The GetZ security standard

Trust needs
receipts.

GetZ is being engineered so families can see what is protected, what permission enables it, when a device last reported, and when the system needs attention.

Read the standard
PROTECTION LEDGER · EXAMPLE

Safe WebVerified 18 seconds ago

ACTIVE

LocationAllowed while app is in use

LIMITED

Routine syncDevice has not checked in

OFFLINE

NotificationsPermission was disabled

ATTENTION
SIX BUILD RULES 01

Security is a system behavior,
not a badge.

These are product requirements for the new GetZ applications. Detailed controls, retention windows, and independent testing evidence will be published as the implementation matures.

01

Collect less

Every sensitive field needs a product reason, an owner, and a deletion rule.

02

Explain access

Camera, location, notifications, and device-management permissions must have visible purpose and state.

03

Separate roles

Parent, child, support, and service access should be scoped to the smallest useful capability.

04

Encrypt the path

Sensitive family data is designed to be encrypted in transit and at rest with managed secrets outside app code.

05

Report reality

The app should distinguish active protection from stale, offline, limited, and needs-attention states.

06

Delete with intent

Families need understandable retention choices and a real account-deletion path before public launch.

THE DATA PATH 02

Every handoff should have a reason.

A simple architecture is easier to defend. GetZ separates the child device, parent account, family service, and AI learning boundary so access can be narrowed and audited.

01CHILD DEVICEPermissioned signals
02FAMILY SERVICEScoped family state
03PARENT VIEWMinimum useful detail
LEARNING REQUESTS CROSS A SEPARATE, AGE-AWARE AI BOUNDARY
NON-NEGOTIABLES 03

What GetZ will not become.

×

No hidden camera or microphone accessProtection should never mean secret recording.

×

No advertising profile of a childFamily behavior is not inventory to sell.

×

No pretending offline means protectedUnknown state must be shown as unknown.

×

No permanent child role by defaultControls should adapt as capability and trust grow.

SECURITY QUESTIONS ARE WELCOME

Ask us what the product can prove.

Contact security or join early access →