🚀 PlayPackBack to dashboard

Privacy & Safety

Effective: [date] · [Your Company] · A plain-English policy for families everywhere.

The short version: we protect your family the same way in every country — built to the strictest common standard (GDPR, COPPA, the Australian Privacy Principles and more). We collect as little as possible, we never sell it, there are no ads or third-party trackers, and you can access, correct, export or delete everything at any time.

1. Who this applies to

PlayPack is available worldwide. Wherever you live, we apply a single high privacy baseline and then honour the specific rights your local law gives you — see “Your rights by region” below.

2. What we collect

We only collect what is reasonably necessary to provide the service (data minimisation).

3. How we use it — and what we never do

We use personal information solely to run PlayPack. We never:

4. International data transfers

To run the service we use a few processors that may store or process data outside your country, including in the United States and the EU: Stripe (payments), Google (optional sign-in) and our hosting/database provider. Where data leaves your region we rely on recognised safeguards — the EU–US Data Privacy Framework, Standard Contractual Clauses, and adequacy decisions — and, for Australia, we take reasonable steps to ensure APP-consistent handling (APP 8).

5. Children’s privacy (worldwide)

PlayPack is designed for children, so a parent or guardian creates and controls the account and provides the only personal detail we hold about a child — a first name — which they can review, correct or delete at any time. We do not knowingly collect personal information directly from children. This model is built to satisfy children’s-privacy rules across regions, including COPPA (US, under 13, verifiable parental consent), the GDPR children’s provisions (EU, parental consent below the local age of 13–16), the UK Age-Appropriate Design Code, and Australia’s forthcoming Children’s Online Privacy Code.

6. Online safety (Safety by Design)

We design PlayPack to be safe by default — there is no user-to-user chat, no user-generated content, no public profiles and no ads. This follows the eSafety Commissioner’s Safety by Design principles and comparable child-safety expectations elsewhere. Report a concern at safety@playpackkids.com.

7. Security & data breaches

We take reasonable technical and organisational steps to protect personal information and to delete or de-identify it when it is no longer needed. If a breach is likely to cause serious harm, we will notify affected individuals and the relevant regulator within the timeframes required by law (for example, GDPR’s 72-hour rule, US state breach laws, and Australia’s Notifiable Data Breaches scheme).

8. Your rights (everywhere)

Wherever you live, you can:

9. Your rights by region

Pick your region to see the specific rights and who to contact.

EU/EEA GDPR, UK GDPR & Data Protection Act 2018

  • Access, rectify, erase (‘right to be forgotten’) and restrict your data
  • Data portability — export in a machine-readable format
  • Object to processing and withdraw consent at any time
  • We rely on the EU–US Data Privacy Framework and Standard Contractual Clauses for transfers
  • Children: handled under GDPR Art. 8 (parental consent below the local age, 13–16) and the UK Age-Appropriate Design (Children’s) Code

Complain to your national Data Protection Authority — in the UK, the ICO (ico.org.uk).

10. Marketing

We only send marketing emails if you opt in, and every message has an unsubscribe link (per CAN-SPAM in the US, PECR/GDPR in Europe, the Spam Act in Australia, and similar laws elsewhere). Essential account and billing emails are not marketing.

11. Complaints & contact

Contact our Privacy Officer at privacy@playpackkids.com and we’ll respond within a reasonable time. If you’re not satisfied you can complain to your local authority (see the region panel above). EU/UK users can also reach our representative at eu-rep@playpackkids.com.

Operator note: this template reflects how PlayPack is built and is written to a global standard (GDPR, UK GDPR, COPPA & US state laws, the Australian Privacy Principles, and others). Replace the bracketed placeholders and have it reviewed by privacy counsel for each market you launch in — especially verifiable-parental-consent mechanics, an EU/UK representative, and any local registration requirements.