Children's Privacy Notice
Version 2.6 — last updated September 14, 2026
This notice explains what we collect from and about children under 13, how we use it, who we share it with, and the rights you have as a parent. It sits alongside our Privacy Policy and, where the two differ for a child under 13, this notice controls.
Built Different is for participants aged 5 to 17. This notice covers only the ones under 13, because the law it follows covers only them. For a teenager aged 13 to 17, the Privacy Policy applies instead and has a section describing their profiles. Your child does not lose anything on their thirteenth birthday: what changes is which document governs, and we will tell you when it does.
Built Different is built around parental control. Children never create accounts, never sign in on their own, and never hold data we did not get from you or generate from their use of the app.
This notice describes the app as it is, not as it may become. It leaves out features we have built but not switched on — teams, coach accounts, rosters, the avatar, and family-versus-family standings — because a notice you rely on to make a decision should describe what actually happens to your child today. If we switch any of them on, we will update this notice, tell you, and ask for any fresh consent the change requires before it affects your child. There is exactly one way a child can be seen outside your household: the leaderboard described below, which is off until you turn it on.
Who is responsible for this data
Ultimate Team Posters, LLC is the operator that collects and maintains children's personal information through Built Different. We are the only operator collecting personal information from children through the Service.
Mailing address for legal and privacy correspondence:
2170 Dalewood Ct, Plainfield, IL 60586
(630) 864-7869
hello@builtdifferent.com
What we collect about a child
Given to us by the parent when creating or editing a child profile:
- Display name — usually a first name or nickname — and, optionally, a last initial.
- Date of birth. We use it to check the child is inside our 5–17 age range, to derive their age band, and to know whether they are under 13. The full date is encrypted at the field level before it is stored, and no part of it is kept anywhere in readable form. We also read the month from it so the app can celebrate through their birthday month — that needs nothing beyond what is already held for the checks above. We never use it for advertising or for personalisation unrelated to running the Service.
- Fitness level, goal, and a weekly activity target.
Generated as the child uses the app:
- Activity records — workouts completed, classes attended, active minutes, points, streaks, badges earned, and challenge or competition results.
Collected automatically:
- The device time zone, so deadlines, streaks, and birthdays land on the right local day.
- Basic technical information needed to serve and secure the app: the request, the time it was made, the network address it came from, the app or browser making it, and error diagnostics. Our hosting platform keeps these operational records for 24 hours. We do not use them to work out where anyone is, to build a profile of anyone, or for anything except running and protecting the Service.
What we do not collect
- No photographs, video, or audio of a child, and no ability for a child to upload any.
- No location data. We do not ask for, collect, or use device location, and we do not use our operational records to work out where a child is. The time zone is not a location. A network address appears in those short-lived records for the reasons above, as it does for any internet service.
- No weight, BMI, body measurements, medical history, or health records.
- No school, address, phone number, or email address for the child.
- No contact list, camera roll, microphone, or persistent advertising identifier.
- No behavioural advertising, no third-party ad networks, and no third-party analytics or tracking of any kind. We do not sell children's personal information, and we do not share it for targeted advertising.
- No open chat or free-text messaging between children.
We do not require a child to disclose more personal information than is reasonably necessary to take part. A child can use the workouts and earn minutes and badges without a last initial and without appearing anywhere outside your household.
How we use it
- To run workouts and classes and to credit the activity a child completes.
- To keep track of progress — minutes, streaks, badges, and goals — and to show it to the child and to you.
- To show the leaderboard — and only if you turn it on — as described below.
- To send you, the parent, account messages and, if you are a member with Email updates switched on, a weekly progress recap of your child's workouts, live classes, active minutes and new badges. Recaps go to you and never to the child, and you can turn them off at any time in the app.
- To keep the Service secure, to detect misuse, and to comply with the law.
We do not use children's personal information to build profiles for advertising, to train machine learning models, or for any purpose unrelated to running the Service.
What other people can see
A child's full date of birth is never shown to anyone but you.
- Their display name, optional last initial and activity totals are visible to you and to the other adults you have added to your family account.
- On the leaderboard, if you turn it on for that child, other Built Different families see a nickname we assign, an age group, active minutes and a rank. They do not see the display name you chose or the last initial. It is off unless you switch it on.
Why we ask for a full date of birth
We ask for the day, month and year rather than just a year because the exact date decides things that have to be right. Whether a participant is under 13 decides which privacy rules govern them and what we must ask you for. Turning 18 changes their profile. Whether a teenager has to agree for themselves before appearing on the leaderboard turns on the same date. A year on its own would leave each of those boundaries uncertain by up to a year, and a month and year by up to a month, at exactly the points where being wrong matters.
The date is stored encrypted, is never shown to anyone outside your family, and is not used for anything else. Other families never see it — not the date, not the month, not the year; only an age group.
How we check that it is really you
Before you can create a child's profile, we confirm your email address: we send a code to it and you enter that code in the app. Only then does the app ask for anything about your child. This is deliberate — a tick on the same screen as the questions is not a check on anybody, and without this step someone could type any address at all and start entering a child's details a moment later.
We use that method because what we collect about a child stays inside your family unless you decide otherwise. Turning the leaderboard on is the one choice that shows anything of your child to other households — a nickname we assign, an age group, active minutes and a rank — so it takes its own separate code, sent to that same confirmed address at the moment you make the decision. The code is how we know the choice was yours, and not a tap by whoever was holding the phone. It is not a formal identity check, and we do not offer it as one.
Health data
Some states treat what a child does — workouts, minutes, streaks — as "consumer health data" and ask for a separate policy about it. Ours is the Consumer Health Data Privacy Policy. We do not collect medical or clinical records, diagnoses, prescriptions, treatment information or medical history about a child, and there is nowhere in the app to enter them.
The leaderboard
Your child's name is not on it. Other families see a nickname we assign — something like "Swift Falcon 61" — never the display name you chose and never a last initial. The nickname is built by us from a fixed list of words. Nobody types it, which is why a real name cannot end up in one. Your child can swap it for a different nickname from that same list as often as they like and does not need to ask you: every possible result comes from the same list, so a swap tells other families nothing new.
We built it this way so a child under 13 can take part without our handing anything that names them to another household. What other families receive is a nickname, an age group, active minutes and a rank — not the name you chose, and not the reference we hold for your child. Your child sees their own name on their own row; every other row is a nickname.
What that does and does not do. It means another family cannot learn your child's name from the leaderboard. It does not make them invisible: somebody who already knows your child, and knows roughly how much they exercise, might still recognise which row is theirs from the age group, the minutes and the rank — and swapping the nickname does not change those. We would rather say that plainly than let "anonymous" do more work than it can carry.
The leaderboard ranks participants by the active minutes they have earned, either against everyone or against participants in the same age group. A participant is on it only if you have turned it on for them. New profiles are off.
To turn it on we email a code to your account address and you enter it in the app. We do that because the app is signed in as you and spends its day in your child's hands: the code is how we know the decision to show your child to other families was yours and not a tap by whoever was holding the phone. We record which version of this notice was on screen when you agreed, and we email you afterwards confirming what is now visible.
When a child is on the leaderboard, other families can see:
- The nickname we assign — not the name you chose, and not a last initial.
- Their age group.
- Their active minutes and their rank.
They cannot see the child's display name, last initial, date of birth, photo, your family name, your email address, their workout history, or anything else. A child who is not on the leaderboard is not shown other children either — being ranked and being able to watch are the same decision, and a family that has not made it neither appears nor watches.
A participant aged 13 or over also agrees for themselves. Your decision says the leaderboard may happen; theirs says they want it to. Both are needed, so if either of you says no, they are not on it — and either of you can change your mind at any time, immediately and without a code. Below 13 the decision is yours alone. We keep asking the older ones even though the board carries no names, because it is still their minutes and their rank being shown, and that is theirs to decide about.
You can take a child off the leaderboard at any time, in the app, with no code and no waiting. They disappear from it immediately. Their minutes, badges and streaks are not affected — leaving the leaderboard costs a child nothing they have earned.
There are no public profiles, no child-searchable directory, and nothing about a child is published outside the app or shown to anyone who is not signed in.
Verifiable parental consent
Creating an adult account does not create a child profile and does not let us collect anything about a child. When you sign up you agree to our Terms of Service and the Waiver & Safety Disclaimer, and confirm you have read this notice and our Privacy Policy. That is an agreement between you and us — it is not consent for a child.
Consent for a child is asked separately, on the screen where you add that child, before any of their details reach us. You are shown a short notice saying what we collect about them, why, who can see it and how to delete it, and you confirm that you are their parent or legal guardian. Nothing is saved until you do. We record which of your children it covers, the date and time, and the version of the notice you were shown.
Because consent is per child, adding a second child asks again for that child. Children cannot create a profile, sign in, or consent on their own account, and there is no way for a child profile to come into existence except through a parent on this screen.
We use children's personal information only to provide the Service to your family. We do not sell it, and we do not give it to another company to use for that company's own purposes. The optional leaderboard shows other signed-in Built Different households only the nickname we assign, an age group, active minutes and a rank — no personal information about your child goes to them. Switching it on still takes a code sent to your account address, because the choice should be yours rather than a tap by whoever is holding the phone, and we record which version of this notice was on screen when you made it.
Who we share it with
We do not sell children's personal information and we do not give it to anyone to use for their own purposes. We use a small number of service providers to run the Service. A provider is allowed to handle a child's information only where it acts on our instructions alone, is not permitted to use the information for its own purposes — no advertising, no profiling, no model training — and has given us written assurances that it will keep the information confidential and secure. We complete those assurances before a provider is allowed to receive children's information, not afterwards:
- Database and application hosting, which stores all of the data described above.
- Video hosting and delivery, for the workout library.
- Email and SMS delivery, used to reach you — never the child.
- Apple, which processes the membership purchase and tells us the subscription status.
We may also disclose information if the law requires it, to protect a child's safety, or to establish or defend legal claims. A current list of our service providers is available on request.
Your rights as a parent
At any time, you can:
- Review the personal information we hold about your child.
- Correct or update it.
- Get a copy of it, using the export option in the app.
- Delete a child profile, which removes that child's activity data with it.
- Refuse to let us collect anything further about your child, and withdraw your consent entirely, by deleting the profile or the account.
Most of this is available in the app under your account. For anything else, email hello@builtdifferent.com from the address on your account and we will respond promptly. We may need to confirm you are the account holder before acting on a request.
If you withdraw consent, your child can no longer use the Service — we cannot run workouts, credit activity, or track progress without the information described above.
How we protect it
- All data is encrypted in transit and encrypted at rest by our hosting provider.
- A child's date of birth is additionally encrypted at the field level with AES-256-GCM. It is decrypted briefly, in memory, only where the app genuinely needs the exact date: to check the 5–17 age range, to work out the age group, to decide whether the child is under 13 and which consent rules apply, to run the birthday month, to apply the change that happens at 18, and to show or export the date back to the parent who owns the profile. It is not shown in our admin tools and is not written to logs.
- Access is restricted to the account holder and the adults they have added.
- Internal access to children's records is limited to staff who need it.
No system is perfectly secure, but we design for the smallest amount of children's data we can operate on.
How long we keep it
We keep a child's personal information only as long as it is needed for the purposes described in this notice, and never for any other purpose.
- Deleting a child profile in the app marks it deleted immediately and removes it from view. It is then permanently erased, along with the child's activity records, after 30 days — a window that exists only so a deletion made by mistake can be undone.
- Deleting your whole account erases your children's profiles and their activity data from our live systems straight away.
- An account nobody comes back to does not stay open forever. If there is no active membership and the account has had no sign-in, profile change, export or other meaningful activity for 12 consecutive months, we email the account holder, give them at least 30 days, and then delete the child profiles and their activity records. Signing back in during that time stops it. A legal hold or an unresolved request from you or an authority suspends it.
When the law says keep it, we keep it. If information is subject to a legal hold, or to a request from you or an authority that is not yet resolved, our ordinary deletion schedules do not run against it until that is finished. A retention timetable should never override a duty to preserve.
Backups, and exactly how long they last. Our database keeps a rolling one-day history so that a failure or a mistake cannot destroy your family's records. That is the business reason it exists, and it is the only reason. A history like this is a sealed copy of the whole database as it stood at a moment in time; it cannot be edited to lift one child out of it. So the 24 hours run from the moment something is permanently erased, not from the moment you ask for it: a child profile is hidden at once and erased 30 days later, and it is for up to 24 hours after that erasure that it remains technically recoverable through the history — after which it can no longer be reached that way. Deleting your whole account has no 30-day window, so there the 24 hours run from the deletion itself. We keep no separate long-term database snapshots, and our hosting platform keeps its request logs for 24 hours as well.
During that 24-hour window the deleted information is not used for anything, is not visible in the app or in our admin tools, and would only ever be touched if we had to recover the whole database from a disaster. Anyone who tells you deleted data is gone from every copy the instant you press the button is describing something no backed-up system does; one day is how long ours takes.
After erasure we keep a record that a deletion happened, for audit purposes. It contains no personal information about the child. Nothing about a child is kept indefinitely.
Changes to this notice
If we change our practices in a way that materially affects children's information — collecting a new category, or using it for a new purpose — we will notify parents and, where the law requires it, obtain fresh consent before the change applies.
Contact us
For any question or request about your child's information, email hello@builtdifferent.com, or write to Ultimate Team Posters, LLC, 2170 Dalewood Ct, Plainfield, IL 60586. If you believe we have collected information from a child without the consent described here, tell us and we will delete it.
