Privacy policy
The short version: we collect the least we can, an instructor sees almost none of it, and you can delete all of it from inside the app.
What we collect about a child
- A first name and a last initial.
- A birth month and year, used only to work out an age and a grade band.
- Which activities they are enrolled in, and whether they attended.
- The cosmetic choices they make — theme, buddy, badge style.
There is no surname field anywhere in Frap. We do not collect a home address, a school name, or a photograph of a child — avatars are chosen from a fixed set and cannot be uploaded.
children.dob, this section must say “a date of birth, used only to work out an age and a grade band”. Publishing the stronger wording early makes this policy inaccurate on its most sensitive point.What an instructor can see
A first name, a last initial, an age band and a grade band. That is the entire list, and it is enforced structurally: instructors hold no permission on the child record and read a separate view containing no other columns. The safety page explains this in full.
What we collect about a parent
- An email address, used to sign in and to send you things you asked for.
- Payment identifiers from our payment processor. We never see or store card numbers.
Analytics
We use Google Analytics to understand which pages are read. No analytics event carries a child’s name, birth date, school or precise location — that is a rule the product is built around, not a setting.
Transactional email is sent through Resend. If you left an address for the waitlist it is used for exactly what you asked for. Reply to any of it and we delete the address.
Deleting everything
Here is how, and exactly what goes.