Privacy policy
Last updated: 6 September 2026
This policy explains, in plain language, what data Kidumo collects, why we collect it, and the choices you have as a parent. Kidumo handles information about children, so we keep this short, specific, and honest.
Who we are
Kidumo is a family routine app operated from the European Union. The data controller for the personal data described in this policy is KNAISOMA SOLUTIONS S.R.L., registered at Str. Mircea Vulcanescu nr. 92, Bl. A, Ap. 2, Sector 1, Bucuresti, Romania (VAT/CUI RO41565703). This policy is governed by Romanian and EU law, including the GDPR.
For anything in this policy, you can reach us at [email protected].
What we collect
We collect only what the app needs to work:
- Your parent account: the email address you sign up with, the name you display and your language, handled by our self-hosted sign-in service (Zitadel).
- Your family: the family name you choose, and which adults are members of it.
- Your children's profiles: the first name or nickname you choose to enter, an optional birth year, an avatar and a colour, and how independently the child uses Kidumo. A nickname works just as well as a real name.
- An optional unlock PIN: if you or your child set a 4 to 6 digit PIN so they can open their own profile on a connected device, we keep it only as a one-way hash, never the digits themselves.
- What happens in the app: the routines, tasks and rewards you create, their completion history, and the short message a child can send when they ask for help.
- Connected child devices: the device name you give it and the technical details needed to keep that device signed in safely. Session tokens are stored only as one-way hashes, never in a form we could reuse.
- A record that you accepted a specific version of this policy and of the terms, with the date and the language. We keep it as proof that we had your agreement.
- Basic technical data needed to keep the service running and secure, such as server logs.
Children do not have accounts
Children do not have accounts, email addresses, or sign-in passwords in Kidumo. Everything about a child is entered and controlled by you, the parent, and a nickname works just as well as a real name. Child devices are connected by you and can be disconnected by you at any time.
There is one small exception and we would rather name it than leave it out. A child can set an optional 4 to 6 digit unlock PIN so they can open their own profile on a device you already connected, which helps when brothers and sisters share a tablet. It is not a way to sign in: it cannot log in to Kidumo, cannot connect a new device, and it only opens that one profile. We store it as a one-way hash, never the digits, and it locks itself for a while after a few wrong tries. You can clear it or disconnect the device whenever you like.
What we never do
- No advertising, ever.
- No selling or renting anyone's data.
- No third-party trackers or analytics cookies.
- No profiling of children.
Who processes data for us
A small number of providers help us run Kidumo. They process data only on our instructions:
- Zitadel: sign-in and account management for parent accounts. We host it ourselves on our own EU infrastructure, so it is not a third party.
- Hetzner (Falkenstein and Nuremberg, Germany): the EU servers where the application, the database and the sign-in service run.
- Cloudflare: DNS, secure connections, protection against abuse, and hosting for the website and the app. Traffic reaches us through their worldwide network, so a request can be handled outside the EU on its way to us, under their standard data protection terms and the EU standard contractual clauses.
- Amazon Web Services (SES) in Stockholm, Sweden: sends transactional email such as verification codes. It sees the recipient address and the content of the email it sends (for example your display name), never your family data.
- Amazon Web Services (S3) in Stockholm, Sweden: stores our encrypted database backups.
Where your data lives
Your family's data is stored and processed in the European Union: the application, the database and the sign-in service run on servers in Germany, and our encrypted backups are stored in Sweden.
The one exception is the network in between. Requests travel to us through Cloudflare, whose network is worldwide, so a request can pass through a location outside the EU. That is covered by their data protection terms and the EU standard contractual clauses.
How long we keep data
We keep your family's information while your account is active, because it is what the app shows you. Beyond that, things are removed automatically on a fixed schedule:
- Codes: a device pairing code or a family invite is deleted 30 days after it expires or is cancelled.
- Connected child devices: once you disconnect a device, its record and the technical tokens that belonged to it are deleted 90 days later. A device you never disconnect stops working by itself after a long spell unused, but it stays in your list until you remove it or delete the child profile. We plan an automatic cleanup for those and have not built it yet.
- Things you archive: an archived routine, task or reward, and an archived child profile, are deleted permanently 12 months later. Deleting a child in Data and privacy is immediate instead.
- Backups: our encrypted database backups are kept for about a month (a 30-day recovery window, hard limit 45 days) and then expire, so something you deleted can still exist in a backup for that long. We never use a backup to bring back a deleted account.
- Server logs: kept for a short period for security and troubleshooting, then deleted.
- Your acceptance of this policy: kept as evidence of your agreement. Once your account is deleted it holds no personal details, only which version you accepted and when.
Your rights as a parent
Under the GDPR you have the right to access, correct, export and delete your data. You can review and correct your family's information anywhere in the app at any time. For anything else, including restricting or objecting to how we use your data, email [email protected] and we will help. You also have the right to lodge a complaint with your local data protection authority; in Romania that is the ANSPDCP.
The Data and privacy screen lets you do the following yourself, without waiting for us:
- Download a copy of your data as a JSON file, in three scopes: your account, your family, or one child.
- Delete a child permanently: their profile, routines, tasks, rewards and device history.
- Leave a family. If another adult stays, they keep the family and your personal details are removed from it. If you are the only adult, we do not let you leave quietly: we ask you to confirm that you want to delete the whole family and everything in it instead.
- Delete your account. We erase your personal data straight away and delete your sign-in identity immediately afterwards. If that last step fails, an automatic job keeps retrying until it succeeds.
- When another parent or guardian stays in the family, the shared information (the children's profiles, routines and history) stays with them and your personal details are removed from it. When you are the only adult, the family and all its data are deleted permanently.
- Deletion cannot be undone, so we ask you to sign in again right before the three permanent ones: deleting a child, deleting your account, and deleting a whole family. Downloading your data, or leaving a family where another adult stays, does not need it.
Cookies and local storage
Kidumo uses only functional cookies and local storage: keeping you signed in, remembering your language, and remembering that you dismissed the beta banner. There are no analytics or advertising cookies during the beta. If that ever changes, we will ask you first.
Changes to this policy
When this policy changes we will update this page and the date at the top. For significant changes we will tell you by email or in the app.
Contact
Questions or requests: [email protected].