Security & privacy

Child information treated as high-risk — by design.

Child images, child records, parent contact details and daily care records are treated as high-risk information. The platform is built around environment separation, least-privilege access and private, encrypted storage.

Our approach

Environment separation

Production, test and sandbox environments are kept clearly separated. Development and testing use synthetic data only.

Least-privilege access

Access follows least-privilege, environment separation, provider oversight and support-access approval principles.

Private storage

Child images and records are held in private storage with encrypted transmission and restricted, logged support access.

Aligned with Australian privacy expectations

Our handling of personal information is designed to align with the Australian Privacy Principles, including APP 11 (security of personal information).

Whose dataChild profile and daily care records, child images (where authorised), and parent/guardian contact details for authorised communication.
Who can see itAuthorised educators, relevant provider administrators, and the relevant parent/guardian where authorised — not public sharing or advertising.
Development dataSynthetic or dummy data only; the development build is never connected to production.
Access & deletionAccess, correction, export and deletion follow the provider agreement, service policy and legal obligations.

Children's data & consent

The app is a professional tool for authorised educators and is not directed to children as users. Child information may be recorded only within provider-authorised workflows, and child-image handling follows provider policy and parent/guardian consent where required.