A practical Switzerland guide when a Google review identifies a child, student or family member, publishes a minor's personal data and needs a privacy-safe removal strategy.
Why Personal-Data Reviews Need A Different Legal Reading
A Google review that names a child, shows a school or booking identifier, describes a minor's medical issue, or publishes a parent's private contact data usually creates a different risk profile from an ordinary reputation complaint. The business is dealing with online reputation, data-protection duties, child-safety concerns and platform-policy rules at the same time.
The first legal task is to classify exactly what has been exposed: the child's name, age, photograph, classroom or appointment detail, address, family relationship, medical information, or another identifier. The second task is to separate the Google report from the internal evidence file so the business does not repeat the child's data while asking for removal.

Evidence Checklist Before Anyone Responds
Preserve the full review URL, reviewer profile, date, rating, text, images, visible edits, owner replies and the surrounding Business Profile context. Then isolate the child-related data precisely and record whether it identifies a patient, student, guest, customer's child, staff child or unrelated minor. The internal file should also note which records were checked and who was allowed to view them.
A privacy-safe evidence file keeps originals separate from working copies. If screenshots are annotated, preserve the untouched capture as well. Internal checks should record who reviewed the booking, CRM, HR, billing or incident systems and what was or was not found. The point is not to create a dramatic dossier. The point is to show, calmly and consistently, why the review contains personal information that should not stay public and why the business can support that classification without exposing even more confidential data.
Google Policy And The Local Privacy-Law Angle
The Google submission should use the strongest accurate policy language: personal information, harassment, dangerous or abusive conduct, or content not reflecting a genuine experience where the facts support those categories. The report should quote only the minimum wording needed to show why the review exposes or targets a minor.
In parallel, the internal team should assess the review under Federal Act on Data Protection. That source matters because it shapes how the business stores screenshots, shares the file, redacts customer information and drafts any reply. Even where the review itself is wrongful, the business should still minimise what it discloses back to the platform or to the public. Google moderation and local privacy compliance are not the same exercise, but they should support one another rather than collide.

Public Response Strategy Without Creating A Second Privacy Problem
A public reply should almost never confirm the child's identity, the family relationship, whether the child or family used the service, or the truth of the underlying event. The safer approach is usually to state that the business takes privacy and child-related information seriously, is reviewing the post through the appropriate channel, and invites the author to a private official contact point.
This is especially important for regulated or sensitive sectors: healthcare, education, legal services, hospitality, financial services, real estate, childcare, wellness, HR-heavy businesses and any company handling minors' data. A reply written in anger can become a second publication, a confidentiality breach or a contradiction of the Google report. The public audience needs reassurance, not a line-by-line debate using private records.
When Escalation Becomes More Serious
Escalation merits closer review when the review reveals a child's address, school, schedule, photograph, medical detail or family identifier, names a minor together with accusations of misconduct, or forms part of repeated harassment. Those files may justify a stronger Google appeal, a privacy-focused notice, local child-safety review or urgent local counsel involvement.
The key caution is not to overpromise results. Removal is never guaranteed, police or regulator action is never automatic, and a privacy law does not erase the need for a careful factual file. But businesses usually improve their position when they preserve the review early, classify the personal-data issue precisely, redact internal material carefully and keep public messaging aligned with the platform submission.

Related PimLegal Reading
For related reading, see our local article on Google reviews exposing personal data and the Switzerland Google review removal page. These two internal resources help connect the privacy issue with the wider removal, response and escalation framework for Switzerland.
Selected Official References
- Federal Act on Data Protection
- Google prohibited and restricted content policy
- Google Business Profile review reporting guidance
Practical Conclusion
When a Google review exposes a child's data, the business should treat the matter as a privacy-sensitive child-safety file from the first hour: preserve the post, minimise circulation, classify the exact data, and keep every public statement narrower than the evidence.
This article is general information only and not legal advice for a specific dispute in Switzerland. Businesses should seek local advice before sending formal notices, disclosing records, or assuming that any review will be removed.