Privacy Policy
Last updated: January 2026
This Privacy Policy describes how QuizzyNest Ltd ("we", "us", or "our") collects, uses, and protects personal information when you visit or use quizzynest.co.uk. We are committed to protecting the privacy of parents and children through a strict "privacy by design" and data minimisation approach.
Special Notice: Our Avatar System
To ensure maximum safety and compliance with COPPA (USA) and UK GDPR, we operate a pseudonymized service. We do not collect real names of children. All student profiles are created using a fictional "Avatar" name chosen by the parent.
1. Information We Collect
1.1 Information provided by the Parent
- Personal Identifiers: Name and email address used for account management and coaching reports.
- Billing Information: Payment processing is handled by Stripe. We do not store sensitive credit card data on our servers.
- Verification: Subscription payment serves as Verifiable Parental Consent (VPC).
1.2 Information related to the Avatar (Child)
We collect only the minimum data required for educational coaching:
- Avatar Nickname: A fictional name provided by the parent.
- Level/Age: To calibrate challenge difficulty.
- Performance Data: Quiz results, badges, and learning progress.
2. Data Infrastructure & Processors
To provide a secure and reliable service, we utilize the following specialized third-party processors:
- Supabase: Our primary secure database provider for storing account data and learning progress.
- Stripe: For secure payment and subscription processing.
- MailerLite: For delivering weekly coaching content and reports.
- Google reCAPTCHA: To protect our systems against automated attacks.
3. Global Compliance
3.1 COPPA (USA)
We do not knowingly collect "Personal Information" (as defined by COPPA) from children under 13. All data collection is managed via the parent's account with their express consent.
3.2 UK GDPR & Data Exports
As we serve a global community, data may be processed on secure servers located outside the UK/EEA (e.g., via Supabase/Stripe). We ensure all transfers comply with UK GDPR "adequacy" requirements and standard contractual clauses.
Legal basis for processing personal data
- Contractual necessity – to provide subscriptions, digital content, reports, and secure access.
- Consent – for communications where required by law.
- Legitimate interest – for security, fraud prevention, and service improvement.
4. Data Retention and Security
Your data is stored securely in our Supabase encrypted database. We retain information only as long as your account is active. If you cancel your subscription, Avatar-related performance data is deleted after a reasonable retention period unless legal requirements dictate otherwise.
5. Your Rights
You have the right to access, correct, or request the permanent deletion of your personal data and your child's Avatar data at any time by contacting our support team.
If you believe your data protection rights have been violated, you have the right to lodge a complaint with the UK Information Commissioner’s Office (ICO).
6. Contact and Inquiries
Bartle House, 9 Oxford Court, Manchester, M2 3WQ, UK.
ICO Registration: C1831536
Email: support@quizzynest.co.uk
