Privacy Policy
Last updated: 2026-07-29. This page's wording is being finalized as part of a legal review; see the note in the file history of this page in our repository.
Plain-language summary
Before the formal policy below, here is what actually happens with your data:
- ChannelKeep is made by Vouch SARL, a company based in Morocco. Vouch SARL is the data controller for everything described on this page.
- We store your parent account (email address and a password hash -- never your plaintext password), your subscription state, and the devices you pair, each with the label you gave it.
- We store per-device watch history and screen-time data, tied to a random token for that device -- never to a child's name, age, or identity, because we never collect one.
- There are no child accounts. No names, ages, avatars, or profiles for children exist anywhere in our systems.
- No advertising identifiers, no fingerprinting, and zero third-party SDKs run in the kid-facing app -- including analytics and crash reporting.
- Playback connects the device to YouTube. We use privacy-enhanced
youtube-nocookieembeds, which reduce but do not eliminate this connection; YouTube may still set its own cookies and show ads. - You can delete a single device's data, delete your whole account, or export everything we hold, all from inside the app.
- Deleting your account does not cancel a store subscription. Apple and Google bill directly and we cannot cancel on your behalf.
The rest of this page fills in the detail behind each of those points.
Who we are
ChannelKeep is operated by Vouch SARL ("ChannelKeep", "we", "us", "our"), based in Morocco. Vouch SARL is the data controller responsible for the personal data described in this policy.
The data we collect
We keep this list deliberately short. Everything we store falls into one of these categories:
- Parent account data -- your email address and a password hash (a one-way cryptographic transformation of your password; we never store the password itself).
- Subscription state -- whether your family's subscription is active, on trial, or lapsed. Apple and Google handle the actual payment. Your card number, billing address, and payment history are processed entirely by Apple and Google and never reach our servers.
- Devices -- each device you pair with your account, stored with the label you chose for it (for example, "Kitchen iPad" or "Mom's phone"). We do not ask, and do not know, which child uses a given device or how old they are.
- Per-device activity data -- watch history and screen-time data, associated with a random token generated for that specific device. This token identifies a device, never a person.
What we deliberately do not collect
- No child accounts, ever. No child names, ages, birthdates, avatars, or profiles exist anywhere in our systems -- not in our database, not in analytics, not anywhere.
- No advertising identifiers (IDFA) and no device fingerprinting.
- Zero third-party SDKs run in the kid-facing app -- this includes analytics and crash-reporting tools, which many apps include by default. We built our own minimal telemetry instead, scoped to the data inventory above.
The trade-off of a device-based model, stated plainly
Because we tie activity data to a device rather than to a child, a device that more than one child uses will show combined history for that device. If two children share one tablet, their watch history is not separated. We chose this trade-off deliberately: the alternative would require us to identify individual children, which conflicts with the "no child accounts" commitment above. We think keeping no child data at all is the better trade, and we want you to know exactly what it costs before you decide whether it works for your family.
The YouTube/Google disclosure
ChannelKeep plays videos by embedding YouTube playback. When a video plays, the device connects directly to Google's YouTube service. That connection is between the device and Google -- it is not mediated or filtered by us. As a result:
- YouTube may set its own cookies on the device.
- YouTube, per its own terms of service, may show ads during playback.
We use YouTube's privacy-enhanced youtube-nocookie embed mode, which reduces the data YouTube's player collects before playback starts. It mitigates but does not eliminate this connection -- we do not control, and cannot promise, what Google does with data collected through its own service. We are telling you this plainly rather than implying a level of prevention we do not have.
Your rights and controls
All of the following are built into the app and work today:
- Delete a single device. From inside the app, a parent can delete one device's data -- its label, its watch history, its screen-time data -- immediately.
- Delete your entire account. From inside the app, a parent can delete their whole account. This is immediate and cascades: every device, every activity record, and the account itself is removed.
- Export your data. From inside the app, a parent can request a JSON export of everything we hold about their account and devices.
Retention
We keep activity data for as long as your account is active, because the features you use -- watch history, screen-time views -- depend on it being there. When you delete a device, that device's data is deleted with it. When you delete your account, everything tied to it is deleted with it. We do not hold data for any additional fixed window beyond that; there is no arbitrary retention period to disclose.
Subscriptions and account deletion
Deleting your ChannelKeep account does not cancel a subscription purchased through the Apple App Store or Google Play. Apple and Google process and bill store subscriptions directly, and we have no technical ability to cancel a store subscription on a customer's behalf. The app tells you, at the point you delete your account, how to cancel your subscription directly with Apple or Google so billing does not continue after your data is gone.
Children's data specifically
If you are looking for the parts of this policy that speak specifically to how we think about a child's data and consent, see our separate Child Data Notice, which this policy incorporates alongside our Terms of Service.
Contact
Questions about this policy, or requests we haven't automated yet, can be sent to legal@channelkeep.com.