KIDUART school ERP
Legal

Privacy Policy

How KIDUART collects, uses, stores, shares, and protects personal data across its website, school ERP platform, demo requests, and related services.

Last updated: 29 July 2026

The modules your school switches on decide what data exists section 5 maps each functional area to the data it processes.

Access follows role: a parent sees their own children, a teacher their classes, an accountant the fee book.

Schools using KIDUART are responsible for ensuring they are authorized to share personal data with us.

You can export everything and ask us to remove it; we do not sell school data or train models on student records.

1

Introduction

At KIDUART, we value the privacy of schools, administrators, teachers, parents, students, staff members, website visitors, and every individual who interacts with our website, platform, and services.

This Privacy Policy explains what information we collect, how we use it, when we share it, how long we keep it, and what choices or rights may be available to you.

2

Who We Are

KIDUART is a school ERP and education technology platform designed to support school administration, academic workflows, attendance, fee management, reporting, communication, and operational efficiency for educational institutions.

Our primary contact email is support@kiduart.com and our current business location is Noida, Uttar Pradesh, India.

3

Scope of This Policy

  • Visitors to our public website and landing pages.
  • Individuals submitting contact, enquiry, support, newsletter, or demo request forms.
  • Schools and institutions evaluating, onboarding, or using KIDUART services.
  • Authorized users such as administrators, teachers, finance staff, HR staff, parents, and students using KIDUART-enabled services.
  • This policy does not apply to third-party websites, integrations, or services that maintain their own privacy practices.
4

Information We Collect

The exact categories of data we process depend on how KIDUART is used, which modules are enabled by a school, and what information a school or user chooses to submit.

CategoryExamplesWhy it may be collected
Identity and contact dataName, email address, phone number, job title, institution nameDemo requests, onboarding, communication, and support
Institution dataSchool name, branch details, address, board or affiliation, class structureAccount setup, service configuration, and reporting
User account dataLogin identifiers, roles, permissions, profile detailsAccess control, authentication, and administration
Student and parent-related dataStudent name, class, roll number, guardian contact details, attendance, academic records, communication history, fee-related recordsDelivering ERP services requested by the school
Employee and staff dataStaff profile, department, attendance, payroll-related or role-related details where applicableHR, administration, and school operations
Technical and usage dataIP address, browser type, pages viewed, device type, logs, timestamps, referral URLsSecurity, diagnostics, analytics, and performance improvement
5

Module-Wise Data We Process

KIDUART ships functional module areas, and a school switches on only the ones it uses. Because the modules decide what data exists in the system, this table maps each area to the data it processes so you can see exactly what turning a module on means for personal data.

If your school does not use Transport, no route or vehicle allocation data exists for your students. The same is true for Hostel, Library, and every other area.

Module areaPersonal data processedPurpose
AdmissionEnquiry details, applicant and guardian names, contact numbers, application documents, interview evaluationsRunning the admission pipeline from enquiry to registration
Student ManagementStudent profile, enrolment, class and section history, documents, promotion and transfer recordsMaintaining the student record every other module reads from
Parent ManagementGuardian records, parent-student linking, portal accounts, communication logGiving parents access to their own children's information
AcademicAttendance, timetable allocation, assignments, class diary, exam marks, grades, report cards, discipline and PTM recordsDelivering day-to-day teaching and assessment workflows
Finance & Fee ManagementFee structures assigned to a student, concessions, payments, receipts, dues, refundsFee collection, reconciliation and financial reporting
HR & Staff ManagementStaff profiles, department and designation, attendance, leave records, payroll and appraisal dataSchool HR administration and salary processing
CommunicationNotices and announcements sent, recipient groups, message delivery recordsSending and evidencing school communication
Library ManagementMembership, borrowing history, reservations, finesRunning circulation without paper registers
Transport ManagementRoute and stop allocation for a student, vehicle and driver records, tracking dataOperating school transport safely (only if the module is enabled)
Hostel ManagementRoom and bed allocation, hostel attendance, mess records, visitor logResidential care and accountability (only if the module is enabled)
Security & AuthenticationLogin identifiers, hashed passwords, MFA enrolment, session and device records, IP address, audit entriesAuthenticating users, protecting accounts and evidencing sensitive actions
Reports, Dashboards & AnalyticsAggregated academic, attendance and financial data derived from the records aboveReporting to school leadership and statutory bodies
6

How We Collect Information

  • Directly from you when you fill forms, request a demo, contact us, subscribe, or communicate with us.
  • From schools or authorized institutional representatives during onboarding and service use.
  • From user activity within the platform, including logins, actions, and administrative workflows.
  • Automatically through cookies, server logs, analytics tools, device data, and similar technologies.
  • From integrations or third-party tools enabled by the school or required for service delivery.
7

Why We Use Information

  • To provide, maintain, configure, and improve our website and school ERP services.
  • To create and manage school accounts, authorized user access, roles, and permissions.
  • To operate attendance, fee tracking, student records, timetable, communication, and reporting features.
  • To respond to enquiries, schedule demos, provide onboarding, and offer customer support.
  • To authenticate users, monitor misuse, prevent fraud, and protect platform security.
  • To comply with contractual, regulatory, legal, accounting, and audit-related obligations.
8

School and Institution Responsibility

Important

In many cases, schools decide what information is uploaded to KIDUART, which modules are used, and which users are authorized to access the system. The school is responsible for ensuring that it has the required authority, notices, consents, permissions, or other lawful basis to share personal data with us for service delivery.

9

Children's and Student Data

KIDUART may process information relating to students, including minors, where such data is provided and managed by a school or institution for legitimate educational and administrative purposes.

We do not intend for children to independently create public consumer accounts on our website unless specifically supported and authorized through a school-managed workflow.

10

Sharing and Disclosure

  • With authorized school administrators and users according to assigned roles and permissions.
  • With service providers who help us host, secure, support, analyse, or operate the platform.
  • With payment, communication, analytics, or integration providers where required for selected services.
  • With legal, regulatory, or government authorities when required by law or necessary to protect rights and security.
  • With successors in connection with a merger, acquisition, restructuring, or business transfer, subject to appropriate safeguards.
11

Service Providers We Rely On

Some parts of the service require a third party, and those choices are yours to make with us during onboarding. Where a school brings its own account a payment gateway or SMS provider, for example that provider's own terms and privacy policy also apply to the data it handles.

Provider categoryWhat it handlesData involved
Payment gateway (for example Razorpay or Stripe)Online fee payments made by parentsPayer name and contact, amount, transaction reference. Card and bank credentials are handled by the gateway, not by KIDUART
SMS providerAttendance alerts, fee reminders, OTP messagesRecipient mobile number and message content
WhatsApp Business APITemplate notices and reminders to parentsRecipient number and template message content
Email delivery providerCirculars, receipts, verification and reset emailsRecipient email address and message content
Cloud hosting and storageRunning the platform and storing uploaded documentsAll school data held in the platform, within the tenant separation described in our security page
Identity providers (Google, Microsoft)Optional school-account sign-inThe account identifier used to sign in, where a school enables it
12

Cookies and Analytics

Our website may use cookies, server logs, pixels, and analytics technologies to understand usage, improve page performance, secure the website, and remember user preferences.

You can control cookies through your browser settings, but disabling certain cookies may affect website functionality.

13

Data Retention and Security

We retain information only for as long as reasonably necessary for service delivery, school account administration, legal compliance, billing, security, audit, dispute resolution, and legitimate operational needs.

Academic and financial history is retained while a school needs it, because schools are required to keep it a transfer certificate needs the enrolment history and a fee dispute needs the ledger. Operational and diagnostic logs are kept for a limited window and then removed.

Security controls include role-based permissions, password hashing, optional authenticator-app multi-factor authentication, session and token management, tenant-level separation of each school's data, optional IP and location restrictions, and audit logging of sensitive actions. These are described in plain language, including what we do not yet claim, on our security page.

14

Ending Your Service

  • On termination, your school can export student records, fee ledgers, attendance and academic data in standard formats such as CSV, Excel and PDF.
  • After the agreed export and wind-down window, we remove school data from our active systems, retaining only what applicable law requires us to keep.
  • We do not sell school, student or parent data, and we do not use student records to train models.
  • Backup copies are cycled out on our normal backup schedule rather than being retained indefinitely.
15

Your Rights and Choices

  • You may contact us to request access, correction, update, deletion, or review of personal data, subject to applicable law and institutional control.
  • Where processing is based on consent, you may request withdrawal of consent where applicable.
  • For school-controlled student or parent records, we may direct requests to the relevant school administrator for verification and action.
  • You may raise privacy concerns or grievances using the contact details provided on this page.
16

Changes to This Policy

We may update this Privacy Policy from time to time to reflect product, legal, operational, or security changes. The updated version will be posted on this page with a revised effective date.