1. Introduction
SproutOS is a secure multi-tenant operations platform that helps organisations manage people, attendance, authorised pickups, communication, reporting and administration.
2. Information We Collect
Depending on your role and organisation, we may collect name, email address, phone number, role, organisation, profile information, participant or child information, attendance records, authorised pickup records, notifications, audit logs and device diagnostic information.
3. Participant and Child Information
SproutOS may store participant or child-related information provided by authorised adults, guardians, staff or administrators. This can include names, attendance records, group/class details, authorised pickup contacts and safety-related notes.
4. How We Use Information
- To authenticate users and protect accounts.
- To manage attendance, people records, pickups and communication.
- To support tenant-specific roles, permissions, branding and workflows.
- To maintain audit logs and operational security.
- To provide support, diagnostics and reliability improvements.
5. Authentication
SproutOS uses Firebase Authentication for sign-in, email verification, password reset and account security. Passwords are managed by Firebase Authentication and are not stored directly by SproutOS.
6. Google Sign-In
If you choose Google Sign-In, SproutOS may receive your name, email address and profile image where provided by Google. SproutOS does not access Gmail, Google Drive, Calendar, Contacts or other Google data.
7. Notifications
SproutOS may send notifications relating to attendance, safety, authorised pickups, operational updates, account security and organisation announcements.
8. Storage and Security
SproutOS uses Firebase services including Firebase Authentication, Cloud Firestore and Firebase Storage. Data is transmitted over HTTPS. SproutOS uses tenant isolation, role-based access control and audit logging to help protect information.
9. Data Sharing
We do not sell personal information. Information may be shared with your organisation, authorised administrators, service providers required to operate SproutOS, or where required by law.
10. Data Retention
Information is retained for as long as necessary to provide services, maintain organisation records, comply with obligations, resolve disputes and support operational security.
11. Your Rights
You may request access, correction, deletion or export of your information, subject to applicable laws and organisation-level record keeping requirements.
12. Account Deletion
To request account deletion, contact your organisation administrator or email privacy@sproutos.app. Include your organisation name and registered email address.
13. Third-Party Services
SproutOS may use trusted providers such as Google Firebase, Google Sign-In, Expo services, Apple services and Google platform services.
14. Changes
We may update this policy from time to time. Updated versions will be published on this page with a revised effective date.
15. Contact
Privacy: privacy@sproutos.app
Support: support@sproutos.app
