The short version
- We collect what the app needs to work: your email and name, your child's first name and schedule, the places your family types in, and the drop-offs and pick-ups you log.
- No location or GPS data, ever. "Locations" are just names and addresses your family typed in.
- No analytics SDK, no advertising SDK, no third-party trackers. Not one.
- We do not sell your data and we do not share it for marketing. There is no scenario in which we would.
- Everyone in your family sees every entry in your family. That is the whole product, and it is worth understanding before you invite someone.
- You can delete your account from inside the app: Profile → Delete Account.
Who this covers
This policy applies to the Daycare Guardian iPhone app (bundle identifier
com.daycareguardian.app) and to this website,
daycareguardian.app.
Daycare Guardian is made and operated by an independent developer based in Florida, United States. There is no company behind it, no investors, and no business model that depends on your information. The app is free, has no in-app purchases, no subscription and no ads. Questions go to a real person at support@daycareguardian.app.
In this policy, "we" and "us" mean that developer. "You" means the adult who holds the account.
What we collect, and why
This is the complete list. Everything here is something you typed into the app or something the app produced when you tapped a button. Nothing is gathered in the background.
| What | Why we have it |
|---|---|
| Email address | To create your account, sign you in, and let you reset your password. It is also how we would reach you if something went wrong with the service. |
| Full name | Shown to the other people in your family next to each entry, so "Dropped off at 8:12 AM" also says who did it. A log that does not say who is not much of a log. |
| Phone number (optional) | Stored only if you turn on text messages. It is used for exactly one thing: sending you those texts. Leave texts off and this field stays empty — push notifications work without it. |
| Child's first name | To label that child's records and notifications. First name only. The app never asks for a last name, a date of birth, a photo, a document, or a daycare account number. |
| Child's expected drop-off time, days of the week, grace period and time zone | So the app knows when a drop-off is late enough to tell everyone that nobody has logged one. The time zone is stored so that "8:00 AM" means 8:00 where the child actually is. |
| Drop-off location names, addresses, phone numbers and notes | Typed in by your family. They fill the picker when you log a drop-off and they appear in the history. This is plain text you entered — it is not looked up, geocoded, verified against a map, or used to locate anyone. |
| Drop-off and pick-up records: which child, which location, the exact time, and which caregiver | This is the log itself — the reason the app exists. The time is set by our server when the entry is created, not by your phone. |
| Day comments | Free text you attach to a particular day ("she had a rough night"), shown to the family with your name on it. |
| Emergency contacts: name, relationship, phone number, notes | Stored so anyone in the family can reach the right person in one tap from the home screen. These are people you chose to add; tell them you've added them. |
| Device push token | An identifier Apple issues to your specific installation so a notification can be delivered to it. It is not an advertising identifier and it cannot be used to follow you into other apps. It is deleted with your account. |
We also keep the ordinary account records Supabase creates when you sign in — for example, when your account was created and when you last signed in — because that is how authentication works.
What we never collect
People assume an app like this must be watching something. It isn't. Specifically:
- No location or GPS data of any kind. The app does not request location permission, does not use GPS, and has no background location capability. The word "locations" in the app means "the places your family typed in." If your phone never asked you for location permission, that is because the app never asks.
- No analytics. There is no analytics SDK in the app. We do not measure screens viewed, taps, sessions, funnels or retention.
- No advertising. No ad SDK, no ad network, no advertising identifier (IDFA), no App Tracking Transparency prompt, because there is nothing to track you with.
- No third-party trackers. None in the app, and none on this website — no pixels, no embedded fonts from someone else's server, no tag manager, no cookies for tracking.
- No access to your contacts, photos, camera, microphone, calendar, health data or files. The app never asks for any of them.
- No payment information. The app is free and contains no payment mechanism at all.
- No browsing history and no data purchased from anyone else.
One honest footnote. If you have turned on "Share iPhone Analytics" in iOS Settings, Apple may pass us anonymous, aggregated crash reports through App Store Connect. That is an Apple feature that you control in your own iOS settings; the reports contain no names, no children's information and no drop-off records. It is not something we built in, and we cannot switch it on for you.
Who can see your information
Your family — all of it
This is the part to read twice. Everyone in your family sees everything in your family: every child, every drop-off and pick-up with the exact time and the name of whoever logged it, every day comment, every saved location, and every emergency contact. Everyone in the family also receives every notification. That is deliberate — a shared log that only some people can see would not do its job.
People join your family with a six-character code. Anyone who has that code can join, and once they have joined they can see all of the above. Treat the code the way you would treat a key to your house: give it to the other parent, the grandparent, the nanny — and to nobody else. The family owner can generate a new code at any time from Profile → Your family, which stops the old code from working. Generating a new code does not remove people who have already joined.
Us
We hold administrative access to the database, because somebody has to be able to fix a fault, restore a broken account or apply a security update. We use it for keeping the service running and for answering support requests you send us — nothing else. We do not read family histories out of curiosity, we do not analyse them, and we do not build anything on top of them.
Nobody else
We do not sell personal information. We do not rent, trade or share it for advertising or marketing, by anyone's definition of those words. There is no partner, affiliate, broker or data exchange in this picture. The only other companies involved are the three service providers listed in the next section, and each of them only receives what it needs to do its specific job.
We would disclose information if we were required to by valid legal process, or if it were genuinely necessary to protect someone's safety. If that ever happened and we were legally permitted to tell you, we would.
If the app were ever transferred to someone else, we would say so on this page before it happened, and the new operator would be bound by this policy until you were given the chance to delete your account.
Companies that help us run it
Three for the app itself, plus the host of this website, described below. Each acts on our instructions as a service provider, and none of them is permitted to use your information for its own purposes.
| Provider | What it does | What it receives |
|---|---|---|
| Supabase | The database, the sign-in system, and the server functions that decide when a notification should go out. Hosted in the United States. | Everything listed in "What we collect." This is where your data lives. |
| Apple (APNs) | Delivers push notifications to your iPhone. | Your device push token and the text of the notification — for example, "Emma was dropped off at Sunshine Daycare." |
| Twilio | Sends text messages. Used only if you turn texts on for yourself. | Your phone number and the text of the message. If you never turn texts on, Twilio never receives anything about you at all. |
This website is served as plain static files by our web host, which — like every web host — keeps ordinary server logs including IP addresses for a short period for security and troubleshooting. The site itself sets no cookies and runs no tracking scripts.
Where your data lives
On Supabase infrastructure in the United States. If you use the app from outside the United States, your information is transferred to and stored in the United States, where privacy law differs from the law where you live. Section 12 explains what that means if you are in the UK or the European Economic Area.
Keeping and deleting data
We keep your information for as long as your account exists. We do not have a policy of deleting old drop-off history, because the history is the point of the product — a log you can look back through is more useful than one that quietly evaporates.
Deleting your account
You can do it yourself, in the app, without emailing anyone: Profile → Delete Account. You will be asked to type DELETE to confirm, because it cannot be undone.
Deleting your account removes your profile, your name, your email address, your phone number, your push tokens and your place in the family. If you are the person who created the family, deleting your account deletes that family along with it — every child, every drop-off location, every emergency contact, every comment and the entire history, for everyone in it. There is no export and no way to get it back. If that is not what you want, leave the family instead, or ask another member to set up a new one first.
If you only want to leave a family but keep your account, use Profile → Your family → Leave Family. If you only want the notifications to stop on one phone, sign out instead; nothing is deleted.
Entries themselves cannot be edited or deleted
Inside a family, the drop-off log is append-only by design. Nobody — not the person who made the entry, not the family owner, not us through the app — can change or remove an individual drop-off or pick-up. That is what makes it worth trusting. If something is logged in error, add a day comment explaining it. The record of what happened stays.
Backups
Our host may keep routine encrypted backups for a short period as part of normal operation. Deleted data ages out of those backups on the host's ordinary schedule; it is not restored or reused.
Children's privacy
Daycare Guardian is an app for adult caregivers. Accounts are held by adults. Children do not use the app, do not sign in to it, and are not the audience for it — it is not directed to children under 13 within the meaning of the US Children's Online Privacy Protection Act (COPPA), and we do not knowingly collect personal information directly from a child.
The app does hold a small amount of information about a child: a first name, an expected drop-off time, which weekdays they attend, a time zone, and the record of who dropped them off and where. All of it is entered by the child's own parent or guardian, and it is visible only to the family that entered it. No last name, birth date, photograph or contact detail for a child is collected — the app has nowhere to put them.
Only add a child if you are that child's parent or legal guardian, or you have their parent's or guardian's permission. If you believe a child has created an account, or that a child's information has been added by someone with no right to add it, email support@daycareguardian.app and we will remove it.
Security
- Row Level Security on every table. The database enforces, on every single request, that you can only reach data belonging to a family you are a member of. It is not a check the app performs and could forget — it is enforced by the database itself, underneath the app.
- Encrypted in transit. All traffic between the app and our servers uses TLS. This website is HTTPS-only.
- Server-stamped times. When a drop-off is recorded, the server overwrites the time and the identity of the person logging it before the row is saved. Nobody can backdate an entry or log one in someone else's name, including by tampering with their own phone.
- Append-only history. There is no mechanism in the app for editing or deleting an entry.
- Passwords. Sign-in is handled by Supabase Auth. We never see or store your password.
And the honest part: no system is perfectly secure, and anyone who tells you otherwise is selling something. We cannot guarantee that your information will never be accessed by someone who should not have it. Use a strong, unique password, keep your phone locked, and be careful who you give your family's join code to. If we ever discovered a breach affecting your information, we would tell you and any regulator we are required to tell, promptly.
Your rights
Wherever you live, you can ask us to do all of the following. Most of them you can simply do yourself, faster, in the app.
- See what we hold. Almost all of it is already visible to you in the app — your profile, your children and their schedules, your locations, your emergency contacts and your full history. For a copy in another form, email us.
- Correct it. Change your name or phone number in Profile → Name & phone; change a child's name or schedule in Profile → Children & schedules; edit locations and emergency contacts in their own screens. Logged drop-offs are the deliberate exception — see section 7.
- Delete it. Profile → Delete Account.
- Withdraw consent for texts. Turn off Text messages in Profile → Name & phone, and clear your phone number if you want it gone entirely.
- Object, restrict, or ask for a portable copy. Email us and we will handle it.
To make a request, email support@daycareguardian.app from the address on your account. We reply as quickly as we can and always within 30 days, or 45 where the law allows an extension and we genuinely need it. We do not charge for this, and we will never treat you differently for asking. You may use an authorized agent; we may need to confirm with you directly that the agent is acting for you.
California residents
Under the California Consumer Privacy Act, as amended by the CPRA, you have the rights to know, delete, correct, opt out of sale or sharing, limit the use of sensitive personal information, and not be discriminated against for exercising any of them.
In the last twelve months we collected the categories listed in section 2 — in CCPA terms, identifiers (email address, name, and a phone number only if you enabled texts) and other personal information you provided (your children's first names and schedules, your saved locations, your drop-off records, your comments and your emergency contacts). We collect it for the purposes described beside each item, we collect it from you and from your use of the app, and we disclose it only to the service providers named in section 5 so they can perform those services.
We have never sold or shared personal information, and we do not do so now — including for cross-context behavioral advertising, and including for anyone under 16. We do not use or disclose sensitive personal information for any purpose beyond what is necessary to provide the app, and we do not collect the categories California treats as most sensitive, such as precise geolocation, biometric data, financial account details or contents of your communications with anyone but us. Because we do not sell or share, there is no opt-out link on this site — there is nothing to opt out of.
The app is free and identical for everyone. There is no loyalty scheme, no financial incentive, and no worse version for people who exercise their rights.
Europe and the UK
If you are in the United Kingdom or the European Economic Area, the controller of your personal data is the independent developer of Daycare Guardian, reachable at support@daycareguardian.app. This is a free app made by one person; there is no data protection officer, and none is required at this scale. Every request goes to that address and is answered personally.
Our legal bases for processing:
- Performance of a contract (Article 6(1)(b)) — your account, your family's log, and the push notifications that make the app work. Without this data there is no app.
- Consent (Article 6(1)(a)) — text messages, which are off unless you switch them on, and which you can switch off at any time without affecting anything else.
- Legitimate interests (Article 6(1)(f)) — keeping the service secure, diagnosing faults, and responding to your support emails.
A child's first name and schedule are entered by their own parent or guardian in the course of using the service they signed up for; we do not process children's data for profiling, marketing or any purpose beyond showing it back to that family.
Your data is transferred to and stored in the United States, as described in section 6. Our processors offer the European Commission's Standard Contractual Clauses (and the UK Addendum) for such transfers, and we rely on those.
You have the rights of access, rectification, erasure, restriction of processing, objection, and data portability, and the right to withdraw consent at any time. You also have the right to complain to your local supervisory authority — in the UK, the Information Commissioner's Office at ico.org.uk. We would rather you told us first, so we can fix it.
Changes to this policy
If this policy changes, we will update the effective date at the top of the page and describe what changed. If a change is significant — a new category of data, a new sub-processor, a new purpose — we will say so plainly here before it takes effect, and where the law requires your consent we will ask for it rather than assume it. We will never quietly start selling your data; that is not a change we would make.
Contact
Questions, requests, corrections, complaints, or anything in this policy that reads as vague or evasive to you: support@daycareguardian.app.
There is also a support page with setup help and troubleshooting, and the terms of use — which include the one thing we most want you to read: Daycare Guardian is a shared log and a reminder, not a safety device.