Effective Date: July 2026 · Last Updated: July 2026
On-Device AI
End-to-End Encrypted
Remote Sync is Opt-In
Auto-Deleted Every 14 Days
1. Overview
TeenInbox ("we", "our", "us") is an AI-powered teen safety application. Our mission is to help parents protect
their children from online threats — without compromising anyone's privacy. This Privacy Policy explains exactly
how our app handles data, what stays on the device, and what (if anything) is ever transmitted.
Privacy-first by design. All AI inference runs locally on your teen's phone. By default,
no personal data — including messages, images, or threat reports — ever leaves the device.
This policy applies to the TeenInbox mobile application available for Android and iOS, and to our website at teeninbox.com.
2. What Data We Process
The table below outlines every category of data the app may encounter, and where it is processed:
Data Type
Where Processed
Transmitted?
Chat messages & text content
On-device AI only
Never (default)
Images & media
On-device AI only
Never (default)
Threat alerts (metadata only)
On-device; optional cloud relay
Opt-in & encrypted
App activity logs
On-device storage
Never
Waitlist email & phone
Our secure servers
Submitted by you
Crash / diagnostic logs
Anonymized on-device
Never (identifiable)
3. On-Device AI Processing
TeenInbox uses a fully on-device machine learning model to analyze text messages, images, and app content in
real time. This means:
The AI model runs entirely within the teen's phone — no internet connection is required for threat
detection.
Messages and media are never uploaded to any server for analysis.
The AI processes data in memory and immediately discards it after analysis; nothing is written to disk
beyond a minimal threat log (stored only on-device).
Parents receive alerts derived from the AI's verdict — not the raw content of conversations.
Think of it like having a security guard who watches but never writes down or shares what people say — they
only raise a flag if something dangerous happens.
4. Remote Sync (Opt-In Only)
By default, Remote Sync is disabled. All threat alerts are stored only on the teen's device
and are viewable only from the Parent Dashboard app installed on the same account.
Remote Sync must be explicitly enabled by the parent in the TeenInbox settings. It is turned
OFF by default and will never activate without your consent.
When Remote Sync is enabled:
1
Threat Detected On-DeviceThe on-device AI detects a potential threat (e.g., blackmail, explicit content, grooming
language).
2
Secure Alert Packaged LocallyA privacy-preserving alert packet is assembled on the teen's device — containing only the threat
category, risk level, app name, message and timestamp. No images is ever included.
3
End-to-End EncryptedThe alert is encrypted using keys only your family's devices hold. Our servers cannot read the
alert.
4
Delivered to Parent DashboardThe encrypted alert is relayed through our infrastructure and decrypted only on the parent's device.
You get an instant push notification.
5
Auto-Deleted in 14 DaysBoth the on-device log and any relayed alert data are automatically and irreversibly deleted after 14
days — even if you forget to delete them manually.
5. End-to-End Encryption
When Remote Sync is enabled, all alert data is protected by end-to-end encryption (E2EE):
Key Generation: Encryption keys are generated and stored exclusively on your family's
devices — on the teen's phone and the parent's phone.
Zero-Knowledge Relay: Our servers act only as an encrypted relay. We hold no decryption
keys and cannot read the content of any alert, even if compelled by law.
Forward Secrecy: New encryption keys are derived for each session, so past communications
cannot be decrypted even if future keys are ever compromised.
Transport Security: All data in transit is additionally protected with TLS 1.3.
TeenInbox never sees the content of what your teen is doing. We only relay a locked envelope — and only you
have the key.
6. Automatic 14-Day Data Deletion
14-Day Rolling Deletion Cycle
All data generated by TeenInbox — both on the teen's device and any encrypted alerts relayed to our servers —
is automatically and permanently deleted every 14 days.
This means:
On-device threat logs older than 14 days are wiped automatically, even if the app is not open.
Any encrypted alert packets stored on our relay infrastructure are deleted on a 14-day rolling schedule.
Deleted data cannot be recovered — not by us, not by you, and not by any third party.
You may also trigger an immediate manual deletion at any time from the Parent Dashboard settings.
The 14-day window is designed to give parents enough time to review and act on alerts, while ensuring data
doesn't accumulate over time and create long-term privacy risks.
7. Third Parties & Data Sharing
We do not sell, rent, or trade any personal data. Period.
No advertising networks. We do not integrate any ad SDKs or third-party trackers.
No analytics on communication content. We never analyse the content of your teen's messages
or the alerts you receive.
Limited infrastructure providers. We use trusted cloud infrastructure solely as an
encrypted relay (when Remote Sync is enabled). These providers have no access to your data — all data is
encrypted before it leaves your device.
Legal obligations. We may disclose account-level information (e.g., a registered email
address) if required by a valid court order — but because we hold no decryption keys, we cannot produce the
content of alerts or conversations even if ordered to do so.
8. Children's Privacy
TeenInbox is specifically designed to protect teenagers. We take their privacy just as seriously as their
safety.
The app does not collect any personal information from the teen directly (no name, email, or account
registration is required on the teen's device).
TeenInbox never reads, stores, or transmits the actual content of your teen's private messages by default —
only an AI verdict is generated on the device.
The Parent Dashboard account is held by the parent or legal guardian, not the child.
9. Your Rights
Depending on your location, you may have the following rights regarding your data:
Right to Access: Request a copy of the data we hold about you.
Right to Erasure: Request deletion of your data (waitlist information, account data). Note:
on-device and relay data is automatically deleted every 14 days regardless.
Right to Rectification: Correct any inaccurate data we hold.
Right to Portability: Receive your data in a portable format.
Right to Object: Object to any processing of your data.
Right to Withdraw Consent: Disable Remote Sync at any time from the app settings — data
sync stops immediately.
To exercise any of these rights, contact us at the details below. We will respond within 30 days.
10. Account & Data Deletion
We believe you should have full control over your data — including the right to delete it completely. Here is
exactly what happens when you uninstall the app or request account deletion.
Uninstalling the app permanently deletes all on-device data. This action is immediate and
irreversible — no backup of local data is retained by TeenInbox.
What happens when you uninstall
TeenInbox:
All on-device data is deleted immediately — including the local threat log, AI model cache,
app preferences, and any locally stored alert history.
No data is recoverable after uninstall. We do not keep a backup of any locally held
information.
Remote Sync is automatically suspended — no further encrypted alert packets will be relayed
to our servers once the app is removed.
What happens to data on our
servers:
Automatic 14-Day Server Purge
Any encrypted alert packets that were previously relayed to our servers (when Remote Sync was enabled) are
automatically and permanently deleted every 14 days on a rolling schedule.
You do not need to take any action — server-side purge is fully automated and cannot be paused or reversed
by us.
Because all relay data is end-to-end encrypted and keys exist only on your devices, even the encrypted
remnants are unreadable to us at all times prior to deletion.
1
You Uninstall the AppAll on-device data — threat logs, model cache, app settings — is deleted immediately and permanently
by your device's operating system.
2
Remote Sync StopsNo new encrypted alerts are sent to our servers. Any pending sync is cancelled the moment the app is
removed.
3
Server Data Auto-Purged Within 14 DaysAny encrypted relay data still on our infrastructure is automatically and irreversibly deleted within
the 14-day rolling window — even without any action on your part.
4
Nothing RemainsAfter the 14-day purge completes, no data — on-device or server-side — relating to your account exists
anywhere in TeenInbox's systems.
You never need to contact us to delete your data. Uninstalling the app removes all local data
instantly, and all encrypted server-side data is automatically purged within 14 days — no request
needed.
If you wish to request immediate deletion of any server-held data before the 14-day cycle completes, you may
contact us at contact@safescroll.app and we
will manually purge your records within 72 hours.
11. Contact Us
If you have any questions about this Privacy Policy, wish to exercise your rights, or need to report a concern,
please reach out:
We may update this Privacy Policy from time to time. When we do, we will revise the "Last Updated" date at the
top of this page. Significant changes will be communicated to you via the app or email.