Your data, secured & private
We take security and privacy seriously. Here’s how we protect your daycare and family data.
Data Security
End-to-End Encryption
All data is encrypted in transit (TLS 1.3) and at rest (AES-256).
Secure Cloud Infrastructure
Enterprise-grade hosting with 99.9% uptime, auto updates, and DR.
Role-Based Access Control
Granular permissions by role; optional MFA; full audit logs.
Privacy by Design
Minimal data collection; export/delete on request; you own your data.
Compliance
Built to support GDPR/COPPA and SOC-aligned controls.
24/7 Monitoring
Threat monitoring, automated patching, and on-call response.
Backups & Recovery
Automated Backup Strategy
RPO: 1 hour RTO: 4 hours
Backup Frequency
- Full database backup: daily
- Incremental backup: every 15 minutes
- Transaction log backup: continuous
- File storage backup: real-time replication
Disaster Recovery
- Multi-region replication
- Automated failover
- Quarterly recovery drills
- Point-in-time restore
Incident Response
Security Incident Protocol
- 1. Detection & analysis (0–2h): automated alerts, triage, severity.
- 2. Containment (2–6h): isolate systems, preserve evidence.
- 3. Eradication & recovery (6–24h): remove threat, restore from clean backups.
- 4. Notification (≤24h): notify customers / authorities as required.
- 5. Post-incident: RCA and control improvements.
Access Controls
Role-based Access
- Granular permissions by role
- Least-privilege enforced
- Session expiration & audit logs
- Optional MFA
Internal Access
- MFA for production
- Just-in-time access
- Quarterly reviews
- Immediate revocation on termination
Availability & Uptime
99.9% Uptime SLA
Redundant infrastructure and failover keep your operations running.
Infrastructure
- Multi-region deployment
- Load balancing & autoscaling
- CDN for global speed
Maintenance
- Zero-downtime deploys
- Scheduled windows w/ notice
- One-click rollbacks
Accessibility
WCAG 2.1 AA
- Full keyboard navigation
- Semantic HTML & ARIA labels
- Contrast ratios ≥ 4.5:1
- Responsive, text alternatives for media
Our Privacy Commitments
We never sell your data
No third-party marketing or data brokers. Ever.
You control your data
Export anytime; delete your account and associated data on request.
Transparent practices
Plain-language privacy policy and proactive change notices.
Child safety first
Controls for children’s data and COPPA-aligned handling.
How We Protect Your Information
Technical safeguards
- Encrypted databases & storage
- Secure auth & password hashing
- Security audits & pen-testing
- Automated vulnerability scanning
- DDoS protection & WAF
Operational safeguards
- Background checks & training
- Strict production access controls
- Incident response & breach notices
- Encrypted backups
- Business continuity & DR plans
Legal Documents & Reports
Questions about security?
We’re here to help with data protection and privacy.