Security at Kidnomics

You trust us with something sensitive: records of who cares for your children and what you pay them. Here's how that trust is protected, in plain language.

Receipt images are isolated

Your childcare receipts and invoices live in secured, isolated storage. They are visible only to you and to authorized Kidnomics staff verifying your submission — never to vendors, advertisers, your childcare provider, or any other third party.

Encrypted in transit and at rest

All traffic to Kidnomics is protected with TLS/SSL, and sensitive data is encrypted at rest. Passwords are stored only in encrypted form.

Row-level security on every table

Database access is enforced at the row level: each account can only ever read its own records. Even a bug in the app cannot leak one family’s data to another, because the database itself refuses.

Role-based access controls

Inside Kidnomics, access follows roles. Receipt verification staff see what they need to verify receipts — nothing more — and administrative access is limited and audited.

We don’t collect children’s identifying data

Kidnomics processes childcare expenses, not children. We don’t collect children’s names, birth dates, or photos as part of receipt submission — the optional profile field records only a general age range.

Minimal sharing, clearly bounded

Marketplace vendors receive only what’s needed to ship your order — never your receipts, points, or account details. Partner childcare centers see only an aggregate enrollment count. Regular security audits keep these boundaries checked.

The legally binding version of all of this lives in our Privacy Policy. Questions or something to report? Email hello@kidnomics.com — security reports are read first.