Privacy Policy
Last updated: August 14, 2026
1. Scope
This Privacy Policy explains how we collect, use, and protect information when you use TargetTree (the "Service"). The Service is intended for adult account holders and is not directed to children, and we do not knowingly collect personal information from children.
2. Information We Collect
- Account information: your display name, email, and password, which you provide at signup.
- Billing information: processed by our third-party payment processor; we receive limited transaction data (e.g., subscription status) but do not store full payment card numbers.
- Usage information: we do not collect product analytics about practice activity, child or Live interactions, words, ratings, games, or clinical outcomes. We may receive strictly necessary operational logs and error reports to secure and maintain the Service; these are configured not to include session content, request payloads, cookies, or query-string data.
- Worksheet sharing: TargetTree provides local print and download tools. You choose how to share the downloaded file through your own mail, school, clinic, or records system. TargetTree does not receive the recipient address, email body, or delivery status.
- Practice summaries: session ratings and results remain in the current browser or device while you practice. When you finish, download the summary immediately. TargetTree does not save completed practice sessions, and a summary may be lost if you leave, refresh, or clear the browser before downloading it.
- Workspace authorization: before a workspace can start Live, an account holder must choose the authorization basis already on file for that workspace: parent/guardian authorization or school/district authorization. We store the selected basis, notice version, account, workspace, and timestamp. This is an operational attestation and does not verify or replace a BAA, DPA, school-official agreement, or verifiable parental-consent process.
- Organization and workspace membership (if applicable): if you use the Service through an organization, we store your organization membership, assigned role, and workspace settings. Practice summaries are not saved as workspace records.
- We do not request or require identifiable client/patient information, and we instruct users not to enter names, initials, or other identifying information anywhere in the Service (see Terms §7).
- Live session data: when you use the optional Live feature, we process temporary room and connection data needed to connect the two devices (such as a short-lived join code, participant seat, and connection status). The therapist device keeps the authoritative Live activity state in memory and sends only the child-safe view needed to render the second device; we do not save a full Live activity snapshot in the database. Live does not provide or transmit audio or video. The room row is deleted when the host ends or discards the room; if a device crashes, ended or expired room rows are purged within 24 hours of the next Live request. Completed Live practice results are not saved as a TargetTree session.
- Cookies: The Service uses no tracking, advertising, or third-party analytics cookies. We use only the strictly necessary cookies required to keep you signed in and operate the Service. Because we do not use tracking cookies, no cookie-consent banner is required.
3. How We Use Information
We use information to: provide and maintain the Service; process subscriptions; provide support; improve features; and comply with law. We do not sell personal information.
4. Children's Privacy (COPPA)
The Service is designed for adult account holders and is not intended for use by children under 13, who should not create accounts or provide personal information. We do not knowingly collect personal information directly from children. The account holder (such as a professional, educator, aide, student, or parent) is responsible for ensuring no identifiable information about a minor is entered into the Service.
Before Live can start, the workspace must have an authorization record identifying the parent/guardian or school/district basis on file. This is an operational gate, not a substitute for verifiable parental consent or a school authorization process.
Live sessions. The Service's optional Live feature connects an account holder's device with a separate device used by a participant (such as a child) who is always accompanied by an in-person adult proctor. Live synchronizes only the activity needed to render the second device and does not provide or transmit audio or video. The therapist device keeps the authoritative activity state in memory; TargetTree stores only short-lived room and connection metadata and does not save a full activity snapshot. These sessions use temporary, single-use join codes. We do not create child accounts or request a child's name or contact details, but the child device still sends the temporary network requests required to operate Live. The account holder is responsible for supervision and any required parental, school, or employer consent.
5. How We Share Information
We share information only with service providers who help us operate the Service, under contract, including Supabase for database, authentication, storage, and realtime infrastructure; Vercel for hosting; Stripe or Apple for payments; and Resend for support notifications and organization invitation emails. Organization invitation emails contain the invitee's email address, organization name, inviter name, join code, and acceptance link. Resend is not used for worksheets, Live state, practice summaries, client references, patient or student records, or child information. Sentry remains disabled. Do not include confidential information in support messages or organization names. Worksheet sharing uses your browser's or device's local print and download tools, so TargetTree does not receive the recipient address or worksheet email. We may disclose information if required by law or to protect our rights. Our product images were generated in advance using a third-party AI tool that is not part of the running Service and receives no user information. We do not sell personal information.
6. Data Retention
We retain account information for as long as your account is active and as needed to provide the Service. New local-only practice summaries are not retained by TargetTree. If you delete your account, we permanently delete data owned only by your personal workspace; organization workspace settings may remain with the organization when required to provide the organization's service or by law. After closure we delete or anonymize remaining personal information within 12 months unless longer retention is required by law.
7. Security
Your data is stored with our database/storage provider, which provides infrastructure-level security controls. We protect information in transit using TLS 1.2 or higher and at rest using provider-managed encryption, and we use database Row-Level Security (RLS) to restrict access to data. Organization administrators must use multi-factor authentication before managing members or organization records. We keep a metadata-only audit trail for protected record views, exports, deletions, membership changes, and privileged administration; it does not contain practice content. Backups follow the provider retention schedule and are included in our deletion and restore procedures. No method of transmission or storage is 100% secure.
8. Your Rights
Depending on your location, you may have rights to access, correct, or delete your information. To exercise them, contact privacy@targettree.app. We will respond as required by applicable law.
9. International Users
The Service is operated from the United States; if you use it from outside the US, you consent to processing in the US.
10. Changes
We may update this Policy; material changes will be posted in the Service and, when appropriate, communicated through an account contact channel.
11. Contact
Naptime Development LLC, Jonesboro, AR, privacy@targettree.app.