Protecting Children's and Vulnerable People's Data in India
AI Governance, Risk & Compliance Track · Certified Children's Data Protection Specialist — India
India draws its line at eighteen, not thirteen, and prohibits tracking, behavioural monitoring and targeted advertising directed at children outright. That combination makes India one of the strictest children's data regimes in the world, and it captures a very large number of services that assume they are adult-only. This course works through Section 9 and Rules 10 to 12 in operational detail: how to establish whether a user is a child without building an intrusive verification apparatus, how verifiable guardian consent actually functions including DigiLocker-based routes, what the Fourth Schedule exempts for education and healthcare, and how to redesign a product that currently profiles minors. It treats children's data as a safeguarding question with a legal frame, not merely a compliance box.
Learning objectives
- 01Determine whether a service is likely to process children's data and evidence the conclusion
- 02Select and implement a proportionate age assurance approach
- 03Operate verifiable guardian consent including DigiLocker-based verification
- 04Remove tracking, behavioural monitoring and targeted advertising for child users
- 05Apply the Fourth Schedule exemptions correctly without over-claiming them
- 06Design a service that is safe for a sixteen-year-old by default
15-module program
Full curriculum in preparation
This course is being written now by the ITHR editorial team. Join the waitlist and we'll notify you the moment the full syllabus, hands-on labs, and certification exam are live. No enrollment is accepted until publication.

