Important — this app involves children. CocoBucks is a family task and allowance app used by guardians and the children in their care. Because we store data about minors, we follow COPPA (Children's Online Privacy Protection Act) guidelines. Guardians create and manage all accounts; children do not register independently.

1. Who We Are

CocoBucks ("we", "our", "us") is a family productivity application. The app is operated by the CocoBucks development team. For privacy questions, contact us at privacy@cocobucks.app.

2. Who This Policy Covers

This policy applies to:

CocoBucks is not directed to children under 13 as independent users. Guardians must be 18 or older to create an account.

3. Data We Collect

Data Who It Belongs To Why We Collect It Linked to Identity
Email address Guardian Account authentication (Firebase Auth) Yes
User ID (Firebase UID) Guardian Identifies your account in our database Yes
Family name (optional) Guardian Personalise the family dashboard Yes
Child profile names / nicknames Child (entered by guardian) Display name on dashboards and notifications Yes
Child profile avatars (emoji or image) Child (chosen by guardian) Visual identification on dashboards Yes
Task-proof photographs Child (uploaded via app) Evidence that a task was completed; reviewed by guardian Yes
Task history & completion records Child Core feature — track chores and progress over time Yes
CocoBucks point balances Child Core feature — reward and spending system Yes
Reward redemption history Child Track rewards earned and redeemed Yes
Device push token (FCM) Device Push notifications for approvals and awards Yes
Crash diagnostic logs & performance metrics Device App stability and bug diagnosis (Firebase Crashlytics) No

Diagnostic and Crash Data

We collect anonymous crash diagnostic logs and performance metrics (such as device model, iOS version, and stack traces at the point of an unexpected termination) via Firebase Crashlytics to monitor stability and resolve bugs. This diagnostic information uses an anonymous installation ID and is not linked to your account, family data, or user identity.

Data We Do Not Collect

Tracking

CocoBucks does not track users across third-party apps or websites. We do not use advertising IDs (IDFA/GAID) and do not share data with ad networks.

4. How We Use Your Data

Data is used exclusively to provide the CocoBucks service:

We do not use your data for advertising, profiling, or sale to third parties.

5. Children's Privacy (COPPA)

CocoBucks stores data about children as part of its core function. We handle this data in accordance with COPPA:

Inactive Accounts & Data Deletion

Inactive child sign-in credentials are removed after 90 days of inactivity. Guardians may delete a child profile and all associated data (tasks, points, photos, history) at any time from the app or by contacting privacy@cocobucks.app.

6. Where We Store Your Data

Data is stored in Google Cloud services (Firebase/Firestore/Cloud Storage) in the United States. All data in transit is encrypted using TLS. Firebase Storage and Firestore data is encrypted at rest by Google.

Our security rules deny all direct client access to Firestore — all reads and writes go through our backend API, which enforces Firebase Auth token validation on every request.

7. Data Sharing

We do not sell, rent, or share your personal data with third parties for their own purposes. Data is shared only with:

Both are governed by Google's privacy policy and Data Processing Addendum.

8. Your Rights and Choices

As a guardian, you may:

9. Data Retention

10. Changes to This Policy

We may update this policy as the app evolves. Material changes will be communicated via the app or by email to the guardian account's registered address. The "Last updated" date at the top reflects the most recent revision.

11. Contact

Questions or deletion requests: privacy@cocobucks.app