Apps TrackerTime ("Tim"), TrackerBill ("Bill") and TrackerDebt ("Debby")
Last updated: 5 September 2026
1.Who is responsible for your data?
The Trackers suite is created by Kinderdalice (Alice Bégué), based in France.
For any question about your personal data or this policy, you can contact us at: hey@kinderdalice.com.
Kinderdalice is the data controller for the data you entrust to us as a user.
2.What does this policy cover?
This policy applies to the Trackers by Kinderdalice app suite — currently Tim (time tracking), Bill (invoicing) and Debby (expense and debt tracking) — as well as their shared service TrackerCore, which hosts and syncs your data across the apps.
A single account lets you use all the apps in the suite. It also covers future Trackers apps that rely on the same account, the same TrackerCore service and the same data-processing logic. Any new app introducing a genuinely different use of your data will be the subject of an update to this policy.
3.What information is stored?
The apps store only the information you enter yourself, for your own professional use (for example, to create your invoices or track your time). We do not "collect" anything without your knowledge, and we do not use it for any purpose other than providing the service: we merely host and sync it for you.
Here is the information concerned, depending on what you choose to enter:
Account data
Your email address and password (the password is encrypted; we never keep it in plain text).
Professional profile data (that you fill in for your documents)
First name, last name, business name, SIRET number, business code, phone, address, logo.
Bank details (IBAN / BIC) when you add them for your invoices.
Data you enter in the apps
Tim: your missions, your time entries (dates, durations, descriptions), and possibly the location of a mission.
Bill: your quotes, invoices, credit notes, contracts and expense notes, as well as the details of your own clients (name, contact details, SIRET, etc.).
Debby: your expenses, debts and loans, and the supporting documents (photos or files of tickets/receipts) that you import.
Technical data
Minimal technical logs needed for the security and proper functioning of the service.
4.What we DO NOT do
Your data is never viewed, read or exploited by anyone. It is only hosted and synced automatically for your own use. No human looks at the content of your account, except at your express request to resolve a technical issue.
No advertising tools, no analytics tools, no third-party trackers, no spyware. Our apps include no third-party tracking or audience-measurement service. The only data that leaves your device is what you voluntarily save in your account, and it goes solely to our own TrackerCore service (hosted in Europe).
No biometric data: unlocking via Face ID / Touch ID is handled locally by your device. The app never receives, stores or transmits your biometric data — only a "unlocked / not unlocked" confirmation.
We never sell or rent your data.
5.Access to your device (permissions)
Some features ask for your permission. You can grant or refuse it, and change it at any time in your phone's settings.
Location (Tim, Bill): only if you allow it, to record the location of a mission. This information is never shared with a third party.
Camera / photo library: to add your logo, or to photograph/import a supporting document (ticket, receipt).
Face ID / Touch ID: to protect access to the app, if you turn it on. The check is done by your phone: the app only receives a "yes" or a "no", never your biometric data.
Microphone: the app never uses it and records no sound. The permission exists only so that your phone keyboard's dictation stays available in text fields. That dictation belongs to your system (Apple or Google): what you dictate does not go through us.
Text recognition (OCR, Bill, Coco and Debby): when you scan a receipt, a business card or a document, the text is read directly on your device to pre-fill the entry; the image is not sent to anyone. When a PDF document has to be read by our servers, that reading takes place on our servers located in the European Union, with no third-party provider, and the file is not kept.
Notifications (Debby): only reminders scheduled locally on your device. No notification is sent from a remote server.
Contacts (Bill): if you allow it, to create a client from a contact you pick yourself. Only the entry you choose is read; your address book is never browsed, copied or transmitted.
Sharing to your calendar and contacts (Tim, Bill): you can export a mission in calendar format (.ics) or a client in contact format (.vcf) and add it yourself via your phone's share feature. The app does not read your calendar.
6.Why do we use your data? (purposes)
Provide the service: create and manage your account, record your time, generate your documents, track your expenses, sync your data across the apps.
Contact you: for example, to reset your password.
Secure the service: prevent unauthorised access and abuse.
Comply with our legal obligations, particularly regarding invoicing.
7.On what legal basis? (GDPR)
Performance of the contract: almost all processing serves to provide you the service.
Legal obligation: keeping invoicing documents.
Legitimate interest: the security of the service.
Consent: access to your location and sending notifications (which you can refuse or withdraw at any time).
8.Your own clients' data
When you enter information about your clients (in Bill in particular), you remain the controller within the meaning of the GDPR. Kinderdalice then acts as a processor: we host and process this data on your behalf and according to your instructions, solely to let you create your documents. It is up to you to inform your own clients about the use of their data.
9.Who has access to your data? (processors)
We never sell or rent your data. We use a small number of technical providers, strictly framed, solely to run the service:
MongoDB Atlas — database hosting (servers located in Paris, France).
Railway — application server hosting (servers located in Amsterdam, in the European Union).
ZeptoMail (Zoho) — sending the service's emails (for example, password reset) and the documents you send from the app (servers located in the European Union).
Brevo — sending the service's emails for accounts that have not set up their own sending address.
Apple / Google — app distribution and, where applicable, management of in-app purchases.
10.Where is your data hosted?
Your data is hosted in the European Union (database in Paris, application server in Amsterdam).
11.How long do we keep your data?
Your data is kept as long as your account is active.
Invoicing documents may be kept longer to comply with legal obligations for accounting retention.
You can request the deletion of your account at any time (see "Your rights"). After deletion, your data is erased, subject to documents the law requires us to keep.
12.How is your data protected?
Exchanges between the app and our servers are encrypted (HTTPS/TLS), and your data is encrypted at rest on our servers.
Your password is stored in encrypted form (hashed), never in plain text.
Access to your account can be protected by Face ID / Touch ID.
Access to the data is restricted and the database network is secured.
13.Your rights
In accordance with the GDPR, you have the following rights: access, rectification, erasure, portability, restriction and objection.
To exercise one of these rights, write to us at hey@kinderdalice.com. We will reply as soon as possible.
If you believe your rights are not being respected, you can lodge a complaint with the CNIL (www.cnil.fr), the French data protection authority.
14.Minors
The Trackers apps are professional tools. In accordance with the "digital age of majority" in France, they are not intended for people under 15; below that age, registration would require a parent's consent. We do not knowingly store data concerning minors under 15.
15.Changes to this policy
We may update this policy, in particular to adapt it to new features or regulations. In the event of a significant change, we will inform you. The "last updated" date at the top of this document indicates the version in force.
16.Contact
For any question about this policy or your personal data: Kinderdalice — hey@kinderdalice.com