Last updated: May 25, 2026
Kochvaia is a family app for tracking stars kids earn and the rewards they can save up for. This policy explains what data the app stores, who can see it, and how to delete it. It applies to the Kochvaia mobile app and the Kochvaia backend service.
Kochvaia is operated personally by the developer. There is no company. Questions about data or this policy: meldro364@gmail.com.
When a parent signs in or uses the app, we store:
sub id) and the email address tied to it. Used to recognize you across sessions.We do not collect: precise location, contacts, photos, browsing history, advertising identifiers, or any biometric data.
Nothing. Kochvaia does not sell or share data with third parties. We do not use advertising networks. The only third party that sees any data is:
Kochvaia is a parental tool: only a parent can create, rename, or remove a kid; only a parent can award or deduct stars; only a parent can add rewards. Kids' devices receive a read-only session that lets them view the family's current state. Kid sessions are paired by scanning a short-lived QR code generated on the parent's device — implicit parental consent for that device.
Data is kept as long as the family account is active. To delete a kid, use the trash icon in the parent app — that hides the kid from the family view and revokes any paired kid sessions. To delete an entire family (all parents, kids, stars, rewards, and sessions), email meldro364@gmail.com from the Google address you signed in with. We delete within 30 days and confirm by reply.
Session tokens are random 32-byte values; we store SHA-256 hashes at rest so a database leak would not expose live tokens. Tokens are transmitted only over HTTPS. The Android app stores its session token in EncryptedSharedPreferences (AES-GCM, Android Keystore). Google ID tokens are verified server-side against Google's public keys before any session is issued.
Kochvaia is designed for parents to use with their family. Kids do not enter any personal information into the app — a parent sets up the kid profile (name, emoji, colour) and pairs the kid device. We do not knowingly collect personal information from children. If you believe a child's information was collected without parental consent, email meldro364@gmail.com and we will delete it.
If we make a material change, we'll update the "Last updated" date at the top of this page. The current version is always at /privacy on the Kochvaia API host.