Privacy & Data Protection Policy
Zetime Institutional Platform • Last updated: July 2026
1. Information Architecture & Scope
Zetime processes educational and operational data to power attendance tracking, discipline incident management, and parent-teacher communication across educational institutions. Data is partitioned into strict tenant layers:
Account Credentials
Encrypted user names, emails, phone contacts, role assignments, and school credentials.
Attendance & Discipline
Daily/session attendance records, discipline incident reports, follow-up logs, and parent acknowledgments.
Communications & Mobile
Direct messages, announcement broadcasts, FCM push notification tokens, and Capacitor mobile app device metrics.
2. Data Usage & Processing Principles
We process data strictly to facilitate institutional operations and parent transparency. Zetime never sells or monetizes student or institutional data to third parties or advertising networks.
Multi-Tenant Isolation & Encryption Standards
Zetime enforces strict multi-tenant isolation at the database and application levels (schoolId scoping). All data in transit is encrypted using TLS 1.3, and data at rest is secured with AES-256 encryption. Discipline audit logs and attendance records are immutably timestamped to ensure audit compliance.
3. Data Retention & Institutional Rights
Educational institutions retain full ownership and sovereignty over their data. Upon account closure or subscription termination:
4. Mobile & Push Notification Policies
The Zetime Mobile Application (Capacitor for Android & iOS) registers Firebase Cloud Messaging (FCM) push tokens exclusively for operational alerts (e.g., child attendance warnings, new discipline notes, and incoming call notifications). Push tokens are revoked automatically upon user logout.
Have questions regarding security or data compliance?
Contact Security & Compliance