KinSignal Privacy Policy
Last updated: 7 August 2026
KinSignal is a family wellbeing check-in and private emergency notes app. It is not an emergency service, clinical care service, legal document service, or replacement for professional care.
This policy explains what information KinSignal handles, what stays on your device, and how you can request account deletion.
Information We Collect
- Account information such as name, email address, password hash, verification status, and plan type.
- Wellbeing check-in metadata such as check-in timestamps, schedule settings, timezone, and alert status.
- Trusted contact metadata such as name, email address, optional phone number, relationship, and verification status.
- Device and notification metadata such as device identifiers, push notification tokens, platform, and notification preferences.
- Billing and entitlement metadata from the app marketplace and RevenueCat, such as subscription status and entitlement identifiers.
- Organisation access enquiry metadata, if submitted, such as organisation name, contact details, organisation type, approximate client count, and message.
- Operational metadata such as audit logs, API request metadata, failed job metadata, and security/rate-limit events.
- Private Note Release policy metadata and recipient-specific ciphertext, but only when you explicitly prepare selected text notes for selected trusted contacts.
Local-first notes and opt-in encrypted release
Private notes are local-first by default. Plaintext note titles and bodies, credential content, attachments and their file metadata, local vault keys, and trusted contact private keys remain on the relevant device and are never uploaded to the KinSignal backend.
Private Note Release is opt-in and text-only. Only when the owner explicitly selects a text note and trusted contacts does the app encrypt the note title and body on-device into a separate package for each recipient. The backend receives ciphertext and release-policy metadata only. Release is policy-based and delayed, and the owner can cancel before release. Attachments remain local-only and are never included.
If you delete the app or erase the local vault, KinSignal may not be able to recover local-only private notes or attachments.
How We Use Information
- Operate accounts, login, email verification, and password reset.
- Record wellbeing check-ins and calculate missed check-in alert timing.
- Send email alerts and supported app notifications according to your settings and entitlement.
- Manage trusted contact verification and alert acknowledgement flows.
- Manage subscription and assigned organisation entitlement status.
- Review organisation access enquiries and contact interested organisations.
- Maintain security, reliability, auditability, and abuse prevention.
Subscriptions and Payments
Advanced subscriptions are processed by the app marketplace used for the purchase, with RevenueCat used for subscription entitlement management. KinSignal does not receive your full payment card details. Marketplace and RevenueCat metadata may be used to confirm whether Advanced entitlement is active, trialing, in grace period, expired, or cancelled.
Alerts and Notifications
KinSignal may send wellbeing check-in reminders, missed check-in emails, and supported push notifications according to your settings. Alert delivery is not guaranteed. A missed check-in alert does not confirm an emergency.
Sharing
KinSignal may share limited metadata with service providers needed to operate the app, such as hosting, email delivery, push notification delivery, app store billing providers, analytics/operations tooling, and RevenueCat subscription services. We do not sell private note content. Service providers handling Private Note Release can receive only recipient-specific ciphertext and necessary policy metadata, not plaintext note content or decryption keys.
Data Retention and Deletion
You may request deletion of your KinSignal cloud account in the app. Account deletion deletes or anonymises backend account, check-in, trusted contact, notification, entitlement, encrypted release packages, and audit metadata as required for the service and legal/security needs.
Deleting your cloud account does not automatically erase local private notes on your device unless you choose to wipe the local vault where available.
Children
KinSignal is not intended for children to use independently. Organisations and families using KinSignal should ensure they have appropriate consent and authority for any wellbeing monitoring setup.
Changes
We may update this policy as KinSignal changes. Material changes will be reflected by updating the date on this page.
Contact
For privacy questions or account deletion help, contact KinSignal support at support@loopond.com.