Privacy Policy
Last updated: August 21, 2025
This Privacy Policy explains how Tuition Manager (the “App”, “we”, “our”, or “us”) collects, uses, and shares information when you use our mobile and web applications and related services.
Information we collect
- Account information: name, email address, and profile details you provide during sign-in (Google Sign-In).
- Content you add: chat messages, attachments (images, PDFs, videos, documents), student and fee-related information, and any materials you upload or share.
- Device and app info: device type/brand/model, OS version, app version, language/locale, timezone, browser/user agent (web), hardware concurrency (web), and network type/state.
- Identifiers: app-generated device identifier, Firebase/Expo push notification tokens, and session identifiers.
- IP address & region: IP is used for security and diagnostics; we may derive an approximate region (no precise GPS location).
- Permission statuses: whether you granted camera, microphone, media/library, and notification permissions. We do not collect microphone or camera recordings by default—only what you explicitly upload.
No precise location: The App does not collect precise location. We only infer an approximate region from IP for security and diagnostics. We also sample whether location/camera/microphone/notifications permissions are granted, not the underlying data unless you explicitly share it.
How we use information
- Provide core App functionality (students/fees, messaging, file upload/viewing, reminders).
- Send notifications you enable (e.g., payment reminders, updates).
- Maintain safety and security, including device ban checks, abuse prevention, and fraud detection.
- Support, troubleshooting, and to improve performance and reliability.
- Comply with legal obligations.
File uploads and shared links
When you upload files, the App may generate tokenized download links hosted by our storage provider (for example, Firebase Storage). These links are intended for sharing with recipients. Anyone who has a valid link can access the file without signing in. Links may not expire automatically. You can revoke access by deleting the file from within the App or by contacting support for assistance.
How we share information
- At your direction: Information and links you share are accessible to recipients you choose.
- Service providers: We use trusted vendors to run the App. These include Firebase/Google Cloud (Auth, Firestore, Realtime Database, Storage, Hosting), Expo services (push notifications), Twilio (SMS/WhatsApp/voice for reminders), and EmailJS (email delivery). Providers access data only to perform services for us and under appropriate safeguards.
- Legal: We may disclose information to comply with law, protect rights, or respond to valid legal requests.
We do not sell personal information. We do not share data for advertising purposes.
WhatsApp communications and consent
We may send you informational messages on WhatsApp (e.g., attendance updates, payment reminders) only after you provide explicit opt‑in via the app or our forms. Message frequency varies based on your activity. Standard carrier and data charges may apply. You can opt out anytime by replying STOP to our WhatsApp messages, or contact support to be removed. Reply HELP for assistance.
For your safety, do not share sensitive information (full payment card numbers, bank account numbers, government IDs such as Aadhaar/PAN, or health information) via WhatsApp.
Security
We use reasonable administrative, technical, and organizational measures. Data is encrypted in transit. No method of transmission or storage is 100% secure.
Data retention
We retain information as long as needed to provide the App and for legitimate business purposes or legal requirements. Examples:
- Chat messages and files: kept until you delete them or your account is deleted.
- Uploaded receipts and attachments: kept until you delete the file; public token links stop working when files are deleted.
- Device records: offline devices may be cleaned up after a period of inactivity (e.g., ~14 days). Logout signals are transient.
- Device bans: retained while active or until expiration/removal.
Your choices & rights
- Update your profile and settings in the App.
- Control permissions for notifications, camera, microphone, and media in your device settings.
- Delete files you previously shared to revoke access to tokenized links.
- Request account deletion in-app: Help & FAQ → “Request account deletion” (a confirmation modal will guide you). You can also email vipulkr250@gmail.com from your signed-in email.
- Opt out of WhatsApp/SMS: reply STOP to the message thread, or email vipulkr250@gmail.com.
- Access, correct, or delete your personal information by contacting us.
Children’s privacy
The App is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us personal information, contact us and we will take appropriate action.
Reporting and content removal
If you believe content shared via the App is illegal, infringing, or violates our policies, please report it to vipulkr250@gmail.com with details and relevant links. We will review and, where appropriate, remove or restrict access to the content.
For WhatsApp communications, we maintain opt‑in records and provide a human escalation path via email and phone support if needed.
International transfers
We may process and store information in countries other than your own (e.g., where Firebase/Google Cloud or other providers operate). We take steps to ensure appropriate safeguards for such transfers.
Changes to this policy
We may update this Privacy Policy from time to time. We will post the updated version and revise the “Last updated” date above.
Contact us
If you have questions about this Privacy Policy or our practices, contact us at vipulkr250@gmail.com or call +91 7667857972. Postal: VIPIKA, Parsawan, Bodhgaya Block, Magadh University Road, Gaya, Bihar 824234, India.
Data Safety summary: We collect account info, content you upload, device/app info, app-generated identifiers, push token, IP (for security and approximate region), and permission statuses. Used to provide features and security. No ads, no sale of data. Shared only with recipients you choose and service providers (Firebase/Google, Expo, Twilio, EmailJS). Tokenized file links can be accessed by anyone with the link until you delete the file. WhatsApp messages are sent only with opt‑in and you can opt out by replying STOP.