Legal

Privacy Policy

Effective September 14, 2026

Who we are

Guardia — including the GuardRail compliance API, the TrustEd parental dashboard, and the Guardia Companion apps for Android and iOS — is built and operated by the Campus Consortium Foundation (CCF), a non-profit education technology organization. This policy describes what data those products collect, how it is used, and how it is protected.

Who sets this up

Guardia Companion is installed and configured by a parent, guardian, or school administrator on a child's device — not by the child. Account holders (parents and district administrators) create the pairing code that links a device to a student profile in TrustEd; a child cannot enable or configure monitoring themselves.

What we collect

  • Account data: name and email for parents/guardians and district administrators, and either a hashed password or an identity from your organization's Microsoft Entra ID (Azure AD) single sign-on.
  • Student profile data: a student's name, grade band, and the district or family account they belong to.
  • From the Android companion app: text shown on-screen specifically within Gemini, ChatGPT, and Claude, captured via Android's Accessibility Service and sent to the linked parent's TrustEd dashboard. The service is scoped to only these three apps — it does not read any other app on the device.
  • From the iOS companion app: usage-time thresholds only (for example, 15, 30, 60, or 120 minutes/day) for Gemini, ChatGPT, and Claude, via Apple's Family Controls framework. Apple's platform does not allow any app, including ours, to read message content on iOS — the iOS app never collects or transmits what was said, only how long those apps were used.
  • From the Guardia Companion browser extension: once a parent enters a pairing code in the extension, it reads the text already visible on screen — the student's typed message and the AI's reply — specifically on gemini.google.com, chatgpt.com, chat.openai.com, and claude.ai, and sends it to the linked parent's TrustEd dashboard. It does not read any other website, does not log keystrokes as they are typed, and does not take screenshots or record video; it only reads a message once it has actually been sent or received. Before pairing, the extension does not read, store, or transmit any page content. The extension stores only its pairing token locally in the browser.
  • Policy configuration: the content-risk categories and custom policies a district administrator sets up in GuardRail.

How we use it

Collected data is used to display session activity and usage summaries to the specific parent or guardian linked to that student, to evaluate messages against GuardRail's content-risk policies and generate alerts, and to give district administrators aggregate compliance reporting. We do not use this data for advertising, and we do not sell it to third parties.

How we protect it

  • All traffic between the companion apps, the dashboard, and our servers is encrypted in transit (HTTPS/TLS).
  • Our database connection requires an encrypted connection (SSL).
  • Device pairing and message-ingestion endpoints are rate-limited to reduce abuse.
  • Only the parent/guardian linked to a student, and authorized administrators at that student's district, can view that student's data.
  • Sign-in is available via a hashed password or your organization's Microsoft Entra ID single sign-on.

Data retention

We retain data for as long as the associated account or device pairing is active, so parents and administrators can review activity history. You can request deletion at any time — see Contact below.

Children's privacy

Guardia is a tool for parents, guardians, and schools to supervise a child's use of AI apps — it is configured by an adult, not by the child, and is not directed at children as its own user base. If you are a parent or school administrator with questions about how your child's or student's data is handled, contact us below.

Your rights

You may request access to, correction of, or deletion of data associated with your account or your child's student profile by contacting us at hello@guardia.ai.

Changes to this policy

If we make material changes to this policy, we will update the effective date above and, where appropriate, notify account holders directly.

Contact

Questions about this policy or your data can be sent to hello@guardia.ai.