Privacy Policy
Beadbar is made by Aprative LLC (“we”). This policy covers the Beadbar website and app.
The short version
- Adults use Beadbar. Children never have accounts and never sign in.
- A school’s data belongs to the school. We use it only to run Beadbar for that school.
- We do not sell data, show ads, use tracking tools, or train artificial intelligence on your data.
- Beadbar’s data is stored in the United States.
- A school can download or delete its data at any time. Anyone can delete their own account.
Our role
- School accounts: we handle data on the school’s behalf and follow its instructions, as the School Data Agreement sets out. That agreement controls if it differs from this policy. For a school covered by the federal student privacy law (FERPA), we act as a “school official” under the school’s direct control.
- Family accounts (for teaching at home): the parent who sets up the account controls it and enters their own children’s information. We use it only to provide Beadbar to that family, as this policy describes.
- Accounts without a school or family: we decide how your account data is used, as this policy describes.
What we collect, why, and how long we keep it
We collect only what is listed here. Before we collect anything new, we update this policy, and for school data we tell schools first.
| Data | From | Why | Kept |
|---|---|---|---|
| Name, email address, state | You | To sign you in, show the right standards, and email you about your account | Until you delete your account |
| Google account ID and profile photo address | Google, if you sign in with Google | To sign you in and show your photo next to your name | Until you delete your account |
| Counts of recent sign-in attempts, by IP address | Your browser | To block repeated sign-in attempts | 1 day |
| Your confirmation that you are 18 or older, and which versions of these documents you accepted, when, from which IP address and browser | You and your browser | To show what was agreed | While your account exists, then until 3 years after you accepted |
| Sign-in sessions: IP address and browser | Your browser | To keep you signed in and to detect misuse | Until the session ends, at most 30 days after your last visit |
| Sign-in codes | Us | To sign you in | Work for 10 minutes; stored only in a form that cannot be read back; deleted by the next daily cleanup |
| Emails we send | Us | To sign people in, invite staff and family members, tell family members a report is ready, and tell you about your account | Our email service keeps a copy up to 45 days |
| Favorites | You | To build your binder | Until you remove them or delete your account |
| School name, state, and settings | The head of school | To run the school’s account | Until the school is deleted |
| Billing for a paid plan: the payer’s name, email address, billing address, and card | The person paying, on Stripe’s payment page | To take payment and work out sales tax | Stripe holds these; we never see card numbers. Stripe keeps payment records as tax and financial laws require |
| The plan, its status and renewal date, the number of classrooms paid for, and Stripe’s account numbers for the school or family | Stripe | To know which features the account has paid for | Until the school or family account is deleted |
| Staff: name, email address, role, classrooms | The head of school and staff | So each person sees only what their role allows | Until the person leaves the school, or the school is deleted |
| Staff training progress: items studied, presentations a staff member is signed off to give, and who signed them off | Staff and guides | To train new staff | Until the person leaves the school, or the school is deleted |
| Staff invites: email address, role, classrooms | The head of school | So staff can join | Links work for 14 days; the record is deleted 30 days after that |
| Family members the school invites: name, email address, and which child they can see | The school, and the family member when they sign up | So a family can see their child’s progress and shared reports | Until the school removes them, they leave, or the child or school is deleted |
| Family invites: email address and child | School staff | So a family member can join | Links work for 14 days; the record is deleted 30 days after that |
| Children: name, preferred name, birthdate (optional), classroom, and an ID from another system if the school imports one | School staff, or the parent in a family account | So guides can plan and record lessons | Until the school deletes the child or the school |
| Lesson records, weekly plans, notes, and family reports (a title, dates, and the guide’s words) about a child | School staff | To plan lessons and track each child’s progress | Until the school deletes the child or the school. A lesson mark that staff remove is archived for 2 years so it can be restored, then deleted |
| Change log: who added, changed, or removed a record, and which fields (never the values) | Our system | So the school can see who changed a record | Until the school is deleted |
| Deletion records: what was deleted, when, at whose request, and how many records (no names or content) | Our system | To confirm a deletion when asked | While we operate Beadbar |
The Data Retention and Deletion Policy gives the full schedule.
Children’s privacy
Beadbar is not directed to children and does not let children sign in. Adults at a school enter children’s information for the school’s educational use only, under the school’s authority. In a family account, a parent enters their own children’s information, and can see, correct, download, or delete it at any time. If we learn that a child has made an account, we delete it.
A school can give a child’s family members read-only access to the child’s progress and the reports it shares. Family members never see staff notes, plans, or other children.
A parent who wants to see, correct, download, or delete their child’s information should contact the child’s school. The school can do each of these in Beadbar, and we help the school within 30 days of its request, or sooner if the law sets a shorter deadline. If a parent writes to us, we pass the request to the school.
How we use data
We use data only to provide, secure, and support Beadbar, and to tell account holders about their account and the service.
We never:
- sell, rent, or trade personal data;
- show ads, use data to target ads, or build profiles of children, families, or staff for any purpose other than running Beadbar for the school;
- put third-party tracking, analytics, or session-recording tools in Beadbar;
- use your data or any child’s data to train or build artificial intelligence models, including data with names removed;
- try to identify a person from data that has had identifying details removed.
Artificial intelligence
Beadbar does not use artificial intelligence on your data. Before we add any feature that does, we will: list the service that runs it on Outside services; require that service not to keep the data or train on it; use it only to serve the school or account holder the data belongs to; let each school turn it off; and treat it as a material change under “Changes” below.
Who else handles data
A small number of outside services help run Beadbar, such as hosting, email, and card payments. Each handles data only on our instructions and is bound by a written agreement to protect it and not sell it. The Outside services page lists each one, what it handles, and where. We add a service to that page, and email heads of school, at least 30 days before it handles school data.
We share data with anyone else only when the school directs us to, or when the law requires it, such as a court order. If the law requires us to hand over a school’s data, we tell the school first unless the law forbids it.
If Aprative or Beadbar is sold or merged, the new owner must keep the promises in this policy and the School Data Agreement for data we already hold. We tell schools as the School Data Agreement sets out.
Cookies and data on your device
Beadbar uses only the cookies it needs to work: to keep you signed in, to complete Google sign-in, to remember which school you are working in, and to tell public pages that you are signed in. We use no advertising or analytics cookies, and no other company tracks you on Beadbar. Because there is no tracking, “Do Not Track” browser signals change nothing.
So that recording works without a connection, the Record screen keeps a copy of your classroom’s children and marks, and any marks not yet sent, on your device. Signing out removes it.
Security
Data is encrypted while it travels and while it is stored. The database itself keeps each school’s data separate, and staff see only what their role allows. If a breach affects a school’s data, we notify the school within 72 hours of confirming it. Security has more.
Your choices and rights
- See or download: a head of school can download all school data and any child’s record.
- Correct: staff can correct records their role allows them to edit. Anyone can correct their own name and state on Your account.
- Delete: a school can delete a child or the whole school, and anyone can delete their own account. The Data Retention and Deletion Policy says how long each takes.
- Ask us: write to privacy@aprative.com. We answer within 30 days. We may ask you to confirm who you are first.
These choices are open to everyone, wherever you live.
Changes
We post each version here with its date and a change log. Before a material change, such as a new use of data, we email account holders at least 30 days ahead and ask you to accept again at sign-in. A change never applies to data collected before it without the consent of the school, or of the account holder for an account without a school.
Contact
Aprative LLC · privacy@aprative.com · 1674 N 840 W, Salem, Utah 84653
Change log
| Version | Date | Change |
|---|---|---|
| 1.0 | 2026-09-25 | First version for the pilot. |
| 1.1 | 2026-09-26 | Added our mailing address. |
| 1.2 | 2026-09-26 | Paid plans: added the billing details Stripe handles for the person paying, and the plan details we keep. |