the payment. Those are outcomes, not the details behind them, and we keep them so a card dispute can be answered.

We also keep a plain record of what happened to your order: that it was authorised, what you were shown and agreed to at checkout, that your email was queued, that your kit was built, when you opened or downloaded it, and any refund. It holds machine values only — amounts, states, times — and it is written once and never edited.

Stripe handles your payment under its own privacy policy.

What we measure

We keep a first-party record of the steps through this site: a page was viewed, a question was answered, a result was reached, checkout was opened, a payment was confirmed.

Each row carries the event name, the anonymous session, and a short list of permitted properties. That list is fixed in code and has no free-form entry on it, and the three properties the browser gets to choose are each restricted to a closed set of words. An answer value, an email address, a link code or a payment reference cannot travel on one, even by mistake.

We do not store your IP address or your browser's user agent alongside any of it.

IP addresses

One page uses your IP address and does not store it. On the page where anyone can type an email address and ask for their purchase link, we keep a one-way keyed fingerprint of the connecting address as a counter, so the page cannot be used to send mail at someone. The address itself is never written down, and the counters delete themselves once their window passes.

Advertising, and Meta

No advertising script runs on this site as it is published today. There is no Meta pixel in these pages, no Google tag, and no analytics script of any kind — the security policy this site is served with names no advertising address at all, so a browser would refuse to load one.

The code for a Meta pixel is now here, switched off. While no advertising account is configured it produces nothing: no script is written into any page, and no advertising address is added to the security policy. Switching it on is a deliberate change, and this page is updated before it goes live.

This is what would run if it were switched on. A Meta pixel, on two pages only — the home page and the quiz page. It would report that the page was opened and that you started the quiz. It would carry nothing about your answers, nothing about your child, and nothing about your result.

It would never run on your result page, the checkout, the offer page, your order page, your files page, or a refund link. Each of those addresses carries a private code, and a pixel reports the address of the page it is running on.

If your browser sends a Global Privacy Control signal, the pixel does not load and nothing is sent.

We also intend to report from our own server, so we can tell whether an advert paid for itself: that a result was shown, that a checkout was started, and that a purchase was made. The code for it now exists here. It is switched off in every environment, nothing has ever been sent, and no purchase of yours has been reported to anyone. This page will be updated again before it is switched on, and this is what such a report would carry:

  • your IP address
  • your browser's user agent
  • the Facebook click identifier, if you arrived from a Facebook or Instagram advert
  • a hashed identifier for your session
  • the amount you paid, and the currency
  • a hashed version of your email address, if that option is turned on

Hashing is not anonymity. A hashed email address is sent precisely so that it can be matched to an account — that is what it is for. Treat it as identifying, because it is.

Some things would never be sent under any of it: anything you answered in the quiz, your child's age band, your result or the plan you were shown, any link code, and any payment reference. And nothing at all is reported from a safety outcome.

Where your information is held

This site runs on Cloudflare — the pages, the database, the private storage your files sit in, and the email that carries your link. Payment is handled by Stripe. Those are the two companies your information reaches.

How long things are kept

Your quiz session and its answers.
Kept. There is no scheduled deletion of anonymous quiz sessions today.
Your result link.
Stops working 30 days after the quiz.
Your email address.
400 days after the purchase, then cleared.
The link that opens your kit.
365 days.
Your kit files.
Held in private storage for as long as your order exists.
Records of email we sent you.
The message itself is dropped once it has been sent; the fact that it was sent is kept.

What you can ask for, and what exists today

This is written plainly rather than generously, because a promise we cannot keep is worse than a limit we can state.

There is no account, so there is nothing to log into and nothing to delete from.

Your quiz session is anonymous. It carries no name and no address, so we cannot find yours from a description of it — the only handle on it is your result link, and that stops resolving after 30 days.

Your email address is deleted on a clock, at 400 days, and there is no button to delete it sooner. It is the only way we can get you back into a kit you paid for, so removing it early would take the purchase with it.

For anything else — a copy of what we hold, a correction, an earlier deletion — you need an address to write to, and we have not published one. That is a decision that has not been made yet, not an oversight. This page will name a contact when there is one to name.

Children

This site is for parents. Before the quiz starts, it asks you to confirm you are the adult making this decision. It is not written for children, and we do not knowingly collect anything from one.

Changes to this page

If what this page describes changes — in particular if reporting to an advertising platform is switched on — this page is updated before the change goes live, and the date at the top changes with it.