Policy Areas Implemented
All 6 core Families Policy requirements are built into the app. Review the action items below for submission-readiness steps.
- Children (ages 6–13) are identified as 'child' role — access is parent-configured
- Athletes (ages 14+) identified as 'athlete' role with appropriate permissions
- Parent must explicitly enable app access for each child (app_access_enabled flag)
- Granular per-feature permissions: teams, calendar, messaging, marketplace, etc.
- Messaging restricted to parent-only by default for child accounts
- COPPA consent gate enforced before child account is created
- Parental consent stored on Child entity (app_access_consent_given)
- Parent email verification required before granting child app access
- sendCoppaConsentEmail function sends verifiable consent confirmation
- Parents can revoke access at any time from their dashboard
- Parent Monitor Mode available — parents can view child's activity
- Child content visibility guard wraps sensitive content
- Analytics events blocked/logged for child accounts (logAnalyticsBlock)
- ParentMonitorMode component provides real-time oversight
- Child profiles show parent name, email, and phone for accountability
- No behavioral advertising or third-party ad SDKs integrated
- No analytics tracking for child accounts (blocked by AnalyticsBlocklist)
- Minimal data collection: only name, age, sport, and emergency contact
- No social media sharing features available to child-labeled accounts
- Profile images optional — not required for child accounts
- AI-powered chat content filtering (filterChatContent function)
- Content report system with urgency auto-flagging for minors
- Messaging child guard prevents unsolicited contacts
- Background check status tracked for trainers who work with children
- Community posts/media reviewed before visible to child accounts
- Privacy Policy discloses all child data collection and usage
- Full account deletion flow available in-app and at /DeleteAccount
- Child data deletion handled via ChildDataDeletionDialog
- Data retention policy: deletion completed within 30 days
- Sign in with Apple token revocation on account deletion
Ensure your App Store listing specifies the age rating correctly (4+ or 9+ with parental guidance notes)
Submit the Google Play Data Safety form — use the DataSafetySummary page for pre-filled answers
Add your Privacy Policy URL (must be a live public URL) to both store listings
Apple: If your app targets children as the primary audience, it must comply with the Children's category — no third-party analytics SDKs allowed
Confirm the age gate (ImprovedAgeGate) is shown before any account creation flow
Consider adding a dedicated 'Parent's Guide' page or help center article explaining all parental controls