Legal · version 2026-10-01
Privacy Policy
This is the working draft shipped with the closed family beta. It has not been reviewed by counsel and is not legal advice. The provider details below come from configuration.
Who we are
The service is run by Redpen closed beta. Questions about your data: bjorn@nerdblom.se. Data protection contact: bjorn@nerdblom.se.
What we keep, and why
- Guardian account: name, email and a password hash, to run the account and keep it secure.
- Student account: a display name, birth month and year, country, school year, and a username and password hash. We do not ask for a full name or an exact birth date. We use the birth month and year only to apply the minimum age and the national digital consent age.
- Learning data: the questions a student enters, the cases, their audit actions, notes, verdicts and progress, to run the service and show progress to the student and guardian.
- Consent records: who agreed to what, when, and under which version of these terms. They contain no IP address.
- Security logs: request logs without case text, notes or passwords, and truncated network addresses on sessions.
What we do not do
No advertising, no selling or sharing data for marketing, no profiling of students, and no emotion or attention tracking. Students’ text is not used to train AI models.
Who processes the data
Hosting, email and the AI provider are EU/EEA-based processors under contract. Only the text of the question and the machine’s answer is sent to the AI provider, never a name, username or any other identifier.
Your rights
You can see, export, correct and delete data. A guardian can withdraw consent for a student at any time from the student’s settings page: the student is frozen straight away and everything is deleted after 30 days unless consent is given again. Students can download their own data from the “My data” page. You can also complain to your national data protection authority.
How long we keep it
Learning data is kept while the account exists. Deleted accounts are removed after a 30-day grace period. Sessions and one-time links are removed when they expire.