← WatchGarden

Privacy Policy

Last updated July 15, 2026

WatchGarden is a parental control app that lets parents curate video channels so children only see approved content. This privacy policy explains what data the app collects, how it is used, and with whom it is shared.

By using WatchGarden, you agree to the terms described below.

Summary

Who We Are

WatchGarden is developed and maintained by an independent developer (referred to in this policy as "we", "us"). Contact: cristobalbtech@gmail.com.

Data We Collect and Where It Goes

Data stored only on your device

The following data is saved to the device using AsyncStorage and never transmitted anywhere unless you enable Premium cloud sync:

DataPurpose
4-digit parent PINProtects access to the parent area. Never transmitted, never synced to the cloud — even for Premium users.
PIN lockout stateTracks failed PIN attempts and lockout timers
Kid profiles (name + emoji)Identifies which child is using the app
Allowed video channels (per profile)Defines which channels each child can watch
Video likes (per profile)Lets children mark favorite videos; used to personalize the feed
Screen-time settings and daily usage (per profile)Enforces the parent-set daily watch limit and bedtime window; usage counters reset at local midnight
Watch activity log (per profile)Records which approved videos were watched and for how long to power the parents' weekly report; automatically deleted after 14 days
Cached video metadataTemporarily stores video titles, thumbnails, and durations to reduce API calls
Video API quota usageTracks daily API usage to stay within rate limits

Data collected when a parent signs in (Premium)

When a parent chooses to subscribe to Premium, they sign in with a Google account. This is the only way an account is created. The following data is then collected:

DataWhere it goesPurpose
Parent's Google email addressFirebase AuthenticationIdentifies the parent account so settings can be restored on another device
Firebase user ID (UID)Firebase Authentication, RevenueCatA pseudonymous identifier used to associate the subscription and cloud data with the account
Kid profiles, allowed channels, video likes, screen-time settings (daily limit, bedtime window), setup stateFirebase Cloud Firestore (users/{uid} subcollections)Syncs the parent's configuration across devices when signed in
Watch activity log (per profile, last 14 days)Firebase Cloud Firestore (users/{uid}/watchHistory)Backs up the weekly-report data so it survives reinstalls and is available on the parent's other devices
Subscription status (active/expired, plan, expiry date)RevenueCat + local cacheDetermines whether Premium features are unlocked

Important: the 4-digit parent PIN is never synced to the cloud — it remains device-local even for Premium users. Each device must have its own PIN set up.

Sign-in is fully optional. The app works as a free, fully offline-capable product without signing in.

Data collected from free-tier users (ads)

Free-tier users see Google AdMob ads (an app-open ad at launch, an interstitial ad before the Settings tab). The app requests non-personalized ads only (requestNonPersonalizedAdsOnly: true), meaning Google may collect basic information such as device type, language, and IP address to deliver an ad but does not build a behavioral advertising profile from a free user's activity inside WatchGarden.

Ads are completely disabled for Premium users.

Data sent to the YouTube Data API

The app sends channel-search queries and channel/video-ID requests to the YouTube Data API v3 to fetch channel info and video metadata. Requests include the app's API key but no personal user data — Google does not learn the identity of the parent or child from these requests.

Third-Party Services

ServiceWhat it processesPrivacy policy
Google Sign-InEmail address of the signed-in parentGoogle
Firebase AuthenticationEmail address, Firebase UIDFirebase
Firebase Cloud FirestoreKid profile names/emojis, allowed channels, video likes, screen-time settings, watch activity (Premium only)Firebase
RevenueCatFirebase UID + subscription statusRevenueCat
Google Play BillingPayment processing (we never receive payment details)Google Play
Google AdMob (free tier only)Non-personalized ad delivery; device type, language, coarse IP-based locationAdMob
YouTube Data API v3Channel search and video metadata requestsGoogle

Children's Privacy (COPPA)

WatchGarden is designed for use by families with children. The app is built around the principles of the Children's Online Privacy Protection Act (COPPA):

If you are a parent and believe we have inadvertently collected information about a child outside what is described here, contact us at cristobalbtech@gmail.com and we will delete it.

Data Retention and Your Rights

If you are located in a jurisdiction with applicable privacy rights (such as GDPR, UK GDPR, or the CCPA), you may have additional rights to access, correct, or port your personal data. Use the email above to make such a request.

Security

International Data Transfers

Firebase, RevenueCat, and Google AdMob are operated by Google LLC and RevenueCat Inc., both US-based companies. If you use the app from outside the United States, your data may be transferred to and processed in the United States and other countries where these providers operate. These providers offer Standard Contractual Clauses and other safeguards for international transfers.

Changes to This Policy

If this privacy policy is updated, the "Last updated" date at the top will be revised. Material changes will also be announced in the app's release notes on Google Play.

Contact

Questions about this privacy policy, requests for data deletion, or any other privacy concern: cristobalbtech@gmail.com.

Attributions

WatchGarden uses free icons from Flaticon. Content icons by srip — Flaticon.