Child Protection Online · v1.0

Enforcement that lives on the device. Law that outranks the settings menu.

CPO turns child-safety legislation into enforced behaviour on real devices — a policy engine that stamps jurisdiction law onto every rule set, a control panel for parents, and a protection app a child cannot switch off.

Regulators Operators & ISPs Schools & institutions Parents
A parent and children spending time together on a tablet at home Photo: Alexander Dummer / Unsplash
Why CPO exists

Children carry the whole internet in their pocket.

Network-level filtering — the model of the last decade — no longer reaches them. Modern apps and browsers hide what a network filter needs to see.

01

Encrypted traffic

Filtering built for the web misses where kids actually spend time.

02

Apps bypass browsers

Most exposure now happens inside apps a network filter never sees.

03

VPNs beat filters

A free VPN defeats an ISP-level filter in about thirty seconds.

Meanwhile, the law is catching up

Minimum ages for social media, mandatory age assurance, and duty-of-care obligations are now being legislated worldwide. CPO's answer: one platform enforcing rules where they cannot be bypassed.

The two-app architecture

Enforcement happens on the device.

The panel is where decisions are made; the child app is where they are applied.

Any browser — phone, tablet, desktop

Parent Control Panel

Create child profiles, set rules, review activity, approve or deny access requests.

Cloud backend

Policy Engine & API

Stores policy, stamps jurisdiction law onto it, serves the effective policy, receives events.

Child's phone, tablet or Chromebook

Child Protection App

Applies filtering, app blocks, time budgets and tamper protection locally — online or offline.

Because policy is resolved on the server and signed before delivery, a modified client cannot unlock a restriction the law imposes.

Locked by law

Jurisdiction mode — the law wins.

Each household loads the published rule set for its country. Where a legal restriction exists, the control is locked with a plain-language explanation — and a parent cannot switch it off. This is what separates CPO from a consumer parental-control app.

§ 1

Minimum-age rules

Applied automatically from the child's date of birth.

§ 2

Nationally banned platforms

Blocked regardless of parent settings.

§ 3

Auto-denied requests

Access a law prohibits is denied, with the reason shown to both parent and child.

§ 4

Law vs. preference

Legal rules and parent choices stay visually distinct — authority is never ambiguous.

§ 5

Versioned rule sets

Dated and versioned, giving regulators and operators an auditable enforcement record.

What it enforces

Built for both established risks and the categories that came after.

Content and category controls, screen time, tamper protection, and a documented API for operators — each configurable per child, and locked wherever the law requires it.

Content & category controls

Established categories like adult content and violence, plus modern ones: AI companion apps, crypto and gambling, disappearing messaging.

Screen time & daily rhythm

Daily time budgets, bedtime windows, per-category schedules, and chores that release bonus minutes.

Tamper protection

Blocks VPNs, proxies, sideloading and private browsing; locks DNS; prevents uninstall. Every attempt is logged and surfaced to parents.

Guided supervision enrollment

Step-by-step setup tailored to iOS & iPadOS, Android, Chromebook and Windows — not left to the parent to figure out.

Parent dashboard

Supervision status, recent activity, an access-request inbox, and CSV export for schools or clinicians who need records.

Policy API for operators

A documented API — /policy, /activity, /request, /tamper — built for ISP-scale and government-scale deployment.

The parent control panel

Policy on the left. Evidence on the right.

Every household sees exactly which rules come from the law and which are their own choices — and every action a child's device takes is written to an audit trail underneath it.

Setting policy for one child
Parent control panel showing a jurisdiction rules banner, screen time and bedtime controls, and enrolled devices for a child profile named James
Enforcement and audit, live
Live enforcement dashboard showing blocked attempts, tamper events, an audit trail of browsing decisions, and the jurisdiction rule in force
The child app

What the child sees.

Nothing silent. Every block names its reason — and whether that reason is a parent's choice or the law.

Child app home screen showing protection active, screen time used today, bedtime lock and a note that Australia rules are in force

Protection active

No hidden state — time and limits shown plainly.

Child app screen reading TikTok is not available, not permitted for under-16s in Australia, set by national law

Blocked by law

Attributed to statute — the parent cannot lift it.

Child app screen reading this page is blocked, this category is switched off by your parent

Category blocked

Parent policy, with the category named on screen.

Child app screen reading time's up for today, daily limit reached, with an option to ask for more time

Time's up

Daily budget reached; enforced locally, so it holds offline.

Child app screen for requesting access to discord.com, with recent requests approved, denied or waiting

Ask a parent

One tap to the panel. Statutory blocks aren't requestable.

Child app screen reading VPN apps are turned off, tamper attempt blocked and logged

VPN blocked

Bypass refused and logged as a tamper event.

Who it's for

One platform, four different jobs to do.

CPO is built primarily as infrastructure for regulators and the operators they work with — and it's what parents and schools use day to day.

Regulators

Primary

A mechanism that turns written law into enforced behaviour on real devices — versioned rule sets, aggregate compliance reporting, never child-level surveillance.

Operators & ISPs

A deployable child app and policy API offered to a subscriber base, or bundled with devices at national scale.

Schools & institutions

Consistent, auditable policy on managed devices, on and off the premises.

Parents

One panel for every child and device; protection that survives a determined child — no need to understand DNS, VPNs or MDM.

Design principles

What CPO will not compromise on.

01

Enforce on the device

Anything else is advisory.

02

Law above preference

Resolved server-side and never overridable on the client.

03

Default to protected

Safety controls ship on, not off.

04

Minimum data

Children have profiles, not accounts; regulators see aggregates, not children.

05

Explain every block

A restriction a family cannot understand is one they will work around.

Request a briefing

Evaluating CPO for your jurisdiction or organization?

We prioritise briefings with regulators and operators assessing CPO for national or regional deployment. Parents and schools are welcome to reach out too.