← Back to Home

Child Safety & Data Protection

Last updated: 16 June 2026

1. Commitment

LexMatrix Guard is built to support the Australia eSafety under-16 social media age restrictions, Indonesia Government Regulation No. 17 of 2025 (GR17) under-16 social media ban, Malaysia Online Safety Act 2025 (ONSA) under-16 social media ban, UAE Cabinet Resolution No. 106 under-15 social media ban, and the UK Online Safety Act. We take child safety and data minimisation seriously.

2. Data Minimisation

  • We collect only the minimum data needed to enforce parental controls.
  • We do not read child messages, view photos, or collect precise location data.
  • SIM detection uses only a cryptographic hash of the SIM card — not the SIM phone number, IMSI, or carrier details — to detect unauthorised device or SIM swaps.
  • All platform enforcement decisions are based on publicly available legal policy lists, not profiling.

3. Parental Control & Consent

All child data is stored under the verified parent or guardian account. The parent is the data controller for their family, and we act as the processor. By creating a child profile, the parent confirms they have legal authority.

4. Platform Block Lists

Our platform block lists cover 72 platforms and are derived from official legal frameworks: the Australia Online Safety Amendment (Social Media Minimum Age) Act 2024, Indonesia Government Regulation No. 17 of 2025 (GR17), Malaysia Online Safety Act 2025 (ONSA), UAE Cabinet Resolution No. 106 of 2026, and the UK Online Safety Act. This includes 10 legally-banned platforms enforced automatically, plus 62 parent-controlled loophole platforms (gaming lobbies, niche social apps, anonymous apps, encrypted messengers, and AI companion apps) that children migrate to when banned apps are locked. Lists are reviewed quarterly. In addition, 6 restricted categories are blocked by default to catch unknown niche apps by type, and DNS-level category filtering blocks resolution of restricted domains at the network level — including 20 known DNS-over-HTTPS and DNS-over-TLS endpoints — to prevent tech-savvy children from circumventing blocks via alternative DNS servers.

5. Contact

For child safety concerns or data protection inquiries, contact our Data Protection Officer at info@lexmatrixguard.com

6. Identity Sovereignty & Zero-Biometric Mandate ("BOCHA" Shield)

LexMatrix Guard aligns completely with international digital protection policies (including AU eSafety, Indonesia GR17, UK GDPR, and UAE Resolution 106) while explicitly rejecting the intrusive biometric surveillance-state model.

  • Zero Document Capture: We will never request, store, upload, or transmit real passports, national identification cards, eID logins, or birth certificates of minors to verify usage.
  • Zero Biometric Estimation: We reject biometric facial age estimation. All configuration rules are managed locally and verified solely by the parent's timing-safe, server-verified PBKDF2 6-digit security PIN.
  • Pre-emptive Domain Drops: Because our system blocks platform domains at Layer 7 locally, child devices never establish a handshake with social media servers. This ensures your child is never exposed to external biometric prompts.