← Back to KidShield

Safety & Privacy Policy for KidShield

Last Updated: 22 September 2026

Privacy at a glance

  • KidShield uses student data for school operations, attendance and child-safety functions — not for targeted advertising.
  • We do not sell, rent or trade personal information for marketing purposes.
  • A public QR scan may show limited identity and school information needed for identification; guardian contact, address and medical information are not shown on the public profile.
  • Parents/guardians and schools can contact us to request access, correction or deletion, subject to applicable law and school records requirements.

1. About KidShield and this Policy

KidShield is a school attendance, communication and child-safety platform developed by Eastern Automation. This Policy explains what personal data KidShield processes, why it is processed, how it may be shared and protected, and how parents, guardians, students and school users can raise privacy requests.

KidShield is designed to be used through schools and by authorized parents/guardians and staff. Depending on the service and context, a school may determine what student information is required for school operations while Eastern Automation processes that information to provide KidShield. For website enquiries, service security, support and platform operations, Eastern Automation may determine the relevant processing purposes directly.

2. Information We May Collect

Depending on the features used by a school, KidShield may process:

  • Student identity and school records: name, date of birth, school, class/grade, section, roll number and assigned QR/tag serial.
  • Student photograph: a passport-style photo uploaded or captured during registration, where provided.
  • Parent/guardian information: parent or guardian name, registered mobile/WhatsApp number and emergency contact number.
  • Safety and health information: address, blood group, allergies or similar safety information where a parent/guardian or school chooses to provide it.
  • Attendance and school activity records: attendance entries, notices, individual messages, school announcements and related timestamps.
  • Authentication and security information: account/session information, security PIN-related data and login/security events.
  • QR and operational logs: QR/tag validation or scan events, timestamps and technical information needed for fraud prevention, support, security and reliability.
  • Website/demo enquiries: name, school/institution name, phone number, district/city, approximate student strength and any message submitted through our contact form.

We aim to collect only information reasonably needed for the relevant school, safety, support or service purpose.

3. How We Use Personal Data

  • To register and maintain a student's KidShield profile and assigned QR/tag.
  • To record and display attendance and related school records to authorized users.
  • To send attendance alerts, school notices, birthday messages, individual notices and other school communications through approved channels such as WhatsApp.
  • To provide child-safety identification and emergency-contact workflows connected with KidShield QR tags.
  • To authenticate authorized parents, staff and school administrators and prevent misuse.
  • To operate, troubleshoot, secure, back up, monitor and improve the reliability of the service.
  • To respond to demo requests, support enquiries, privacy requests and legal or regulatory obligations.

KidShield does not use student profiles for targeted advertising or commercial behavioural profiling.

4. Public QR Safety Profile

A KidShield tag is designed to be scannable in a child-safety or lost-and-found situation. Anyone who physically obtains access to the QR/tag may be able to open its public safety profile. Depending on the school configuration, that public view may show limited information such as the student's name, photograph, school, class/section, roll number and tag serial.

The public QR profile is designed not to expose guardian phone numbers, emergency phone numbers, home address, blood group, allergy information or other protected contact/medical details. Protected information may only be made available through authorized or controlled workflows where the relevant feature is enabled.

Parents/guardians should treat the physical QR/tag as a safety credential and promptly inform the school if a tag is lost, copied or suspected to be misused.

5. Children's Data and Parent/School Authorization

KidShield handles information relating to children and therefore treats student information as high-sensitivity operational data even where a particular legal category may differ. Under India's Digital Personal Data Protection framework, special rules apply to processing children's personal data.

Schools and parents/guardians using KidShield are expected to provide information lawfully and with the authorization or consent required for the applicable school purpose. KidShield does not knowingly use children's personal data for targeted advertising, sale of data or unrelated commercial profiling.

6. Service Providers and Data Sharing

We may share or process data only where reasonably necessary for the service, including with:

  • The relevant school and its authorized personnel, according to their role and access rights.
  • Parents/guardians, for their registered child and permitted school communications.
  • Meta/WhatsApp Business services, where a phone number and message content must be processed to deliver WhatsApp notifications.
  • Cloud, database, storage and hosting providers used to operate KidShield, including services such as Supabase and Vercel.
  • Technical and professional service providers who support security, maintenance, communications or service delivery under appropriate controls.
  • Authorities or other parties where required by law, or where reasonably necessary to protect safety, rights or the security of the service.

We do not sell, rent or trade personal data to third parties for advertising or marketing.

7. Website Analytics, Cookies and Similar Technologies

The KidShield website uses Google Tag Manager to manage website tags. Depending on the measurement tags configured at a particular time, limited technical or usage information may be processed to understand website performance and usage. KidShield may also use browser storage, cookies or similar technologies where needed for authentication, security, preferences and reliable operation.

We do not intentionally send student profile data to advertising platforms for targeted advertising. Browser settings may allow users to block or delete cookies, although doing so can affect login or other service functionality.

8. Data Security

KidShield uses technical and organisational safeguards designed to reduce the risk of unauthorized access, loss, alteration or disclosure. These safeguards include access controls, authentication protections, restricted/private storage for sensitive assets, logging and monitoring, rate-limiting and recovery/backup measures where appropriate.

No internet or storage system can be guaranteed to be completely secure. If we become aware of a personal-data incident, we will investigate, contain and remediate it and provide notifications where required by applicable law.

9. Data Retention and Deletion

We aim to keep personal data only for as long as it is reasonably needed for the active school relationship, the relevant student/safety purpose, service security, support, backup/recovery or a legal requirement. Different categories of records may therefore have different retention periods.

A verified deletion request may be made through the relevant school or directly to our privacy contact. Some information may need to be retained where required by law, for legitimate school records, fraud/security investigation, dispute resolution or temporary backup cycles. Where deletion is not immediately possible, access will be restricted as appropriate.

10. Your Privacy Rights and Choices

Subject to applicable law and the role of the relevant school, a parent/guardian or other eligible user may request:

  • Information about the personal data being processed and the purpose of processing.
  • Correction or updating of inaccurate personal data.
  • Deletion/erasure of personal data where legally and operationally applicable.
  • Withdrawal of consent where consent is the basis for processing.
  • Review of a privacy grievance or concern.

For student records controlled by a school, we may ask you to coordinate with that school so the request can be verified and handled without incorrectly changing official school records.

11. Data Location and Cross-Border Processing

KidShield's service providers may operate infrastructure in more than one location. Where personal data is processed or stored outside the user's local state or outside India, we will use the service subject to applicable Indian law, contractual/service-provider safeguards and any government restrictions that apply to such transfers.

12. Changes to this Policy

We may update this Policy when KidShield features, service providers, security practices or legal requirements change. The latest version will be posted on this page with the updated date. Material changes may also be communicated through the website, school channels or other appropriate means.

13. Privacy Contact

For privacy questions, correction/deletion requests or concerns about how personal data is handled, contact the relevant school administration or reach out to Eastern Automation:

Eastern Automation — KidShield Privacy Contact

This Policy is intended to provide a clear description of KidShield's privacy practices. Legal rights and obligations remain subject to applicable law and the specific role of the school, parent/guardian and service provider in each case.