This page is specific to dependent (child) accounts on Routabout — how long each kind of data we may hold for a dependent account is kept, and how it is deleted. For what we collect and why, see our parent/guardian notice (part of our Privacy Policy).
Every category below has a defined point at which it ends — the dependent relationship ending, an account deletion request, or (for safety-alert records) the close of the human review window. None of it is retained "for as long as we want" or without a stated reason. A parent or guardian can request deletion of a dependent's data at any time through Routabout's family account controls.
Retained for the duration of the dependent relationship. We use it only to determine the account's age band and to trigger the re-affirmation prompt on the child's 18th birthday. Deleted when the dependent relationship or the account is deleted.
A small set of non-identifying preferences (response length, tone, which bounded assistant personality is selected, and similar settings) may be retained for the duration of the dependent relationship. These are never facts about the child — see our privacy policy's distinction between "personalized" and "profiled." Deleted immediately on request or on account deletion. Never used to train any shared AI model, at any age — this restriction does not lift when the account later graduates to an adult account.
For an account under 13, conversation content is never retained in the first place — there is nothing to delete, because nothing was stored. For an account aged 13 to 17, conversation content is retained only under the privacy setting the parent or teen chose, exactly as it would be for an adult account, and is deleted the same way: by account deletion, or, for the most private setting, by never being written down at all.
The record that verifies a parent authorized the dependent account — the card-transaction reference and the separate email confirmation described in our parent/guardian notice — is retained for the life of the dependent relationship, and for a limited period afterward, only as long as needed to demonstrate our own compliance with recordkeeping obligations. It is never used for any other purpose.
A safety-alert record is created only when the opt-in safety check (see our parent/guardian notice) flags a serious risk. It is kept only long enough for human review, then deleted — unless the incident was escalated, in which case it is retained under legal hold. No safety-alert record exists for a session where nothing was flagged.
If a dependent is separately enrolled in a Socraites or Resilience learning surface, that participation is governed by that surface's own retention rule — family-owned, portable across classes and schools, with a year-end deletion default and parent-only carry-forward — described in that product's own materials, not duplicated here.
Cabildo Companies LLC · privacy@routabout.ai
Placeholder copy — finalize with counsel before public launch.