1. Introduction
Welcome to Guardiora, a parental control and screen-time management application developed and operated by Infotik Ltd (“we”, “us”, or “our”), a company registered in the United Kingdom.
We are committed to protecting the privacy and personal data of all users — including parents, guardians, and the children whose devices are monitored through our app. This Privacy Policy explains what data we collect, why we collect it, how we use and protect it, and your rights under the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
By creating an account or using the Guardiora app or website (guardiora.infotik.co), you agree to the practices described in this policy.
If you do not agree with this policy, please do not use our services.
2. Who We Are
If you have any questions about how we handle your personal data, please contact us:
3. The Data We Collect
We collect different types of data depending on whether you are a parent/guardian (account holder) or whether the data relates to a child's device.
3.1 Parent / Guardian Account Data
When you create and manage a Guardiora account, we may collect:
- Identity data: Full name, email address
- Account credentials: Hashed password
- Billing data: Payment card details (processed by our third-party payment provider; we do not store full card numbers), billing address, transaction history
- Device data: Device type, operating system, app version, IP address
- Usage data: Login times, feature usage, settings configured within the app
- Communications data: Messages sent to our support team, live chat transcripts
3.2 Child Device Monitoring Data
Once a child's device is connected to a parent's Guardiora account, the app collects data from that device to provide our monitoring and control features. This may include:
- App usage data: Names of apps used, time spent per app, daily and weekly usage statistics
- Screen time data: Total daily screen-on time, active usage windows, sleep schedule compliance
- Web browsing data: URLs visited and search terms entered in monitored browsers (used to enforce browsing controls)
- Social media activity data: Usage time on social media apps (where permitted by platform APIs)
- Location data: Device location (only if the location-tracking feature is enabled by the parent)
- Gamification data: Points earned, goals completed, habit streaks, rewards history
- Communications data: Call duration logs and SMS metadata (where enabled; content of messages is not read or stored)
Important: We do not read the content of private messages. We collect usage metadata only where necessary to deliver the features you have enabled.
3.3 Data We Collect Automatically
When you use our website or app, we automatically collect:
- Log data (IP address, browser type, pages visited, timestamps)
- Cookie and tracking data (see our Cookie Policy)
- Crash and error reports
- Performance diagnostics
4. How We Use Your Data
We process personal data on the following legal bases under UK GDPR:
| Purpose | Legal Basis |
|---|---|
| Providing the Guardiora service and its features | Performance of a contract (Article 6(1)(b)) |
| Processing payments and managing subscriptions | Performance of a contract (Article 6(1)(b)) |
| Sending service-related notifications and alerts | Performance of a contract (Article 6(1)(b)) |
| Improving app features and fixing bugs | Legitimate interests (Article 6(1)(f)) |
| Sending marketing emails (with opt-in) | Consent (Article 6(1)(a)) |
| Complying with legal obligations | Legal obligation (Article 6(1)(c)) |
| Fraud prevention and security monitoring | Legitimate interests (Article 6(1)(f)) |
We do not use children's monitoring data for advertising, profiling, or any purpose beyond delivering the parental control features you have enabled.
5. Children's Privacy
Guardiora is designed to be used by parents and guardians to manage children's devices. We take children's privacy extremely seriously.
- Guardiora accounts may only be created by adults (18 years or older). Children do not create accounts directly.
- Data collected from a child's device is processed strictly for the purpose of providing screen-time management and safety features to the parent/guardian.
- We do not knowingly collect personal data directly from children for our own commercial purposes.
- Child monitoring data is linked to the parent's account and is not used for targeted advertising or sold to third parties.
- Parents may delete all child-related data at any time by contacting us or through their account settings.
If you believe we have inadvertently collected personal data from a child without appropriate parental consent, please contact us immediately at privacy@infotik.co.
6. Data Sharing and Third Parties
We do not sell your personal data. We may share data with trusted third parties only where necessary:
- Payment processors (e.g. Stripe, PayPal) — to process subscription payments securely
- Cloud hosting providers — to store and operate our infrastructure
- Analytics providers — to understand app performance and usage trends (anonymised or aggregated where possible)
- Customer support tools — to facilitate live chat and support ticket management
- Email service providers — to send transactional and marketing emails
- Legal and regulatory authorities — where required by law or to protect the rights and safety of our users
All third-party processors are bound by data processing agreements and may only process your data according to our instructions and for the purposes we specify.
7. International Data Transfers
Infotik Ltd is based in the United Kingdom. Some of our third-party service providers operate outside the UK and the European Economic Area (EEA). Where we transfer personal data internationally, we ensure appropriate safeguards are in place, such as:
- Standard Contractual Clauses (SCCs) approved by the UK Information Commissioner's Office (ICO)
- Adequacy decisions where applicable
- Other legally recognised transfer mechanisms
8. Data Retention
We retain your personal data only for as long as necessary:
- Account data is retained for the duration of your subscription and for up to 12 months after account closure, unless a longer period is required by law.
- Child device monitoring data is retained for up to 30 days of rolling history (as per our 30-Day Reporting History feature). You may request earlier deletion at any time.
- Payment records are retained for 7 years in accordance with UK financial regulations.
- Support communications are retained for up to 2 years.
9. Data Security
We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, loss, or disclosure. These measures include:
- Encryption of data in transit (TLS) and at rest
- Password hashing using industry-standard algorithms
- Access controls and role-based permissions for our staff
- Regular security reviews and vulnerability assessments
- Uninstall protection to prevent unauthorised removal of monitoring features
No system is completely secure. If you believe your account has been compromised, please contact us immediately.
10. Your Rights Under UK GDPR
As a data subject, you have the following rights:
- Right of access — You may request a copy of the personal data we hold about you.
- Right to rectification — You may ask us to correct inaccurate or incomplete data.
- Right to erasure — You may request deletion of your personal data, subject to legal obligations.
- Right to restrict processing — You may ask us to limit how we use your data in certain circumstances.
- Right to data portability — You may request your data in a structured, machine-readable format.
- Right to object — You may object to processing based on legitimate interests or for direct marketing.
- Right to withdraw consent — Where processing is based on your consent, you may withdraw it at any time.
- Right not to be subject to automated decision-making — We do not use solely automated decision-making that produces significant legal effects.
To exercise any of these rights, please contact us at privacy@infotik.co. We will respond within 30 days.
If you are not satisfied with our response, you have the right to lodge a complaint with the Information Commissioner's Office (ICO):
12. Marketing Communications
If you have opted in to receive marketing emails, you may unsubscribe at any time by clicking the “unsubscribe” link in any email, or by emailing privacy@infotik.co. We will process your request promptly.
13. Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email or through a prominent notice in the app. The “Last updated” date at the top of this page will always reflect the most recent version.
Continued use of Guardiora after changes are posted constitutes your acceptance of the updated policy.
14. Contact Us
For any privacy-related queries or to exercise your rights: