This disclosure is published pursuant to the Digital Personal Data Protection Act, 2023 (“DPDP Act”) and the rules framed thereunder. It sets out, in plain language, what personal data OurShield processes about you (the Data Principal) and your child, for what purpose, for how long, and how you may exercise your rights.
1. Data Fiduciary
Rostan Technologies Pvt. Ltd. is the Data Fiduciary. Registered office: Emaar The Palm Square, Unit No. # 09, 2nd Floor, Emaar MGF, Golf Course Ext Rd, Sector 66, Gurugram, Haryana 122002, India.
2. Data Principal
The parent or lawful guardian who creates the OurShield account is the Data Principal for their own personal data and acts as the verifiable lawful guardian for the child whose device is protected by OurShield.
3. Categories of personal data processed
- Authentication tokens (session cookies, refresh tokens).
- Parent email address.
- Child profile — name or nickname, date of birth, avatar image.
- Device identifiers — install ID, OS version.
- DNS query summaries — aggregated by category only; full URLs are never stored.
- Approximate location — only when the parent enables the Real-Time Location feature (LOCATION_REAL_TIME).
- FCM push notification tokens (parent device only).
4. Purposes of processing
Delivery of the parental-control service, safety alerts, billing, fraud prevention, and compliance with Indian law.
5. Retention windows
- activity_daily_aggregates — 365 days.
- raw activity_events — 90 days (partitioned tables, auto-dropped).
- location pings — 30 days default (parent-extendable up to 180 days).
- AI content-safety alerts (§8) — 30 days; only the signal category and timestamp are retained, never the source message.
- audit logs — 24 hours hot, 365 days cold.
- deleted accounts — 30-day grace period, then cryptographic erasure.
6. Consent withdrawal and erasure
Under §6(4) and §12 of the DPDP Act you may withdraw consent and request erasure at any time. OurShield provides self-service controls:
- Export your data (DATA_EXPORT): generate a machine-readable archive of everything we hold from /settings/account → Export my data.
- Delete your account (DATA_DELETION): trigger account deletion from /settings/account → Delete account. Deletion is irreversible after the 30-day grace period.
Withdrawing consent does not affect the lawfulness of processing that occurred prior to withdrawal.
7. Children’s data — §9
OurShield processes the personal data of children exclusively under verifiable parental consent. We do not track the child for behavioural advertising, we do not profile the child for any purpose detrimental to their well-being, and we do not permit targeted advertising directed at the child.
8. AI content-safety monitoring (optional, per child)
If you separately opt in for a specific child, OurShield’s AI reviews on-screen message content in supported messaging and social apps for safety-relevant patterns — bullying, self-harm risk, grooming, hate speech, and explicit content. This is off by default and requires your explicit, per-child consent in addition to the account-level consent under §2; you may withdraw it at any time from that child’s settings, per §6 above. When it is off, no message content is ever sent to our AI processor or stored.
When it is on, we do not store the raw message and never quote or show you the underlying text — you receive a signal category and a timestamp, by design. A possible self-harm signal also surfaces verified crisis-helpline numbers alongside the alert.
9. Grievance Officer
Grievance Officer: Virender Kumar, grievance@shieldapp.rstglobal.in, Emaar The Palm Square, Unit No. # 09, 2nd Floor, Emaar MGF, Golf Course Ext Rd, Sector 66, Gurugram, Haryana 122002, India. Response SLA: 30 days per DPDP §13.
10. Contact
You may contact us about this disclosure at: privacy@shieldapp.rstglobal.in.