Skip to content
NewPalParent sign in

Your family’s information

Privacy Policy

Effective September 18, 2026. Version 2026-09-18.1.

The short version

NewPal is a parent-configured AI companion. Parents create and manage child profiles and can review conversations. We use information to provide answers, personalization, account security and parent-facing safety features. We do not sell children’s personal information or use it for targeted advertising. Optional search, memory suggestions and screen context have separate controls.

Who is responsible and who can use the service

Idan Shem Tov, operating as Solo-pilot, operating NewPal, based in Israel. Correspondence: Moshe Kol 8, Tel Aviv, Israel. Telephone: +1 201 6300452. Privacy and support: privacy@solo-pilot.io.

This policy covers the NewPal website, parent dashboard and companion apps. Our initial supported markets are the United States and Israel. Adults manage accounts; the current child experience supports ages 7–12. We do not ask children to create independent accounts or provide their own email addresses. Contact us if you believe information was collected without appropriate parental permission.

Information we collect

Parents provide an email address, family and child profile details, an age band, a preferred name or nickname, language, companion settings, trusted-adult information, guidance and any starting memories. Do not provide a full birth date, exact location, medical records or other unnecessary sensitive details.

During use, we process questions, transcripts, AI answers, conversation summaries, approved memories, optional memory suggestions, safety classifications and alerts. If a child asks by voice, we process the submitted audio to transcribe it. If optional screen context is enabled, we process the screenshot attached to that request. We do not perform continuous background listening or screen monitoring.

We also process account and consent records, device pairing identifiers, device platform/app version, request times, operational usage and error information. Hosting and security systems may receive IP addresses and standard request metadata. Essential cookies support sign-in and preferences. The service does not require advertising trackers.

Why we use it and your choices

We use this information to authenticate parents and devices, generate age-appropriate responses, personalize conversations, synthesize speech, maintain history, detect potential safety concerns, notify authorized adults, investigate failures and protect the service. Providing information is voluntary; without the information and permission needed for a feature, that feature cannot operate.

Authorized family members may see the child information permitted by their access rights. Safety alerts can be incomplete or incorrect and are not an emergency response system. We do not promise that an adult will be notified of every concern.

Optional web search sends a query to external search services. Automatic memory suggestions are separately controlled. Parent-written memories can be used without enabling automatic suggestions. Screen context requires parent permission and an explicit capture action on the device; avoid screens containing other people’s private information.

Parental notice and permission

Before enabling child AI use, we show the direct notice in the authenticated parent dashboard and require the parent to approve it there. Consent records identify the parent, child, notice version, choices, verification process and time. We then send a confirmation email with withdrawal instructions; the parent does not need to click or approve again. A verified login alone is not permission—the affirmative dashboard approval is required.

We do not require a child to disclose more information than reasonably necessary for an activity. We obtain renewed permission when a material change requires it. Optional permissions can be declined without losing unrelated core features. Child AI processing stops when core permission is withdrawn.

Service providers and international processing

Our infrastructure providers include Supabase for authentication, database and private storage; Vercel for web hosting; and Resend for transactional emails. OpenRouter routes AI requests to configured providers, currently OpenAI and Microsoft Azure endpoints. Google Cloud provides text-to-speech. Configured speech transcription and optional search services may also receive the content necessary for their features. Contact us for information about the providers used for a particular feature.

We send only the information needed for each function, subject to applicable agreements and safeguards. Processing may occur in the United States, Israel and other countries where authorized providers operate. Information is not necessarily stored in your country. We assess the safeguards and legal basis required for international transfers, including applicable Israeli requirements.

We may disclose information where legally required, to protect rights or investigate abuse, or in a business transfer subject to applicable protections and notice. We do not authorize providers to use child information for their independent advertising. This policy does not claim that every upstream provider has zero retention; provider retention and permitted uses depend on the applicable service arrangements.

How long information remains

We keep profiles, guidance, approved memories, summaries, history and answer recordings while needed to provide an active family’s service. Parents can delete them sooner. Archiving a memory stops its active use but does not delete its record. We remove profiles after 24 months without meaningful child or parent activity, with notices approximately 30 and 7 days before scheduled deletion. Background device heartbeats do not extend this period.

Unapproved profiles are removed after 30 days. After core consent is withdrawn, new child AI processing stops and the profile is scheduled for deletion after a 30-day recovery period unless permission is validly renewed or deletion is requested sooner. Incoming voice and screen attachments are not saved as conversation files by NewPal. Generated answer recordings can be saved for replay.

Content-bearing operational diagnostics are retained for up to 30 days. Necessary security, billing or legal records may require different periods and must be limited to their purpose. Deletion removes access promptly and queues associated files for retryable removal. Operational AI-run metadata expires after 13 months. Deleted information may remain in restricted infrastructure backups until those backups expire under the provider’s backup schedule; it is no longer available through the app. Contact us for current backup and provider retention details or any applicable legal retention exception.

Review, correction, withdrawal and deletion

Use Privacy & Data to export information, remove conversation history or memories, delete a child profile, and withdraw parental permission. Update profile details and guidance through the parent dashboard. Account and family settings provide account/family deletion controls. You may also contact the operator above to exercise applicable access and correction rights or ask a privacy question.

We verify authority before releasing or changing child information. A parent may refuse further collection or use and request deletion. We will explain any legal reason preventing a particular deletion. Removing the app does not itself delete the account, and deleting an account does not necessarily cancel an app-store subscription; manage subscriptions with the relevant store.

Security and policy changes

We use access controls, private storage, scoped family permissions and other reasonable safeguards. No service can guarantee perfect security. Protect your parent login and paired devices, and contact us about suspected unauthorized access.

We publish updates here with a version and effective date. Material changes receive appropriate parent notice and renewed permission where required. The operator contact above handles complaints and questions; applicable statutory privacy rights remain available.