Legal
Privacy Policy
This privacy policy describes how Kairos, LLC ("we," "our," or the "Service Provider") handles your data in connection with the Kairos shift tracker mobile application and any related services operated by us (collectively, the "Application").
We build Kairos with a strict "privacy by design" philosophy. We believe that your schedule is your personal business, and we structure our app's abilities and architecture to reflect that commitment.
Core Privacy Principle: Kairos does not host private accounts, require user registrations, or maintain external servers containing your personal identity. All core schedule data is stored directly on your device, and synchronization is handled securely through Apple's standard iCloud infrastructure.
1. Information We Collect and Process
Because the Application operates locally on your device and integrates natively with your iCloud container, the categories of data we process are kept to an absolute minimum:
- Local Schedule Data: Your custom shift rotations, schedule names, select calendar overrides (such as vacation or trades), and settings. This data remains on your device (within a shared App Group sandbox to allow widget extensions and watchOS support to work) and is never transmitted to us.
- Sharing and Synchronization Data (CloudKit): If you choose to share your schedule using our Public Sharing protocol, the schedule's details (your name/handle, selected rotation pattern, start date, and calendar overrides) are uploaded to a public table in Apple's CloudKit database. This is represented by a randomly generated, anonymous 6-character access code (e.g.,
AB12CD). - Enterprise Access Data: If you enter a developer-issued enterprise unlock code to access Kairos Pro features, the Application validates the code locally using Ed25519 cryptographic signatures. Upon validation, the signature's unique hash is registered in a secure single-use ledger in Apple's public CloudKit database to prevent code reuse. No personal details or device identifiers are recorded during this process.
- Automatic Technical Logs: To support iCloud functionality, Apple CloudKit automatically records standard device metrics, basic diagnostics, and IP addresses as part of Apple’s standard cloud database service. We do not host, store, or have direct access to these logs.
2. Cookies and Tracking Technologies
Kairos does not use any marketing cookies, advertising identifiers (IDFA), tracking pixels, or third-party marketing SDKs. No personal behavior or navigation habits are tracked or sold to third parties.
3. Entitlements and In-App Purchases
Subscription payments and transactions for Kairos Pro are processed securely and directly by Apple via StoreKit 2. We do not receive, process, or store credit card details, billing addresses, or payment credentials. Apple provides us with anonymous transaction markers to enable and manage subscription entitlements.
4. Third-Party Data Access & Sharing
We do not sell, rent, or trade your personal data. We do not disclose any schedule data to third parties, except in the following limited circumstances:
- As Required by Law: To comply with a subpoena, court order, or similar legal process.
- To Protect Safety: When we believe in good faith that disclosure is necessary to protect our rights, your safety, or the safety of others, or to investigate fraud.
- Through Shared Codes: Anyone who obtains your 6-character shared access code will have read-only access to the schedule details associated with that code on Apple's CloudKit. Please share your codes responsibly.
5. Data Retention & Deletion
- Local Data: All local shift tracking and settings stored in the App Group are deleted immediately when you uninstall the Application from your device.
- Shared Schedules: If you want to delete a shared schedule from Apple's CloudKit database, you can clear the shared data within the Application. Alternatively, you can email us at team@kairosapp.dev with your 6-character access code, and we will manually delete the record from CloudKit.
- Enterprise Verification: Hash entries in the single-use enterprise ledger are retained permanently to ensure cryptographic activation integrity.
6. Security
We utilize physical, electronic, and procedural safeguards provided by iOS, watchOS, and Apple iCloud to protect your data. Your schedule data transferred through CloudKit is securely stored in Apple's infrastructure, protected by industry-standard TLS encryption during transport.
7. Children's Privacy
The Application is not designed for or targeted at children under 4 years of age. We do not knowingly collect personal data from children. If you believe a child has submitted personal details through the shared schedule features, please contact us so we can immediately delete it.
8. Changes to this Policy
We may update our Privacy Policy from time to time to reflect changes in our Application or relevant legal requirements. We will post any changes on this page and update the effective date at the top of the policy.
9. Contact Us
If you have any questions, feedback, or data deletion requests, please contact us at:
Email: team@kairosapp.dev