Privacy notice for the product

Last updated: 2026-09-22

This notice covers the Playnitive toy and the parent app that goes with it: what happens to your child's data when they talk to the toy, and to yours when you manage the account. The short version: we do not keep raw audio, we store the text of a conversation encrypted for 60 days, we do not train any model on your child's words, and everything is processed inside the European Union.

If you gave us something on the website instead, for example by joining the waitlist or pre-ordering, that has its own notice: the website privacy notice

Who holds the data

The controller is Playnitive Kft. (company registration number 01-09-456341, registry court Fővárosi Törvényszék Cégbírósága, tax number 33048116-2-43), Hungary. For anything about privacy, write to [email protected]. We have not appointed a data protection officer; if we ever have to, their contact details will be published here.

Data about your child, and who consents to it

The toy is made for children aged 4 to 12, so everything we do with a child's data rests on your consent as the parent, under Article 8 GDPR. You create the account, you set up the child profile, and you switch play off when you want to. We never ask the child for consent and we never ask the child for any details: what the toy knows about them is what you told it, or what came out of the conversation. You can withdraw your consent at any time, which stops the processing from that point on.

What we hold

About your account: your name, your email address, a hashed form of your password, and the identifier we receive if you signed in with Google or Facebook. When you accept this notice or the terms of service, we record which document it was, its version, when you accepted it, your IP address and your browser or app identifier, because we have to be able to evidence the consent. About your child: their first name, their age, the few sentences you write about what they are into, and the play settings. Those are stored encrypted. From the conversation: the text of what the child said and what the toy answered. On top of that, operational data: how much the toy was talked to and for how long, event logs for fixing faults, and the record of your subscription and payments.

Why we use it

So the toy can answer your child in a way that suits their age and their interests. So you can see in the app what they talked about, and set when and how much they may play. So we can run your subscription and account for the usage. So we can find and fix faults. Nothing else. We do not build advertising profiles, we do not sell data, and we do not use your child's words to train artificial intelligence.

On what legal basis

For your account and for providing the service, the basis is performance of the contract between us, under Article 6(1)(b) GDPR. For the child profile and the conversations, it is your consent, under Article 6(1)(a) and Article 8 GDPR; you give that consent in the app and you can withdraw it at any time. For the accounting records that follow from a payment, we are under a legal obligation, Article 6(1)(c) GDPR.

How long we keep it

The text of a conversation is kept for 60 days, encrypted, and then deleted automatically. The daily summaries described in the next section are kept for 60 days as well. The child profile and the settings stay for as long as your account exists, or until you delete them. Your account data stays until the account is deleted. The records that evidence your consent are kept after the account is gone, for as long as we might have to show that the consent existed. Accounting records that follow from a payment must be kept for eight years from the end of the business year under Hungarian law, and that is the one thing we cannot delete earlier on request.

The daily summary, and what is in it

Every night we produce a summary of what your child talked about that day, and that is what you see in the app. The summary is deliberately not the conversation: it holds a few topic labels, a description of at most two sentences, and a single indicator that shows when something worth talking about came up during the day. That indicator is one yes or no and nothing else. We do not record what the subject was, how often it came up, or what was said, so nobody, us included, can read back from a summary what your child was going through on a given day: if the indicator appears, the person to ask is your child. The system that writes the summary is forbidden to quote, to name a person, a place or a date, or to draw conclusions about the child's emotional state, and answers that run too long are discarded. The app always shows you this summary and never the conversation text, even while that text still exists. Summaries are kept for 60 days.

Who else sees any of it

Microsoft, which runs the speech recognition, the language model, the speech synthesis and the nightly summary for us, inside the European Union. Microsoft monitors its service for abuse: a message its filter flags is by default reviewed automatically and not stored, and in rarer cases a human review may follow, where the message is held in a separate store for 30 days and can be read by its staff inside the European Economic Area. DigitalOcean, which runs the servers and the database in Frankfurt. Stripe, which takes the subscription payment; your card details never reach us. PostHog, which counts anonymous usage with no content in it. Zoho, which delivers our email. Each of them acts as a processor on our instructions, under a contract. Nobody else, and we hand a child's data to an authority only where the law requires it.

What we do not do

We do not keep raw audio: your child's voice is in memory only for as long as it takes to turn it into text, and then it is gone. There is no camera in the toy. The toy does not listen continuously; it only records when the child presses its paw. We do not identify the speaker, we do not build a voiceprint, and we collect no biometric data. We do not use your child's words to train general artificial intelligence, and our providers may not either. We build no advertising profiles and we sell no data.

How we protect it

Conversation text and the child profile are stored with AES-256 encryption. The connection between the toy, the app and our servers is encrypted. Access inside our team is limited to the people who need it for their work. If a personal data breach happens that is likely to be a risk to you or your child, we notify the supervisory authority as the law requires, and where the risk is high, you as well.

Your rights

You can ask us what data we hold and for a copy of it. You can ask us to correct anything inaccurate, to delete the data, to restrict how we use it, and you can object to the processing. You can withdraw your consent at any time, which does not affect the lawfulness of what was done before. You can delete your account immediately in the app under Profile, or request it on the website. Send any request to [email protected] and we will answer within one month at the latest. If you think we handled something badly, you can complain to the Hungarian National Authority for Data Protection and Freedom of Information (naih.hu), or go to court.

If this notice changes

If we change it materially, for example by adding a processor or changing a retention period, we will ask for your consent again in the app before the new version takes effect. Smaller clarifications are made here, and the date above always shows when it was last updated.