Skip to main content

Your Child's Safety Is Our Top Priority

UnlockGenius.io is fully COPPA and FERPA compliant. We built our safe AI tutoring platform from the ground up to protect children, respect parental consent, and keep student data encrypted and private.

A child using a device at home with a parent nearby.

How UnlockGenius.io Keeps Kids Safe

Every safeguard is built in — not bolted on. Here is how we protect your child on our COPPA compliant AI tutoring platform.

COPPA Compliant

Full compliance with the Children's Online Privacy Protection Act. UnlockGenius.io meets every requirement for collecting and handling data from children under 13.

🏫

FERPA Compliant

Student education records are protected per federal law. UnlockGenius.io safeguards all academic data in accordance with FERPA regulations.

🛡️

Age-Gated Registration

Users under 13 require verified parental consent before accessing the platform. Our age gate ensures no child can sign up without a parent or guardian approving.

🔐

AES-256 Encryption

All data encrypted at rest and in transit using AES-256 encryption — the same standard used by banks and government agencies.

🚫

No Ads, Ever

Zero advertising. Zero third-party trackers. Your child's attention belongs to learning — not advertisers.

🔒

No Data Sharing

We never sell, share, or monetize student data with third parties. Your child's information stays on UnlockGenius.io and nowhere else.

Parental Controls on UnlockGenius.io

Parents and guardians have full visibility and control over their child's learning experience on our safe AI for kids platform.

Parent Dashboard

A dedicated parent portal gives you a complete overview of your child's learning activity, subjects studied, time spent, and progress reports — all in one place.

Full Progress Visibility

See exactly what your child is learning, which topics they excel in, and where they need more support. No hidden activity — complete transparency.

Session Management

Manage your child's tutoring sessions, review conversation history, and control account settings. Parents maintain full authority over the learning environment at all times.

How We Protect Learners Under 13

Our COPPA compliant registration flow ensures parental consent is verified before any child under 13 can use UnlockGenius.io.

1

Age Gate

During registration, every user provides their date of birth. If the learner is under 13, the standard sign-up flow is paused immediately.

2

Parental Email Required

The child must provide a parent or guardian's email address. UnlockGenius.io sends a verification request directly to the parent.

3

Consent Verification

The parent receives a detailed consent form explaining exactly what data is collected, how it is used, and their rights under COPPA. The parent must actively grant consent.

4

Restricted Account

Until parental consent is verified, the child's account operates in a restricted mode with limited functionality. Full access is granted only after consent is confirmed.

Experience Safe AI Tutoring — Claim Your Free Hour

Join thousands of families who trust UnlockGenius.io for COPPA compliant, encrypted, ad-free AI tutoring. No data sharing. No ads. Just safe, personalized learning for your child.

Claim Your Free Hour

The short answer

A child under 13 can't start a single session here until a parent has verified consent by email and entered a code. That isn't a checkbox during signup. It's a separate step, and until it completes the account exists but does nothing.

Beyond that, the honest summary is: we collect the least we can get away with, we don't sell any of it, you can read every conversation your child has, and you can delete the whole account and its contents whenever you want. The rest of this page is the detail behind each of those, because on this subject a claim without a mechanism isn't worth much.

How consent actually works

COPPA requires verifiable parental consent before collecting anything from a child under 13. Here's the specific method, so you can check it against the rule rather than take our word for it.

A code to your email, not a tick-box

You receive an eight-character code at the email address on the parent account and enter it to grant consent. Three wrong attempts locks the attempt. The record kept includes the timestamp and the confirming address, because the regulation requires the consent to be provable after the fact rather than merely claimed.

It expires after a year, on purpose

Consent lapses 365 days after it's granted and has to be renewed. A child whose consent has expired stops being able to start sessions until a parent renews it. Consent that never expires is consent nobody revisits. A child at twelve isn't the child who was signed up at eight.

You can withdraw it, and it takes effect immediately

There's a revoke control in the parent portal on both the consent page and the child's own page. Using it stops that child's sessions at the next attempt. It isn't a request that goes into a queue. COPPA gives you this right; a product that makes you email support to exercise it is technically compliant and practically not.

The child never has their own email address

A child account carries no email of its own. The parent address is the only one on file. There's no separate login for a child to recover, no address for anyone to reach them at, and no second account that outlives your control of it.

What is collected, and what is refused

The useful version of a privacy policy is a list of what a product decided not to take.

Collected from a child: first name, date of birth, grade, and any learning needs you tell us about

Date of birth is there because the age gate depends on it. Grade sets the starting difficulty. Learning needs are optional and only present if you choose to enter them. That's the whole list.

Never collected from a child: phone number, postal address, precise location, device fingerprint, or social profiles

These aren't fields we have and leave blank. They aren't requested at any point in the child flow. Location in particular is off, and there's no setting that turns it on.

Not exported, even to you

The platform forms internal working estimates in order to teach — how confidently a topic landed, what to try next. Those aren't shown to you, not included in a data export, and not shared with anyone. This is the one place we deliberately give a parent less than everything, because a rough machine estimate about a child is exactly the kind of thing that shouldn't end up in a school file.

Nothing is sold, and there are no ads

No advertising network is present on a child session, no data goes to a broker or a third party, and there's no analytics profile being assembled for resale. The business model is subscriptions. That's the only reason we can say this plainly.

What you can see and control

Oversight that requires you to ask us for something isn't oversight.

Every conversation, in full

The parent portal shows each session your child had — the subject, how long, and the complete transcript of what was said in both directions, including spoken sessions. Not a summary of it. If you want to read the whole thing at eleven at night, you can.

A shared link that needs a PIN

Giving a child access on their own device uses a link plus a six-digit PIN that you can see in the portal. Five wrong PINs locks that link for fifteen minutes. Generating a new link cancels the old one, so a link that has been shared somewhere you didn't intend can be retired in one click.

You are told when something concerning comes up

If a conversation touches on self-harm, bullying, or similar, the session surfaces real crisis resources to the child and an alert goes to you. Younger children are treated more cautiously than older ones by design. You aren't left to discover it by reading transcripts.

Told when the platform infers something you did not tell it

If the way a child works suggests a support need you never entered, you get an email saying so. COPPA requires notice before new inferred information about a child is collected. This is that notice, sent rather than buried in a policy update.

Deleting an account, and what that actually removes

Deletion runs across everything, not just the profile row: the account record, subscription and payment records, every chat and voice transcript, the family links, and the sign-in identity itself. It also blocks that email address from being re-registered, so a deleted account can't quietly reappear.

A deletion that fails part-way returns an error rather than reporting success, which matters more than it sounds — the common failure in this area is a product that removes the visible profile and leaves the identity behind.

Voice session transcripts also expire on their own after 90 days, whether or not anyone deletes anything.

What we are not claiming

Compliance is a floor, not a distinguishing feature. COPPA and FERPA describe the minimum lawful handling of a child's data in the United States, and any product serving under-13s should meet them. Meeting a legal minimum isn't the same as being careful, and a page that leads with a compliance badge is usually telling you it has nothing more specific to offer.

No filter catches everything. Content safeguards reduce the odds of something unpleasant reaching a child; they don't eliminate them, and anyone claiming otherwise about a conversational AI is overselling. The transcripts are complete and the alerts are real precisely because the filter isn't the only thing standing between your child and a bad moment — you are, and you need the visibility to do it.

We're also a young company. If what you need is a decade of operating history, that's a legitimate requirement and we don't have it yet. What we can offer is that everything on this page is checkable: read the privacy policy, request your data, delete the account and watch it go.

Everything parents need to safely onboard their child to AI tutoring — COPPA compliance, family controls, K-12 subjects, and our mission.

AI Tutoring for ParentsHomeschool AI CurriculumADHD & Dyslexia TutoringK-12 Online TutorKumon Alternative — AI TutoringCompare Tutoring PlansAbout UnlockGeniusCommon QuestionsArticles for Parents

Safety & Privacy FAQs

Is UnlockGenius.io COPPA compliant?
Yes. UnlockGenius.io is fully COPPA (Children's Online Privacy Protection Act) compliant. Children under 13 cannot create accounts without verified parental consent. All data is encrypted with AES-256 and never shared with third parties or used for advertising.
Is UnlockGenius.io FERPA compliant?
Yes. UnlockGenius.io complies with FERPA (Family Educational Rights and Privacy Act). Student educational records are protected, and parents retain the right to review, correct, and control their child's learning data.
Does UnlockGenius.io show ads to children?
No. UnlockGenius.io is completely ad-free. We never show advertisements to students or children of any age. The platform is funded entirely by subscriptions.
How does UnlockGenius.io protect student data?
All student data is encrypted at rest with AES-256 and in transit with TLS 1.3. We never sell or share student data with third parties. Parents can request full data deletion at any time through the parent dashboard.