Back to LoolyTv·PrivacyTermsData deletion

Legal documents are provided in English.

LoolyTv Privacy Policy

Last updated: September 9, 2026

This Privacy Policy describes how LoolyTv (“we”, “us”, or “the App”) collects, uses, and shares information when you use the LoolyTv Android application, the LoolyTv.com website, and related services. LoolyTv is a curated kids video catalog app designed for children and families.

Who we are

LoolyTv provides a curated catalog of YouTube content intended for children. Contact: loolytv@salinnovation.com (replace with your public contact email before publishing).

Children and Families

LoolyTv targets children and complies with applicable children’s privacy laws, including the U.S. Children’s Online Privacy Protection Act (COPPA) and the EU General Data Protection Regulation (GDPR) where they apply.

  • A parent or guardian signs in with a Google account to create the App account (required for first registration).
  • After Google sign-in, a parent may optionally create a password for the same account and later sign in with email and password.
  • We do not show advertising in the App.
  • We do not sell personal information.
  • We minimize data collected about children. We do not use permanent hardware identifiers (such as Android Advertising ID or the device ANDROID_ID). Google Analytics uses a random Firebase app-instance ID instead.
  • Child profile fields (child’s first name or nickname and birth year) are provided by the parent during setup. We use them to personalize the family profile and to operate support and service administration—not for advertising.

Information we collect

1. Parent Google account

To create an account, a parent authenticates with Google. We receive from Google (via ID token verification):

  • Google account subject identifier
  • Email address
  • Display name (when provided by Google)

A parent who has already signed in with Google may set an optional account password. We store only a one-way password hash (not the password itself). Password reset emails contain a short-lived link and do not include the password. Email/password sign-in is an alternate way to open an existing Google-linked parent account; it does not create a new account without Google.

We store a session for each signed-in device so the App can sync the family library. A parent may also link additional devices with a short-lived pairing code (and optional QR deep link) without repeating Google Sign-In on that device. Each linked session has a role of parent or child. Child sessions can play the library but cannot add or remove playlists or change cloud library membership. You can review devices, revoke individual sessions, or revoke all sessions from Multi-devices in Options. The App does not request camera permission for pairing; parents may optionally scan the QR with the phone’s system camera.

While a device is signed in, we may keep a short-lived online presence signal (session id, parent/child role, and last-seen time) so we can operate the service and help with support. This signal is not shown to other families or to children in the App, and it is not used for advertising.

2. Family / child profile (parent-provided)

During onboarding, the parent may provide:

  • Preferred language and country (defaults from the device; editable)
  • Child’s name or nickname
  • Child’s birth year

3. Synced library membership and app options

We store on our servers (linked to the parent account):

  • Ordered list of playlist IDs the family added to their library (not the full video lists or thumbnails)
  • App options such as theme, language preference, captions, and playback mix settings

Video titles, video lists, watch position, and thumbnails remain on the device in this version. We do not sync playback progress to the cloud.

4. Installation identifier (random)

When you first open the App, we generate a random installation ID stored on the device. The App may send this ID with API requests so we can apply per-device rate limits and prevent abuse. The same ID is also used with content reports for rate-limiting, and we may store it on a signed-in session so signing in again from the same installation refreshes that session instead of creating another one. It is not derived from ANDROID_ID, advertising ID, IMEI, or other hardware identifiers. If a request does not include this ID, we may fall back to the signed-in account or the network IP address for the same purpose.

5. Device context (with suggestions and reports)

When a parent submits a content suggestion or a content report, we may receive:

  • Device manufacturer and model
  • Operating system version
  • Country and language preferences
  • App version

6. Search metrics and autocomplete

When a parent searches our curated catalog, our servers may:

Analytics (hashed):

  • Approximate query length
  • A non-reversible hash of the query for aggregate analytics
  • Selected topic, age filter, language filter, and result count
  • Timestamp

Popular search aggregates (for autocomplete suggestions):

  • A normalized copy of successful keyword queries (queries that returned enough catalog results)
  • Country code from the device locale (used to rank suggestions for that region)
  • Aggregate hit count and last result count

These popular-query records are not linked to a parent account or child profile. They are used only to power search autocomplete (similar queries and catalog channel titles). We do not use them for advertising or profiling children.

Exact YouTube IDs and URLs are not stored in the popular-query list.

7. User-generated content

  • Suggestions: YouTube links or IDs and an optional note submitted by a parent (after accepting the Terms of Use).
  • Reports: Playlist ID, reason, optional note, and the installation ID for rate limiting.

8. Data stored on the device

The App stores locally:

  • Cached playlist metadata, videos, and thumbnails for offline-friendly use
  • Last watched video and playback offset (device-local in this version)
  • Preferences when the device is offline
  • The random installation ID

9. YouTube and third parties

  • Playback uses an embedded YouTube player. YouTube (Google) may process technical data according to Google’s policies.
  • Sign-in uses Google Sign-In / Identity to create the account. Google’s privacy policy also applies to that authentication. Optional email/password sign-in uses credentials stored as hashed secrets on our servers.
  • We only serve videos that our backend has verified as Made for Kids when available.

10. Google Analytics (app and website)

The Android app uses Google Analytics for Firebase (Google Analytics 4) so we can see aggregate usage (for example app opens, sessions, and which screens are viewed). LoolyTv.com may also use Google Analytics for adult visitors of the website.

We configure the Android SDK for a child-directed app:

  • We do not collect the Android Advertising ID
  • We do not collect the device ANDROID_ID
  • We do not enable advertising, remarketing, or ad personalization
  • We do not send parent email, Google account identifiers, child names, playlist titles, or video identifiers to Analytics

Google receives a random Firebase app-instance ID, coarse technical data (app version, device category, OS version, country), and screen-view events with generic names (for example library or player). Google processes this data as an analytics provider under Google’s privacy policy. We use it only to operate and improve LoolyTv — not to advertise or to profile children.

11. Website waitlist and contact forms (parents / guardians)

On LoolyTv.com, parents or guardians may voluntarily submit:

  • Pre-tester waitlist: email address, optional name, language preference, and choices to join Google Play closed testing and/or receive a one-time notice when the app launches
  • Contact form: name, email, optional subject, and message text

These forms are intended for adults (parents/guardians), not for children. We do not use this information for advertising. We store submissions so our team can invite testers, answer support questions, and send the launch notice only if you opted in.

How we use information

  • Authenticate the parent and sync library membership and options across devices
  • Operate and improve the curated catalog
  • Power search autocomplete from aggregated popular queries
  • Moderate suggestions and reports
  • Prevent spam and abuse (rate limits based on the installation ID, signed-in account, and/or IP address)
  • Diagnose technical issues
  • Measure aggregate app and website usage with Google Analytics
  • Provide customer support and operate internal admin tools (restricted staff access only). Authorized staff may view parent email, parent display name, child name or nickname, account and library metadata, and whether a linked device is currently signed in, so we can identify a family, respond to parent requests, and keep the service secure
  • Manage pre-launch tester invitations and optional launch notifications requested on the website
  • Respond to contact messages submitted on the website
  • Comply with legal obligations

These identifiers are never shown to other families or to children inside the App. We do not use them for advertising or to profile children.

Sharing

We do not sell personal information. We may share limited data with:

  • Infrastructure providers that host our API and database (under contract)
  • Google for Sign-In, YouTube playback, catalog metadata, and Google Analytics (as described above)
  • Authorities when required by law

Website catalog preview (parents)

LoolyTv.com may offer a parent-facing catalog preview where you can browse curated playlists and optionally play a single video preview in an embedded YouTube player. This preview:

  • Does not require a LoolyTv account
  • Is intended for parents and guardians, not as a standalone kids product on the web
  • Uses a random session identifier stored in your browser session (not a persistent cookie) so our API can apply fair rate limits
  • Loads YouTube’s embed player only after you click play (via youtube-nocookie.com)

When you play a preview, Google/YouTube may collect information according to Google’s Privacy Policy. We do not use the web preview to build child profiles or to show advertising.

Retention

  • Account profile, library playlist IDs, and options: kept while the account exists
  • Hashed search metrics: purged after 90 days
  • Popular search aggregates (autocomplete): kept while useful for suggestions; may be pruned when inactive
  • Resolved content reports: purged after 180 days
  • Pending suggestions/reports: kept until reviewed, then subject to the same retention
  • Sessions: revoked sessions are invalidated; you may revoke all devices from the App
  • Website waitlist and contact submissions: kept until you ask us to delete them or they are no longer needed for testing/support (typically purged within 24 months)
  • Google Analytics events: retained according to the retention setting on our Google Analytics property (we aim for the shortest period that still lets us operate the service)
  • Server logs needed for security may be retained longer when required

Your choices and data deletion

You can:

  • Sign out of this device, or sign out of all devices
  • Delete your LoolyTv account (removes cloud profile, library membership, sessions, and related account data)
  • Request deletion of report data tied to an installation ID (see Data deletion)
  • Request deletion of Google Analytics measurement data we can locate (see Data deletion)

Paths:

1. Options → Account in the App (sign out / delete account), or

2. Visit our public data-deletion page at https://loolytv.com/legal/data-deletion, or

3. Email loolytv@salinnovation.com (include your waitlist/contact email if you want website form data removed)

We will delete account and associated cloud records we can locate, except where retention is required for security, fraud prevention, or legal compliance.

Security

We use HTTPS for network traffic, API keys for app-to-server access, signed user sessions, and restricted access controls for internal admin tools. Admin tools are not part of the App shown to children or other families. No method of transmission or storage is 100% secure.

International users

If you use the App from outside the country where our servers are located, your information may be processed in other countries with different data-protection laws.

Changes

We may update this Privacy Policy. The “Last updated” date will change when we do. Continued use of the App after changes means you accept the updated policy.

Contact

Questions about privacy: loolytv@salinnovation.com