Chorfy Privacy Policy
This policy explains how Chorfy handles information when families use the Chorfy app and related services. A parent, guardian, or other authorised adult controls the Family and the profiles within it.
Information Chorfy handles
- Account information: sign-in identifiers, email address, verification state, and sign-in provider information.
- Family content: profiles, roles, chores, approvals, rewards, balances, routines, messages, family dates, mood check-ins, saved moments, Tooth Fairy records, and other content a family chooses to add.
- Photos and media: optional avatars, chore proof, saved moments, and other images selected by a user.
- Device and notification data: installation identifiers, device type, app version, profile visibility, notification token and preferences, and security or sync status.
- Operational data: commands, audit events, error and performance data, anti-abuse signals, and records needed to keep shared Family state consistent.
- Global ranking data: a separate public nickname, initials or emoji avatar, Chorfy Level, next challenge, current streak, participation choices, private blocks, and reports.
How information is used
Chorfy uses this information to provide and synchronise Family features, apply permissions, deliver requested notifications, secure accounts and Families, process support requests, prevent abuse, recover from errors, and improve reliability. Chorfy does not sell personal information and does not use Family content for targeted advertising.
Children and family profiles
Child profiles are created and managed by an authorised adult. A child profile does not need its own email login. Adults should only add a child and enable optional features when they have the authority and consent required where they live. Chorfy is not intended for a child to create an independent account without adult involvement.
Global rankings and public identity
Global rankings are enabled by default for a Family using a generated pseudonymous identity. A Family admin can turn the feature off for the whole Family or hide and manage an individual child profile. A linked adult can edit or hide their own public identity. A child may edit only their public nickname and initials or emoji avatar from the secured Family device assigned to that child. A participating public profile contains only an opaque entry identifier, separate public nickname, initials or emoji avatar, Chorfy Level, its next challenge, and current streak. Mood is never published through Global rankings.
Chorfy does not use a private Family profile name as the default public name and rejects custom public nicknames that include a current Family profile name. Family photo avatars remain inside the Family and are never published through Global rankings. Public ranking profiles do not expose wallets, balances, birthdays, moments, household identifiers, account identifiers, or full Stats. Authenticated users can privately block a public profile or report an inappropriate nickname or behaviour. Reports and moderation state are retained as needed to investigate abuse and protect users.
Screen Time
On supported Apple devices, selected app and category identities are represented by opaque Apple tokens that remain on the device. Chorfy may synchronise the Family policy, allowance ledger, assigned profile, and grant status, but does not receive readable names for the apps selected through Apple Family Controls.
Service providers and international processing
Chorfy uses service providers including Google Firebase and Google Cloud for authentication, shared data, media, notifications, integrity checks, and operations; Apple services for sign-in, notifications, and supported Screen Time controls; and Cloudflare for downloadable public collection artwork. These providers may process technical data in countries outside the user's country under their own safeguards and terms.
Retention and deletion
Family data is generally retained while the relevant account or Family remains active. Some categories have shorter product limits, including chore proof media scheduled for deletion after 90 days and Activity Feed records retained for 12 months. Public ranking entries are removed when participation is disabled, while the private preference may be retained so the choice is reversible. Security, moderation, report, block, audit, transaction, deletion, and backup records may be kept for a limited period where needed for integrity, user safety, fraud prevention, legal duties, or recovery.
Account deletion is available in Chorfy and at the hosted deletion page. Ownership or billing responsibilities may need to be transferred before a Family organiser can leave or delete an account. Deletion from active systems can take time to propagate through protected backups and provider systems.
Security and choices
Chorfy uses account authentication, Firebase App Check, server-side Family roles, PIN-protected actions, device-scoped controls, and encrypted transport. No system can guarantee absolute security. Device notification, camera, photo, biometric, and Screen Time permissions can be reviewed in device settings. Family notification preferences can be changed in Chorfy.
Your rights
Depending on where you live, you may have rights to access, correct, delete, restrict, or object to processing of personal information. An authorised adult can make a request by emailing support@chorfy.com. Chorfy may need to verify the requester and their authority over the Family.
Changes and contact
Material changes will be reflected by a new version or effective date and may also be highlighted in the app. Questions can be sent to support@chorfy.com.