Back to Blog
Digital Safety

The AI Privacy Checklist: What to Turn Off (and What to Ask) Before Any Kids App

A practical kids app privacy checklist: what permissions to disable, how to protect child data in AI apps, and questions to ask about student data privacy.

The AI Privacy Checklist: What to Turn Off (and What to Ask) Before Any Kids App
March 6, 2026
8 min read
#Privacy#Checklists#Apps

The new reality: AI apps collect more than you think

AI-powered kids’ apps can be amazing tutors, creative partners, and confidence boosters. But AI features often require (or request) more access: microphones for voice input, photos for homework help, contact lists for “friend” features, or persistent identifiers for personalization.

The good news: you don’t need to be a security expert to protect your child. You just need a simple, repeatable process—what to turn off, what to allow only when needed, and what to ask before your child creates an account.

This kids app privacy checklist is designed for real-life parenting: fast to apply, easy to explain to kids, and specific enough to actually reduce risk.

The “Turn Off First” checklist (settings that reduce risk immediately)

Before your child taps “Allow,” do a quick sweep. The goal isn’t to block everything—it’s to prevent unnecessary data collection.

Here are the biggest privacy wins:

  • Location services: Turn off for most apps. If an app claims it “needs” location for learning, that’s usually a red flag.
  • Always-on microphone or camera access: Set to Ask Every Time or Only While Using the App.
  • Photo library access: Choose Selected Photos Only (iOS) or restrict to specific files/photos when prompted.
  • Contacts access: Almost never needed for kids’ learning apps.
  • Bluetooth / Local Network scanning: Often used for tracking or device discovery. Disable unless there’s a clear feature you want.
  • Ad tracking / cross-app tracking: Disable tracking requests and ad personalization.
  • Background app refresh (or background activity): Limits what the app can do when your child isn’t using it.
  • Notifications: Keep off unless truly useful. Notifications can be a privacy and attention risk (and an easy way to lure kids back).

A simple rule you can tell your child:

  • If it’s not required for the core activity, we don’t allow it.

Quick permission decisions: what to disable vs. allow

Use this table as your “at-a-glance” guide for what permissions should I disable for kids apps—especially those with AI features.

Permission / Setting Default Recommendation for Kids Allow When… Why it matters Safer Alternative
Location Off Only for a map-based activity you supervise Enables precise tracking and profiling Use city-level location only (if available)
Microphone Ask every time / Only while using Your child is doing voice practice or speech input Voice data can be sensitive; may be stored or used to train models Use typed input instead
Camera Only while using Scanning homework, AR feature, or live class you supervise Images can reveal identity, home, school info Upload a single photo instead of enabling continuous camera
Photos Selected photos only Importing a single project image Full library access can expose family photos and metadata Share one image via file picker
Contacts Off Rarely necessary Exposes other people’s data (not just your child’s) Use app-specific friend codes (no contacts)
Tracking (IDFA / ad tracking) Off Almost never Allows cross-app profiling and targeted ads Choose a paid/no-ads plan
Background activity Off Only if needed for downloads/updates Enables ongoing data transfer and engagement loops Manual refresh
Notifications Off by default Homework reminders you control Encourages return visits; may show private content on lock screen Enable only for specific alert types
“Share analytics” / diagnostics Off If you trust the provider and want to help improve Can include device identifiers and usage behavior Opt in later if needed

The AI-specific privacy questions every parent should ask

Many apps have a privacy policy that feels like a novel. You don’t need to read every word. You do need to ask a few high-impact questions—especially if your child’s work includes voice, images, writing samples, or chat.

Use these questions to ask about student data privacy (for schools) and child data privacy (for home use). You can ask support, check FAQs, or look for a “Trust,” “Safety,” or “Privacy” page.

1) What data is used to train the AI?

Ask directly:

  • “Do you train your models on my child’s prompts, messages, voice, or images?”
  • “Is training on by default, and can we opt out?”

What you want to hear:

  • Training is off by default for children.
  • Clear opt-out controls (not buried).
  • Data used for training is de-identified (and ideally not used at all for kids).

2) How long is data stored—and can we delete it?

Ask:

  • “What’s your retention policy for chat logs, audio, and images?”
  • “Can I delete my child’s account and all data permanently? How?”

Look for:

  • A specific timeline (e.g., “30 days”) instead of “as long as necessary.”
  • A self-serve deletion option inside the account settings.

3) Who can see the data (humans, vendors, contractors)?

AI apps sometimes use humans for moderation or “quality review.” That’s not automatically bad, but you should know.

Ask:

  • “Do employees or contractors review children’s content? Under what conditions?”
  • “Do you share data with third parties (analytics, ad networks, AI vendors)?”

Prefer:

  • Minimal human review, tightly controlled.
  • No third-party advertising networks.
  • A short, transparent list of subprocessors.

4) Is the app built for kids—or just used by kids?

Many products are “general audience,” then quietly become popular with children. That’s when privacy gets messy.

Ask:

  • “Is this service designed for children under 13/16? If yes, what child protections are built in?”
  • “Do you support parent accounts, age gating, and limited profiles?”

Look for:

  • Age-appropriate defaults (limited sharing, limited data collection).
  • Parent controls and clear child account settings.

5) What does the app do with student data (school use)?

If your child’s school uses an AI app, ask the teacher or administrator:

  • “Is there a student data privacy agreement (DPA) in place?”
  • “Is student data used for advertising or model training?”
  • “How can families request access or deletion?”

If the school can’t answer, that’s not a “no.” It’s a sign to request clarity.

A 10-minute setup routine (device + app) you can repeat every time

This is the practical “before you download” flow for how to protect child data in AI apps.

Step 1: Use a child profile (don’t share your main account)

  • Create a child account on the device when possible.
  • Use family controls (Screen Time on iOS, Family Link on Android).
  • Avoid signing in with a parent’s primary Google/Apple account inside kids’ apps.

Why it matters: shared accounts blur data boundaries and make deletion harder.

Step 2: Install the app, then immediately check permissions

Before your child uses it, open device settings and set:

  • Location: Off
  • Microphone/Camera: Ask every time
  • Photos: Selected only
  • Tracking: Off
  • Notifications: Off

Then open the app and look for:

  • Privacy settings
  • “Personalization” toggles
  • Data sharing / analytics opt-ins
  • “Improve our AI” or “Help train our model” options

Step 3: Do a 60-second “content safety” check

Especially for AI chat or creative tools:

  • Is there a kid mode or student mode?
  • Is there a way to turn off public sharing?
  • Can strangers message your child?
  • Are there community features (feeds, comments, DMs) that you can disable?

Step 4: Teach your child the “No-PII rule” (super simple)

A script that works for ages 6–17:

  • “Don’t type or say your full name, school name, address, phone number, or passwords.”
  • “Don’t share a photo that shows your school logo, street sign, or house number.”
  • “If an app asks for something weird, pause and ask me.”

This protects your child even when the app’s settings aren’t perfect.

Step 5: Pick a safe default for accounts

  • Use minimal profile info (nickname, no real birthday if optional).
  • Use an alias email (or a parent-managed email).
  • Use a password manager for family accounts if you can.

Next Steps: your printable mini-checklist (save this)

Use this quick checklist every time your child wants a new app—AI or not.

  • Before install

    • Search: “Does this app have ads?” and “Is it designed for kids?”
    • Check if there’s a parent/privacy page with clear answers
  • After install (Turn Off First)

    • Location: Off
    • Contacts: Off
    • Tracking/ad personalization: Off
    • Notifications: Off
    • Microphone/Camera: Ask every time
    • Photos: Selected only
  • Ask these 4 questions (copy/paste to support if needed)

    • “Do you train AI on children’s prompts, images, or voice? Can we opt out?”
    • “How long do you store chats/audio/images, and how do we delete them?”
    • “Who do you share data with (analytics, ad networks, AI vendors)?”
    • “Do you have child/student privacy protections and a parent control option?”
  • Family habit

    • Re-check permissions once a month (or after updates)
    • Remind your child: “No-PII, and ask if unsure.”

If you want to make this even easier, keep a “New App Parking Lot”: when your child requests an app, add it to a list, review it together once a week, and set it up side-by-side. Kids learn fast when privacy becomes a normal part of getting new tech—like wearing a helmet before riding a bike.

Key Takeaways

  • Turn off high-risk permissions by default (location, contacts, tracking) and set mic/camera to “ask every time.”
  • Ask AI-specific questions about model training, data retention, deletion, and third-party sharing before your child signs up.
  • Use a repeatable 10-minute setup routine: child profile, permission sweep, safety mode check, and a simple No-PII family rule.
Toshendra Sharma

Auther

Toshendra Sharma