How we handle data
Tutor37 is used by children, so it is built to hold as little as possible. This page says what is kept, why, and how to remove it. It is written to be read, not to protect us.
What we keep
- About a parent: your name, your email address and a password. The password is stored scrambled (hashed), so nobody can read it, including us.
- About a child: a first name, a username, a scrambled password and a school year. We do not ask for a surname, an email address, a date of birth, a photo or a location.
- Learning activity: which lessons were finished, each answer and whether it was right, ratings, XP, streaks, badges, and the minutes used each day.
- Settings: the time limits and pace you choose, and display preferences such as text size.
What we use it for
- To run the course: choosing the next lesson, bringing questions back for review, and working out a rating.
- To enforce the daily time limit you set.
- To show you your child's progress.
That is all. There are no adverts, no analytics or tracking scripts, and no third-party cookies. We do not sell or share data with anyone. Answers typed into exam questions stay on the device and are never sent to us.
What other learners can see
The weekly table shows a made-up handle (for example QuietFalcon42), a symbol, a rating tier and an XP total. It never shows a name or a username. A parent can remove their child from the table in settings. There is no chat, messaging or friend list.
Cookies
One cookie keeps you signed in. It is essential, so there is no cookie banner. Display preferences are remembered in your browser's own storage.
Where it is kept and for how long
Data is held on a server operated by the project and sent over an encrypted connection. It is kept for as long as the account exists. When you delete a child or your account, their records are deleted at once and cannot be recovered.
Your controls
- See it: the parent dashboard shows what is held. "Download their data" gives you a complete copy as a file.
- Change it: names, limits and passwords can be changed from the dashboard.
- Delete it: "Remove" deletes a child and all their activity. "Delete my account" deletes everything.
Children and consent
Accounts are for parents and guardians to create. A child's sign-in can only be made from inside a parent's account, so there is no way to sign up as a child.
Last updated 8 October 2026. Tutor37 is in early access and this page will be kept in step with the product.