KinderLink

Privacy Policy

Last updated: 29 April 2026 · Effective: 29 April 2026
العربية ←
Contents
  1. Summary & scope
  2. Who we are
  3. Information we collect
  4. How we use information
  5. Legal basis for processing
  6. Sharing & subprocessors
  7. Children's data
  8. Where your data lives
  9. Retention
  10. Your rights under PDPL & GDPR
  11. Deleting your account
  12. Security
  13. Tracking, cookies & analytics
  14. Changes to this policy
  15. Contact

1. Summary & scope

This Privacy Policy explains how KinderLink collects and handles personal information when you use our daycare and kindergarten management platform — both the mobile apps (parent and teacher) and the admin web portal at portal.kinderlink.sa.

Quick summary, in plain English:
  • We collect what we need to run a daycare-to-parent communication service: names, emails, phone numbers, photos and notes from your daycare day.
  • We do not sell your data, run advertising trackers, or use it for purposes unrelated to the service.
  • You can delete your parent or teacher account from inside the app at any time. Daycare administrators contact support to wind down their account.
  • Children's photos and information are entered by the daycare with parental consent and shown only to that child's authorised parents and assigned teachers.

2. Who we are

Data Controller for the platform itself: KinderLink, Riyadh, Kingdom of Saudi Arabia. Contact: privacy@kinderlink.sa.

Important distinction. When a daycare uses KinderLink to manage its own operations, the daycare is the controller of the records about its children, parents, and staff — KinderLink processes that data on the daycare's behalf. We are the processor for the daycare-specific records, and the controller for your account credentials and platform-wide infrastructure data (server logs, security events, billing of daycares).

3. Information we collect

The data we hold falls into the following categories:

3.1 Account & authentication

3.2 Records about children (entered by your daycare)

This information is entered by the daycare administrator. Parents can review it through the app and ask the administrator to correct anything that's wrong.

3.3 Day-to-day activity records

3.4 Messages

3.5 Media (photos and video clips)

3.6 Billing data (administrators only)

3.7 Automatic / technical data

3.8 What we do NOT collect

4. How we use information

We do not use personal data to train machine-learning models, build advertising profiles, or share with data brokers.

Where applicable law requires a stated legal basis, we rely on:

6. Sharing & subprocessors

We share data only as needed to operate the service, with the following categories of recipient:

6.1 Within your daycare

6.2 Service providers (subprocessors)

The infrastructure that powers KinderLink is built on a small number of well-known providers. Each is bound by a written data-processing agreement and processes data on KinderLink's instructions only.

ProviderWhat it doesWhere it runs
Google Firebase Authentication, Firestore database, Cloud Storage, Cloud Messaging (push notifications). Google Cloud (US regions).
Cloudinary Image and video storage and delivery for activity photos, profile photos, and document attachments. AWS (US / EU regions).
Resend Transactional email delivery (license onboarding, tenant invoices, email-change confirmations). AWS (US).
Railway Hosting for the KinderLink API server and webhook endpoints. Railway-managed cloud (US / EU).
Cloudflare DNS, CDN, and web hosting (admin portal + marketing site). Global edge network.
SMS gateway Sending OTP codes for parent phone-login. Provider-dependent.
Apple App Store / Google Play App distribution and (Apple) APNs push delivery. Apple / Google.

6.3 Legal & safety

We may disclose personal data when required by Saudi law or a valid legal process, when necessary to defend legal claims, or to protect the safety of users (for example, if we receive a credible report that a child is at risk and law enforcement requests relevant records).

6.4 What we never do

7. Children's data

Children do not directly use KinderLink. The mobile and web apps are designed for adults — parents, teachers, and daycare administrators.

Information about a child is entered by the daycare administrator (and updated over time by the child's teachers). The daycare must obtain the parent's consent before entering the child's information into KinderLink, and before uploading any photo of the child. KinderLink, as the processor, relies on the daycare's representation that this consent has been obtained.

Each child's record is visible only to:

Parents can request:

8. Where your data lives

KinderLink is a Saudi-based company building for the Saudi market, but the cloud infrastructure we depend on is global. By using KinderLink you understand that personal data may be processed in Google Cloud, AWS, and Cloudflare regions outside the Kingdom of Saudi Arabia, including the United States and Europe. We rely on the standard contractual safeguards offered by these providers (data-processing agreements, encryption in transit and at rest, the EU Standard Contractual Clauses where applicable) to protect that data.

If Saudi data-residency requirements change in a way that requires the underlying infrastructure to move, we will migrate to compliant regions and update this policy.

9. Retention

How long we keep data depends on what it is:

CategoryRetention
Active account data (profile, name, email) Kept while the account is active.
Activity entries, attendance, messages Kept by the daycare for as long as the daycare's tenant is active. The daycare decides when to archive or delete operational records.
Photos uploaded to activities Same as the parent activity — deleted when the activity is deleted.
Server logs 30 days, then purged.
Audit logs (sensitive admin actions) 365 days, then purged.
ZATCA tax invoices Six years (Saudi tax-law minimum).
Deleted user accounts Removed from active systems within 30 days of deletion. Backups are rotated within a further 30 days, after which any residual copies are gone.

10. Your rights under PDPL & GDPR

Under Saudi Arabia's Personal Data Protection Law (PDPL) and equivalent regimes you have the right to:

To exercise any of these rights, email privacy@kinderlink.sa. We will respond within 30 days.

11. Deleting your account

You can permanently delete your KinderLink account from inside the app at any time:

You will be asked to confirm twice. When you confirm, we:

  1. Unlink you from every child's record (the children themselves remain — they belong to the daycare, not the user).
  2. Revoke all active sessions on every device you've signed in from.
  3. Delete your profile document, profile photo, and push-notification tokens.
  4. Delete your authentication identity, freeing the email address for future re-registration.
  5. Write an audit-log entry recording that the deletion happened (with role and tenant ID, but no further personal content).

Daycare administrators cannot self-delete from the app because doing so would orphan the daycare's tenant — every parent, teacher, and child under that administrator. To wind down a daycare account, please email support@kinderlink.sa; we'll arrange the offboarding so the tenant's data is exported and deleted cleanly.

Operational records the daycare keeps about its activity (e.g. an attendance log from last March) are owned by the daycare, not by you personally; deleting your account unlinks you from those records but does not retroactively erase the daycare's history.

12. Security

If we ever discover a breach that affects you, we will notify you (and the relevant Saudi authorities) within 72 hours of becoming aware, in line with PDPL article requirements.

13. Tracking, cookies & analytics

The KinderLink mobile apps do not contain any third-party tracking SDKs. The app's PrivacyInfo.xcprivacy manifest declares NSPrivacyTracking = false; the App Store nutrition label is "Data Not Linked to You" for diagnostics and "Data Linked to You" for the records you actively create (photos, messages, profile). We do not request permission to track via Apple's App Tracking Transparency framework because we don't track.

The admin web portal (portal.kinderlink.sa) uses a single first-party authentication cookie / token issued by Firebase Auth. It does not run analytics, ads, or third-party trackers.

14. Changes to this policy

We may update this Privacy Policy from time to time as the service evolves. When we do, we'll change the "Last updated" date at the top of this page. Material changes — anything that broadens the categories of data we collect, the purposes we use it for, or the parties we share it with — will be communicated through the app and / or by email at least 14 days before they take effect.

15. Contact

Questions about this policy or how your data is handled?

If your concern is about your daycare's handling of records (rather than the KinderLink platform itself), please contact the daycare administrator first — they're the controller of those records. We're happy to mediate if that path is unsuccessful.

This policy was last updated on 29 April 2026. Policy version 1.0.