6. Child Safety Policy

Effective date: April 03, 2025 Company: RAB CORP Pvt Ltd Service: SYNC Child safety contact: support@rabcorp.co.in Grievance contact: Ashish Bhawkar, Ashish.bhawkar@rabcorp.co.in

6.1 Purpose

This Child Safety Policy explains how RAB CORP Pvt Ltd seeks to protect children and minors on SYNC. It applies to Accounts, private chats, group chats, channels, broadcasts, forwarding, media, files, profiles, reports, grievances, support requests, and all other Services.

A child is any person below eighteen years of age.

6.2 Zero tolerance for CSAM and child exploitation

We have zero tolerance for child sexual abuse material, child sexual exploitation, grooming, sexual solicitation of children, sextortion involving children, sexualised images of children, child trafficking, child abuse, or any Content harmful to a child.

You must not create, generate, modify, upload, publish, transmit, store, update, share, forward, request, solicit, distribute, threaten to distribute, or otherwise disseminate any CSAM or child exploitative Content. This prohibition applies to real, AI-generated, synthetic, morphed, cartoon, edited, self-generated, or apparently fictional Content involving a child.

6.3 Examples of prohibited child safety violations

Prohibited conduct includes:

sexual images, videos, audio, or descriptions involving a child;

grooming a child for sexual activity;

asking a child to send intimate images or personal details;

sharing or threatening to share a child’s private images;

sexual comments about a child;

using a group or channel to exploit, traffic, or endanger a child;

bullying, blackmailing, extorting, or harassing a child;

encouraging a child to self-harm or engage in dangerous activity;

AI-generated sexual images of a child;

morphed images making a child appear nude or engaged in sexual conduct;

sharing school, identity, address, family, or location information to endanger a child; and

any Content or conduct harmful to a child under Applicable Law.

6.4 Age, eligibility, and parental consent

Children may use SYNC only where permitted by Applicable Law, with verifiable consent of a parent or legal guardian where required, and under appropriate supervision. We may require age information, parental contact information, consent records, or other verification where necessary.

If we learn that a child is using the Services without required consent, or in a manner that creates risk, we may restrict features, suspend or terminate the Account, delete or limit data, require parental verification, or take other action required by Applicable Law.

Parents or guardians are responsible for supervising a child’s use of the Services, discussing online safety, enabling privacy settings, and responding to safety concerns.

6.5 Verifiable parental consent under DPDP

Where the DPDP framework requires verifiable parental consent before processing a child’s Personal Data, we will adopt appropriate technical and organisational measures to obtain such consent and to check that the person identifying as the parent or guardian is an adult who can be identified where required.

We may use methods such as verified mobile number, email confirmation, government-recognised identity or token mechanisms where legally permitted, payment or account verification where appropriate, or other reliable methods notified by us. We will not use parental verification information for unrelated purposes unless permitted by Applicable Law or consented to.

6.6 Privacy settings and parental controls

SYNC may offer privacy and safety features such as blocking, reporting, last-seen controls, read receipt controls, profile visibility controls, group controls, connection request controls, and contact discovery controls.

Where parental controls or child-specific settings are available, parents or guardians should use them to reduce exposure to unknown contacts, public groups, channels, broadcasts, or unwanted contact. We may restrict certain features for children where required or appropriate, including public discovery, unknown contact messaging, large groups, broadcasts, channels, or media sharing.

6.7 Reporting child safety concerns

Child safety concerns may be reported through:

in-app reporting tools;

email to support@rabcorp.co.in;

email to Ashish Bhawkar, Ashish.bhawkar@rabcorp.co.in;

website form at www.rabcorp.com/sync/legal; or

emergency law enforcement channels where there is immediate danger.

Please include the child’s safety concern, User details, group or channel details, message IDs or timestamps, screenshots or attachments, and whether immediate harm is suspected. For E2EE private messages, use the in-app reporting feature where possible so that the relevant Content can be securely provided to us for review.

6.8 Review and action

When we receive a child safety report, we may:

prioritise the report for urgent review;

remove or disable access to Content;

restrict, suspend, or terminate Accounts;

disable groups, channels, broadcasts, or sharing features;

preserve evidence and associated records;

report to appropriate authorities where required;

cooperate with law enforcement and child protection authorities;

notify parents, guardians, or affected Users where appropriate and lawful;

prevent further sharing or forwarding where technically feasible; and

take other measures necessary to protect children.

We may act without prior notice where child safety, evidence preservation, legal compliance, or prevention of harm requires immediate action.

6.9 Mandatory reporting and cooperation with authorities

Where child safety Content or conduct appears to involve an offence or mandatory reporting obligation under Applicable Law, including laws relating to protection of children from sexual offences, we may report the matter to appropriate authorities in accordance with law.

We may preserve and disclose information under our control or possession to courts, competent authorities, law enforcement agencies, or government bodies where lawfully required. For supported E2EE private chats, we may not have access to plaintext content unless it is voluntarily reported or otherwise lawfully available to us.

6.10 Evidence preservation

We may preserve CSAM, child safety Reports, metadata, Account information, logs, screenshots, attachments, and associated records for at least one hundred and eighty days for investigation purposes or longer where required by a court, government agency, law enforcement authority, or Applicable Law. We will seek to preserve evidence securely and without alteration.

6.11 Prohibition on sharing CSAM while reporting

Do not download, save, forward, repost, or distribute CSAM to report it. Use the in-app reporting tool or contact us with identifiers, screenshots where lawful and necessary, and details. If you are unsure, contact law enforcement or support@rabcorp.co.in for guidance. Sharing CSAM, even to condemn it, may be unlawful.

6.12 Safety education

We encourage parents, guardians, schools, and children to use safety practices, including:

do not share OTPs, passwords, private keys, or intimate images;

block and report unwanted contact;

leave unsafe groups or channels;

avoid meeting unknown contacts without parent or guardian involvement;

keep profile visibility limited;

verify trusted contacts;

report grooming, threats, blackmail, or exploitation immediately; and

seek help from trusted adults and authorities where there is danger.

6.13 No retaliation

Users must not threaten, harass, expose, or retaliate against a child or any person who reports child safety concerns. Retaliation may result in Account termination and legal reporting.

6.14 Contact details

Child safety contact: support@rabcorp.co.in Grievance Officer: Ashish Bhawkar, Ashish.bhawkar@rabcorp.co.in Law enforcement contact: law.enforcement@rabcorp.co.in Postal address: B401 Ashwini Paradise, Gangadham chowk Kondhwa Bibvewadi road Pune 37

03 April 2026