Privacy
Last updated August 2026
Sparkle is a place to think and learn. We collect as little as possible, and we don’t sell your data or use it for advertising. This page explains what we store and why, in plain language.
What we store
- The adult-managed account: the parent or guardian’s name and email address, confirmation that an adult created the account, and a securely hashed version of the password. We never store the password in plain text.
- Your learning: which lessons and challenges you’ve started or completed, and the written responses and reflections you save. This is yours — it exists so your progress is waiting for you next time.
- Light activity dates: when you complete work, so we can show your weekly activity and streak. We do not track your browsing or build an advertising profile.
Children and parent-managed accounts
Sparkle’s learning activities are designed for young learners, but an account must be created and managed by a parent or guardian. A child should not register, enter their real name or email, or include private information in a lesson response. The adult who manages the account should supervise its use and can review or delete the saved work.
Why we use the data
We use account data to sign the adult in, protect and recover the account, save the learner’s progress, and operate the service. We do not sell personal data, show behavioral advertising, or use saved learning responses to train advertising profiles.
Optional learning-reminder emails
The adult account holder can choose to receive one reminder email per day while a started course or challenge remains unfinished. The email contains the title and progress of the unfinished work, but not the learner’s written answers. Reminders stop when the work is completed and can be paused at any time from Profile.
Service providers and retention
Hosting, database, and transactional-email providers process only the data needed to run Sparkle. They may process data in other countries under their own security and data-protection commitments. Account and learning data is kept while the account exists. Expired sessions and password-reset records are kept only as long as needed for security and operation. Deleting the account removes its associated learning data from the active database; limited encrypted backups may remain until their normal rotation completes.
The session cookie
When you log in, Sparkle sets a single essential cookie to keep you signed in. It is:
- HttpOnly — not readable by JavaScript, which protects it from common attacks.
- Secure in production — only sent over HTTPS.
- SameSite=Lax — not sent on cross-site requests.
This cookie is required for the app to work. It is not an advertising or tracking cookie, and there are no third-party trackers, fingerprinting, or behavioral analytics on Sparkle.
Your control
- You can change your name and password any time from your profile.
- Logging out clears your session immediately.
- You can delete your account from your profile. Deleting removes your account and all associated learning data.
Contact
Questions, access requests, or deletion requests can be sent to sparkleearlysupport@gmail.com.

