Witbot Privacy Notice
Private beta · Last updated June 9, 2026 · A formal privacy/legal review is part of our beta release process; this notice states plainly what the product does today.
The short version
- Parents own all accounts. Children never sign up and have no public profiles.
- Stored chat history is encrypted; approved family devices read it locally.
- Live AI processing is temporary and separate: Witbot applies safety rules, sends only the needed current context to our AI provider, checks the answer, and stores retained encrypted history without keeping readable transcript text on the server.
- Raw audio is never stored by default - voice input is processed, not recorded.
- No advertising, no ad tracking, and no sale of data. Ever.
- You can export or delete your child's data from your dashboard at any time.
What we collect
- Parent account information (email, authentication data).
- Child profile basics you provide: a nickname and an age. That is what shapes age-appropriate chat.
- Encrypted retained chat history, plus safety events and decision reasons so you can review what happened and why.
- Operational metadata (timing, device/session identifiers, policy versions) to run the trust loop, safety review, and reliability monitoring - never readable transcript text.
What we do not do
- We do not claim fully end-to-end encrypted AI chat: answering safely requires temporary plaintext processing of each live question by Witbot and our AI provider.
- We do not store your child's raw audio by default.
- We do not give the AI provider durable access to your family's history or use provider-hosted memory.
- We do not show ads or use third-party ad tracking.
Your controls
From your dashboard you can review chat summaries (names & details hidden) and safety events, disconnect any device or session (effective on its next message), export your child's data, and delete a child profile with its data. Retention windows apply to stored history.
Children's privacy (COPPA notice)
Witbot is built for children ages 6-12 under verifiable parental control. Parents create and own every account; children cannot sign up, and child profiles hold only the nickname and age a parent provides. We collect from children only what the service needs to answer safely (the live question being processed), we do not show ads or use third-party ad tracking, and parents can review, export, or delete their child's data at any time from the dashboard. Questions or requests: hello@witbot.ai.
When Witbot looks something up
“Let Witbot look things up” is off for every child until you turn it on for that child from your dashboard. It is never on by default.
When you turn it on, Witbot can answer questions about very recent things by looking them up. It does notsend your child's message. Instead it builds a few search words taken only from a fixed list our team wrote and reviewed in advance (plus, when the question is about something current, a recent year like 2026), and sends just those words to a web search infrastructure provider. The provider sends back short text excerpts from pages on Witbot's approved source list. Witbot reads only those excerpts - it does not open the websites themselves - and answers in its own voice. Your child gets no links to tap and no web page to open: there is no browsing surface in Witbot, and web addresses are never part of what Witbot receives.
The provider receives only those search words. It does not receive your child's message, nickname, age, account, device, family, or any other identifier - nothing in the request identifies your child or your family. Because every word comes from our reviewed list, no wording your child typed or said can travel to the provider unless our team wrote that word first.
One thing we want to state plainly: a few words on that reviewed list are also common first names - “violet,” for example, is on the list because it is the name of a Pokémon game. If your child's name happens to match one of those reviewed words, that word can be sent as an ordinary search word. It is never sent because it is your child's name, and nothing accompanying it identifies your child.
Witbot does not store the search words or the excerpts it reads; we keep only content-free facts about the lookup (that one happened, how many results came back, how long it took). Our search provider may retain the words it receives for a limited period (up to 90 days under its current standard terms). Those words are Witbot's own vocabulary and carry nothing that identifies your child. Any answer that used a lookup is marked in your history view as “Witbot looked this up on an approved source.”
Cookies
Witbot uses only strictly necessary cookies: parent sign-in session cookies, secure HttpOnly child-session cookies, and a device identifier that lets child sessions work. There are no advertising or analytics tracking cookies. Details: cookie notice.
Contact
Privacy questions: contact the Witbot team through your beta support channel.