← Back to Skoul
ENFRESDE

Skoul Cookie Policy

Last Updated: October 5, 2026


Introduction

This Cookie Policy explains how HIGHTHEM ("we," "us," or "our") uses cookies and similar technologies in the Skoul mobile application for iPhone, iPad and Android ("App") and on the skoul.fr website. This policy is designed to help you understand what these technologies are, why we use them, and your choices regarding their use.

Company Information:
HIGHTHEM
SIREN: 848274338
France

Contact: privacy@skoul.fr


Important Note: Skoul is a Native iPhone, iPad and Android App

Skoul does not use web cookies because it is a native mobile application for iPhone, iPad (iOS 18.6 or later) and Android (8.0 or later), not a web-based service. However, this policy explains the local storage the App relies on and the limited data sent to external services so that you know exactly what happens on the device and off it.

The skoul.fr website sets no cookies either. It only remembers the language you chose in your browser's local storage (see The skoul.fr Website below).


What Are Cookies and Similar Technologies?

Traditional Web Cookies

Cookies are small text files that websites store on your browser to remember information about you. The Skoul App does not use web cookies because it is not a website or web app, and the skoul.fr website does not set any cookies.

Mobile Technologies Similar to Cookies

Instead of cookies, mobile apps like Skoul may use:

  1. Local Storage (SwiftData on iPhone and iPad, an app database on Android):
    • Stores app preferences and your child's data locally on your device
    • Not synced to the cloud; on Android, excluded from device backups
    • Used for app functionality only
  2. Device Identifiers:
    • App install identifier: Apple's identifier for vendor (IDFV) on iOS, the Android ID on Android. It is sent with each request to the Skoul API and kept in server logs for 30 days, for security, abuse prevention and troubleshooting
    • Firebase installation identifier: sent with crash reports, only if a parent turns them on
    • NOT advertising identifiers: we do not collect the IDFA or the Android advertising ID (the Android App removes the advertising ID permission)
  3. Third-Party SDKs:
    • Skoul contains no advertising SDK and no third-party analytics SDK (Firebase Analytics is not included)
    • The only diagnostic SDK is Firebase Crashlytics, which is off unless a parent turns it on
    • There is no ad identifier access
  4. Session Storage:
    • Temporary data stored while the App is running
    • Cleared when you close the App

Technologies We Use

1. Essential Local Storage (Always Active)

Purpose: These are necessary for the App to function properly. They cannot be disabled.

What We Store Locally:

  • Child Profile:
    • First name
    • Age (6 to 12)
    • Country
    • Class (optional) and notebook cover
    • Optional avatar photo
  • Practice Data:
    • Exercise results and session history
    • Accuracy, time spent and difficulty progression
    • The mistake box (reviews after 1, 3, 7, 14 and 30 days) and the reading speed trend
  • Skoul+ and Homework Help:
    • Skoul+ subscription status (active, in trial, expired)
    • Homework history (photos and results, stored locally, erased with Delete everything)
  • App Settings:
    • App language (English, French, Spanish or German)
    • Sound and reminder preferences
    • Privacy choices (homework photos, crash reports, usage statistics)
    • The parent PIN, stored hashed (never in clear)

Storage Method: SwiftData on iPhone and iPad, an app database on Android
Location: Your device only
Transmission: Never transmitted, except age and country, which are sent with AI requests and homework photos
Deletion: "Delete everything" in the Parents area, or uninstalling the App
Control: Cannot be disabled (required for App functionality)

2. Optional Diagnostics and Statistics (Off by Default)

Crash reports (Firebase Crashlytics, Google): when the App closes unexpectedly, a technical report (device model, operating system and app version, stack trace and a Firebase installation identifier; no name, age, answers or photos) can be sent to help us fix the problem. Off unless a parent turns it on in the Parents area (privacy settings).

Anonymous usage statistics (Skoul's own server): anonymous daily counts of actions from a fixed list (for example "exercise completed – addition: 3"), with the platform, app version and app language. No name, age, country, answers, photos, device identifier or advertising identifier is sent, and the counts are kept only as daily totals for up to 25 months. Off unless a parent turns them on in the Parents area (privacy settings). Legal basis: consent, which can be withdrawn at any time.

3. Advertising and Analytics SDKs

Skoul contains no advertising SDK, no third-party analytics SDK and no tracking technology. There is no ad identifier access.

The optional Skoul+ subscription is billed by Apple (App Store) or Google (Google Play); we receive only the subscription status, never payment details or an advertising identifier.


The skoul.fr Website

  • No cookies: the website sets no cookies and shows no cookie banner because none is needed
  • Language: the language you choose is remembered in your browser's local storage (key "skoul_language"); it never leaves your browser and you can clear it in your browser settings
  • Animation: a temporary session storage entry remembers that the home page animation has already played; it is cleared when you close the tab
  • No analytics or advertising: no analytics, tracking pixels or advertising on the website
  • Fonts: fonts are loaded from Google Fonts, which receives your IP address as with any web request
  • Newsletter: if you sign up, we store your email address and language until you unsubscribe (see the Privacy Policy)

Technologies We Do NOT Use

To protect children's privacy, Skoul does NOT use:

❌ Third-Party Analytics: No Firebase Analytics, Mixpanel, Amplitude, etc.
❌ Social Media Trackers: No Facebook Pixel, Twitter, Instagram, TikTok tracking
❌ Cross-App Tracking: No IDFA, Android advertising ID or other advertising identifiers
❌ Behavioral Targeting: No user profiling or behavioral advertising to children
❌ Web Cookies: None in the App and none on the skoul.fr website
❌ Third-Party Marketing Pixels: No pixels or beacons from marketing platforms
❌ Session Replay Tools: No recording of user interactions
❌ Heatmaps or Click Tracking: No detailed interaction tracking
❌ Affiliate Tracking: No affiliate cookies or referral tracking
❌ Retargeting Pixels: No retargeting or remarketing technologies


Data Sent to External Services (Not Cookies, But Similar Effect)

While Skoul doesn't use cookies, we do send limited data to external services for specific purposes:

AI Practice Requests

Skoul API (Cloudflare):

  • Data Sent: Subject, age, country code, language and difficulty
  • Purpose: AI reading texts, AI word lists and maths word problems
  • Frequency: Only when your child asks for new AI practice; maths drills, the mistake box and most reading and writing drills are generated on the device and send nothing
  • AI Providers: Skoul's server asks OpenAI, with Anthropic (Claude) and then Groq as backups (each only if the previous one fails)
  • Storage: AI prompts are not stored; server logs (IP address, install identifier, app version, age, country, language, endpoint and result; never content) are deleted after 30 days
  • Location: Cloudflare's network processes each request in a data centre near you, as our processor under its Data Processing Addendum, including the EU Standard Contractual Clauses

Google Gemini directly (Android only):

  • Data Sent: The same non-nominative data (subject, age, country code, language, difficulty)
  • Purpose: Maths word problems and word lists, only when Skoul's server cannot be reached (Firebase AI Logic); never homework photos
  • Privacy: https://firebase.google.com/support/privacy

If no AI is reachable, the App uses exercises included in the App.

Homework Help (Skoul+)

  • Data Sent: The photo of the exercise, plus age, country code and language
  • Recipients: The Skoul API (Cloudflare), which asks OpenAI to read the exercise, with Anthropic (Claude) and then Groq as backups
  • Purpose: The explain, check, lesson and quiz modes
  • Storage: Not kept by us; a copy stays on the device in the homework history until Delete everything
  • Control: A parent can stop photos from leaving the phone in the Parents area (privacy settings)

Important: Your child's name, class, avatar and practice history are never transmitted to any external service.


COPPA and GDPR Compliance

COPPA (Children Under 13 - United States)

Compliance Measures:

  • No persistent identifiers used for behavioral advertising; the install identifier is used only for security and troubleshooting and kept 30 days
  • No third-party tracking of children across websites or apps
  • Parental consent confirmed with a grown-up check during onboarding
  • No ads and no advertising SDK in the App
  • Homework photos are processed only to produce the response and are never stored by us

GDPR (European Union)

Compliance Measures:

  • No cookies requiring consent (none in the App, none on the website)
  • Local-first data storage (no cloud sync, no accounts)
  • Crash reports and usage statistics only with consent (off by default)
  • Parental consent for children under applicable age thresholds (13-16)
  • Right to access, rectify, and delete data
  • Transparency about the external services used (Skoul API on Cloudflare, OpenAI, Anthropic, Groq, Google Gemini on Android only, Firebase Crashlytics if turned on, Resend for emails)

Cookie Consent Banner: Not required for Skoul because:

  1. The App is a native iPhone, iPad and Android app (not a website)
  2. Neither the App nor the skoul.fr website uses cookies
  3. Essential local storage is necessary for App functionality, and the website only remembers your language
  4. Optional diagnostics and statistics are off unless a parent turns them on in the App

Your Choices and Controls

Managing Local Storage

View Data:

  • Everything about your child is on your device; the Parents area shows reports and progress
  • The Parents area can export a copy of everything on the phone (JSON and PDF)

Edit Data:

  • Edit the profile directly in the App

Choose What Leaves the Phone:

  • Parents area > privacy settings: homework photos (on by default), crash reports and usage statistics (off by default)
  • Protected by a grown-up check (Face ID, Touch ID, fingerprint, the device passcode or a Skoul parent PIN)

Delete All Data:

  • "Delete everything" in the Parents area removes the profile, progress, homework history and settings from the device, and deletes your Sunday report subscription from our server
  • Uninstalling the App removes everything stored on the device
  • Cannot be recovered

Managing Homework History (Skoul+)

  • The homework history lists every saved homework (photo and result)
  • Delete everything in the Parents area erases it from the device; we hold no server copy

Managing Skoul+:

  • iPhone and iPad: your Apple ID subscriptions; Android: Google Play > Payments & subscriptions
  • Cancelling does not delete any learning data

Children's Privacy Protection

Special Protections for Children:

  1. No Behavioral Profiling:
    • We never build behavioral profiles of children
    • No tracking of interests or habits for advertising
  2. No Cross-App Tracking:
    • We don't track children across other apps or websites
    • No IDFA or Android advertising ID collection
  3. Minimal Data Collection:
    • Only necessary data for App functionality
    • No email, phone or precise location from the child
  4. Local-First Architecture:
    • Personal data stays on the device
    • No cloud synchronization of private information
  5. Parental Consent:
    • Confirmed with a grown-up check during onboarding
    • Clear disclosure of all data practices
  6. Easy Deletion:
    • "Delete everything" in the Parents area, or uninstall the App
    • Server logs deleted automatically after 30 days; homework photos never stored

Third-Party Privacy Policies

Since Skoul uses a small number of service providers, we encourage you to review their privacy policies:

Cloudflare (hosting of the Skoul API and the skoul.fr website):

  • Privacy Policy: https://www.cloudflare.com/privacypolicy/

OpenAI (homework help and AI practice):

  • Privacy Policy: https://openai.com/policies/privacy-policy

Anthropic (AI backup):

  • Privacy Policy: https://www.anthropic.com/legal/privacy

Groq (AI backup):

  • Privacy Policy: https://groq.com/privacy-policy/

Google Gemini and Firebase (Android direct fallback, Crashlytics if turned on):

  • Privacy Policy: https://firebase.google.com/support/privacy
  • Gemini API Terms: https://ai.google.dev/gemini-api/terms

Apple App Store and Google Play (Skoul+ billing):

  • Apple Privacy Policy: https://www.apple.com/legal/privacy/
  • Google Privacy Policy: https://policies.google.com/privacy

Resend (emails):

  • Privacy Policy: https://resend.com/legal/privacy-policy

Note: We do not control these third parties' practices. Their data collection is governed by their own policies.


Updates to This Policy

We may update this Cookie Policy from time to time to reflect:

  • Changes in technologies we use
  • New features or services
  • Changes in applicable laws
  • Updates to third-party integrations

How We Notify You:

  • The "Last Updated" date at the top will change
  • Material changes will be communicated through the App
  • Continued use after changes constitutes acceptance

Reviewing Changes:

  • Access the current policy at https://skoul.fr/cookies
  • Contact us for clarification: privacy@skoul.fr

Contact Us

If you have questions or concerns about this Cookie Policy or the technologies we use:

Email: privacy@skoul.fr

Data Controller:
HIGHTHEM
SIREN: 848274338
France

Response Time: We will respond to legitimate inquiries within 30 days.

Regulatory Authorities:

  • France: Commission Nationale de l'Informatique et des Libertés (CNIL) - https://www.cnil.fr
  • EU: Your national data protection authority
  • US (COPPA): Federal Trade Commission - https://www.ftc.gov

Summary

Quick Reference:

✅ No web cookies in the App (native iPhone, iPad and Android app) or on skoul.fr
✅ Local storage only for your child's data (stays on your device)
✅ Essential storage cannot be disabled (required for App functionality)
✅ No ads, no advertising SDK and no third-party analytics SDK
✅ No cross-app tracking (no IDFA or Android advertising ID)
✅ Crash reports and usage statistics off unless a parent turns them on
✅ Homework photos read by OpenAI (Anthropic or Groq as backups), never kept by us
✅ Built for COPPA and GDPR (child-specific protections)
✅ Easy data deletion ("Delete everything" in the Parents area)
✅ Transparent practices (clear disclosure of all data collection)

For Parents:

  • Your child's profile (name, class, avatar) and practice history stay on your device
  • Only age, country, language and difficulty are sent for AI practice; never the name
  • With Skoul+, homework photos are read and then discarded by us; the on-device copy is erased with Delete everything
  • Skoul+ is billed by Apple or Google; we never see your payment details
  • "Delete everything" in the Parents area, or uninstalling Skoul, deletes all data on the device

Version History

  • Version 1.0 - November 7, 2025 - Initial publication
  • Version 2.0 - September 10, 2026 - Advertising SDK removed; homework photo processing added
  • Version 2.1 - October 4, 2026 - Aligned with the App and the Privacy Policy: Android and iPhone/iPad; homework photos read by OpenAI with Google Gemini as backup; Android-only direct Google Gemini fallback for AI practice; Apple Intelligence removed; app install identifier and 30-day server logs; Firebase Crashlytics and anonymous usage statistics off unless a parent turns them on; Google Play billing; the skoul.fr website sets no cookies
  • Version 2.2 - October 5, 2026 - AI providers: OpenAI first, then Anthropic (Claude), then Groq; Google Gemini no longer used by Skoul's server (Android direct fallback unchanged)

HIGHTHEM is committed to protecting children's privacy and maintaining transparency about data collection practices. We use no tracking technologies and prioritize local-first data storage to keep your child's information secure.