← Home

Privacy Policy

Version v0.11 · 2 September 2026

This is an early draft for a small group of trusted testers, not yet reviewed by a solicitor. Because myWishpot keeps information about children, we hold ourselves to a high standard. HealthComm Solutions Limited, based in the United Kingdom, is the data controller. Contact us at help@mywishpot.com.

1. Our approach to children’s privacy

We collect as little as we can, keep privacy settings high by default, do not profile children, and never use a child’s information to advertise to anyone or to train our systems. We follow the ICO Children’s Code. A child does not hold an account; a guardian acts for them until the vault unlocks at 18, when the young person takes control.

2. The information we collect

Your email and an optional name. A date of birth from everyone, to confirm the 18+ minimum age and to understand our audience in an aggregated form, not for marketing. A postal address from every account holder at sign-up for safeguarding. Vault details, card content, information about a child, and limited technical records.

3. How and why we use information

To run the service (our contract with you). To keep children and users safe, including holding an adult’s address for accountability (our legitimate interest and legal duties). To confirm age and keep the service age-appropriate (legal duty and legitimate interest). To meet legal duties. To improve myWishpot in an aggregated form. To show adverts in future only with your consent.

4. Scanning and review

Every photo is scanned by Google Vision SafeSearch before it reaches a guardian, and blocked if the scan cannot run. We also check the words in a card for inappropriate or sexualised language. A guardian reviews every card. Where content appears to be illegal and involves harm to a child, we act on it and report it as the law requires.

5. Who we share information with

We do not sell your personal information. We use a small number of service providers who act only on our instructions: Supabase (database and image storage, in the UK); Resend (email, in Ireland); Google Vision (image scanning); Anthropic (used only to summarise beta feedback you choose to send, see section 11); Vercel (website hosting); Cloudflare (an encrypted off-site backup copy of vault images and account data, held in a Western Europe region so nothing is lost if our main store fails); Sentry (error monitoring, which records technical fault details with personal data stripped out); and PostHog (privacy-first product analytics in the European Union, used only if you accept analytics — see section 9). We share information with the National Crime Agency, police, or other authorities where the law requires, including reporting suspected child sexual abuse content.

6. Where your information is stored

We store your information in the United Kingdom, using Supabase’s London region for vault content, account information, and adult account holders’ addresses. Our encrypted off-site backup copy is held by Cloudflare in a Western Europe region. Some providers are based in or owned by companies in the United States; where information is transferred outside the UK, the law requires safeguards to protect it to UK standards.

7. How long we keep information

Account information is kept while your account is active. A vault and its cards are kept until it unlocks or is deleted. A deleted vault is switched off at once and permanently deleted after 30 days, with an immediate-erase option available. A sender keeps their own frozen record of cards sent; a child’s image and details can be scrubbed from it on erasure. Some records may be kept where the law requires.

8. Your rights

You can ask for a copy of your information, correct it, ask us to erase it, limit or object to how we use it, ask for it in a portable form where that applies, and withdraw consent where we relied on it. To use any right, email help@mywishpot.com. We may keep information the law requires us to keep, such as suspected illegal content involving a child.

9. How we protect information, analytics and cookies

We use private storage for images, access controls, database rules, and encryption in transit. Cookies: we use essential cookies only. These are the sign-in cookies (provided by our database host, Supabase) that keep you securely logged in, and a small cookie called wp_cookie_consent that remembers your cookie choice. Analytics: we use a privacy-first product analytics service (PostHog, in the European Union) to understand how testers move through the app so we can improve it. It is cookieless — it sets no analytics or advertising cookie — records only named actions such as “vault created”, never the content of your cards, messages or photos, and never runs on any page that shows a child’s information. It stays switched off entirely unless you choose “Accept” in the cookie banner, and you can change your choice at any time; rejecting is as easy as accepting. We use no advertising or cross-site tracking. If a breach ever puts your rights at risk, we will act quickly and tell the regulator and those affected where the law requires.

11. Beta feedback and how we process it

If you send feedback through the Feedback tab, we store what you write against your account and process it with an AI service (Anthropic) to summarise it for our team. This is so we can read and act on tester feedback quickly during the beta. This is separate from your cards: the messages and photos in a vault are never sent to that AI service and are never used to train any system. We ask you not to include personal details, other people’s information, or anything private in your feedback. The lawful basis is our legitimate interest in improving the service during testing. You can ask us to delete your feedback at any time at help@mywishpot.com.

12. Contact and complaints

For anything about your information, contact us at help@mywishpot.com. If you are unhappy with how we have handled it, you can complain to the Information Commissioner’s Office at ico.org.uk, though we would rather put things right first.