Legal
Privacy Policy
This policy describes how SumSprint handles information. Last updated: 26 August 2026.
SumSprint is provided by Arthur de Rijke (“we”, “us”). The app is designed for children practising arithmetic, with parent controls for points, rewards, and family linking. We do not operate a SumSprint account system and we do not run advertising, tracking, or analytics in the app.
Who this policy covers
This policy applies to the SumSprint iPhone and iPad app and this support website. The app is intended for use by children together with a parent or guardian. A parent should set the parent PIN and decide whether to link another adult’s Apple Account.
What SumSprint does not collect
SumSprint does not include advertising, tracking SDKs, or analytics. We do not sell personal data. We do not build advertising profiles. The app does not require you to create an account with us, and it does not send practice results to our own servers.
Information stored on the device and in iCloud
Practice data stays under the user’s Apple Account. Depending on how the family uses the app, SumSprint may store:
- Practice sessions, answers, grades, point-approval status, and statistics.
- Rewards, redemption history, and available points.
- Practice setup preferences (problem types, tables, ranges, session length or time limit).
- An optional child’s name and selected avatar (an illustrated preset or a personal photo cropped on the device).
- Family-sharing identifiers needed to keep a linked parent and child in sync.
This information is stored locally with SwiftData and, when the user is signed in to iCloud, synchronized through Apple’s CloudKit using the private container iCloud.nl.turen.sumsprint. The app remains usable offline. Local changes sync when iCloud is available again.
Family linking
If a parent explicitly links to a child on a different iCloud account, a copy of that child’s profile, results, answers, points, rewards, and redemption history is placed in a private CloudKit share. Only accepted participants can access that share.
Temporary pairing records used for the QR-code flow contain opaque random identifiers, a cryptographic proof, and a pseudonymous iCloud user-record identifier. They do not contain the child’s name, photo, results, or rewards. Those pairing records are removed when the QR screen closes.
Cached linked-child data stays inside the parent app’s sandbox and is deleted when the parent leaves the share. A child account can revoke parent access after parent-PIN confirmation. Parents can leave a linked child from Settings.
Parent PIN
A four-digit parent PIN protects point approval, reward management, redemption, and some family-linking actions. A salted PIN verifier is stored in the Keychain and can synchronize through iCloud Keychain on devices that use the same Apple Account. The PIN itself is never stored or logged. Failed PIN attempts and temporary lockouts remain on that device only.
Photos and camera
Personal avatar photos are selected with Apple’s system photo picker, cropped and resized on the device (to at most 512 × 512 pixels), and stored with the private iCloud settings. They are not sent to any service other than iCloud. The app does not browse the full photo library.
The camera is used only to scan a child’s temporary pairing QR code. Access is requested in that context. SumSprint does not capture or upload other camera images.
Notifications and language
The optional daily practice reminder uses Apple’s local notifications on that device. It stays off until it is turned on. The reminder time and the language preference (English or Dutch) stay on the device only and are not synchronized through iCloud.
This support website
This support site is static documentation. It does not require an account. If you host or visit a copy of these pages, any server or analytics that the host adds are outside this app’s control. The pages as shipped with the SumSprint project do not embed third-party tracking scripts.
Children’s privacy
SumSprint is meant for children, but we do not collect children’s data on our own servers. Information the family enters (such as a first name or a photo) is stored on the device and, if iCloud is enabled, in that family’s Apple iCloud data. Family sharing happens only after a parent starts linking with a PIN-protected QR code. We do not use children’s data for advertising.
Apple’s role
iCloud, CloudKit, iCloud Keychain, the photo picker, local notifications, and the App Store are Apple services. Apple’s handling of that data is described in Apple’s privacy policy and iCloud terms. We do not control Apple’s infrastructure.
Retention, deletion, and your choices
- You can delete practice history and rewards in the app, subject to the screens provided there.
- You can change or remove the child’s name and avatar in Settings.
- You can turn off the daily reminder.
- You can leave or revoke a family link; cached linked data on a parent device is then deleted.
- You can sign out of iCloud or delete the app. Data already in iCloud remains until it is deleted through Apple’s iCloud tools or until the CloudKit records are removed by using the app’s deletion flows while signed in.
Permissions
SumSprint may request:
- Camera — only to scan a temporary family-pairing QR code.
- Photo access via the system picker — only if you choose a personal avatar.
- Notifications — only if you turn on the daily practice reminder.
- iCloud / CloudKit — to sync the family’s own data and, if requested, a private share with a linked parent.
You can deny a permission. Features that need it will not work until it is allowed.
Changes to this policy
If we change how SumSprint handles information, we will update this page and the date above. Material changes will also be reflected in the app’s release notes where appropriate.
Contact
For privacy questions about SumSprint, contact Arthur de Rijke at sumsprint@turen.nl.
SumSprint · bundle identifier nl.turen.sumsprint · iOS and iPadOS 17.6 or later.