Privacy Policy
This policy covers the OUMA app and the ouma.app website. It is written to be read by parents, not just lawyers — and it is short because OUMA is built so there is very little to disclose.
Draft last updated: July 30, 2026 · Effective date: [set at launch]
OUMA is made by the studio behind ouma.app [legal entity name and jurisdiction to be inserted before launch]. For anything in this policy, contact waitlist [at] ouma [dot] app.
| Data | Where it lives | Do we ever receive it? |
|---|---|---|
| Lessons, quiz answers & feedback | On your device only | Never |
| Progress, scores & session history | On your device only | Never |
| Voice | Transcribed on the device; audio is not uploaded | Never |
| Learner's first name (used for greetings) | On your device only | Never |
| Emails you send us | Our mailbox | Yes — because you sent them |
| Purchases & subscriptions | Processed by Apple under Apple's privacy policy | Aggregate sales figures only — never identities |
Nothing. OUMA has no user accounts, no cloud sync, no advertising SDKs, no third-party analytics SDKs, and no crash-reporting service that transmits personal information. The AI model that teaches, quizzes, and grades runs entirely on your device. Our intended Apple privacy "nutrition label" for OUMA is Data Not Collected.
OUMA is built for learners, including children under 13 — and its architecture is our COPPA posture: we do not collect personal information from children. Specifically:
Because OUMA processes and stores all learning data on the student's own device and transmits none of it to us, no student education records are created, held, or accessible on our systems. Schools evaluating OUMA for FERPA purposes should note that there is no data-sharing agreement to sign because there is no data flow to govern — we are glad to confirm this in writing for your records.
This website is static. It sets no cookies, runs no analytics, and embeds no third-party trackers. If you email the waitlist or support address, we use your email to respond and to contact you about OUMA. We do not add you to anything else, and we delete your correspondence on request.
On-device data is protected by iOS device encryption and Apple's app sandboxing — the same protections that guard your photos and messages. The strongest security statement we can make, though, is architectural: data that never leaves your device cannot be breached from our side, because there is no "our side" holding it.
Privacy laws around the world grant rights to access, correct, delete, and port personal data, and to object to its processing. Because the only personal data we hold is correspondence you sent us, exercising these rights is simple: email waitlist [at] ouma [dot] app and we will confirm, show you, or delete what we have. For California residents: we do not sell personal information and we do not "share" it for cross-context behavioral advertising, as those terms are defined in the CCPA/CPRA — there is nothing to opt out of.
If this policy changes in any material way — especially any change to the on-device architecture described above — we will post the new version here with a new date and a plain-language note about what changed. We consider the on-device promise the product itself; weakening it quietly is not something an update will ever do.
waitlist [at] ouma [dot] app — privacy questions get straight answers. It's the whole point of the product.