EduForest

Privacy Policy

Last updated: 13 September 2026

EduForest (“EduForest”, “we”, “us”, or “our”) provides school ERP software. This single policy applies to all of the following (together, the “Services”):

  • The website and portals at https://eduforest.co.in (admin, staff/teacher, and parent web access)
  • The EduForest mobile app for school staff and administrators (Android package in.co.eduforest)
  • The EduForest Parent mobile app (Android package in.co.eduforest.parent)

By using any of the Services, you agree to this policy. If you do not agree, please do not use them.

Personal data is stored on our servers and/or on your device as needed to provide the Services. It is not processed ephemerally (it is not held only in memory and then discarded).

1. Who the Services are for

EduForest is for schools. School administrators and staff use the website and the EduForest staff app to run day-to-day operations. Parents and guardians use the Parent app or parent web portal to follow children the school has linked to their account.

The Services are intended for adults (school staff and parents/guardians). We do not offer accounts for children to create themselves. Student (minor) records are entered and managed by the school, and shown to linked guardians.

2. Information we collect

Accounts and identity. Name, mobile number (including one-time passwords for sign-in), email if provided, school / institute identifier, role (admin, teacher, driver, parent, and similar), and profile details you or the school save.

School operational records (website, staff app, and parent views of the same data). Students and guardians; admissions; classes and timetable; attendance; homework and attachments; exams and marks; fees, dues, and receipts; payroll and salary records (staff, on the website / staff tools); leaves and calendar; certificates; communications and notices; transport (buses, stops, drivers, live bus location supplied by the school’s transport workflow).

Website (admin / staff / parent portals). Login session information, pages you use in the portal, and files you upload or download (for example student photos, homework, imports, and PDFs). The parent portal shows the same category of child records as the Parent app, limited to children linked to that parent.

EduForest staff app. In addition to school records above: push notification tokens; device settings (language, preferences); photos or camera images you choose to upload (for example school or staff profile, homework, or student face photos the school uses for attendance); location when a user shares live bus GPS during a trip so parents can see the vehicle on the map. The staff app may also process credit / wallet purchases through Razorpay (see section 5).

EduForest Parent app. The parent’s account; children linked by the school; the school records those parents are allowed to see or submit (including leave requests); push tokens and notification preferences; files the parent downloads (homework or receipts). Live bus location shown in the Parent app comes from the school’s transport system. We do not use the Parent app to continuously track or upload the parent’s personal GPS. The Parent app does not process card payments; fee amounts and history are records from the school.

Device and technical data (all Services). Authentication tokens stored so you stay signed in; basic technical information such as device or browser type, operating system, and requests to our servers. We do not use the Services for third-party advertising.

3. How we use information

  • Create and secure accounts, and keep sessions signed in
  • Provide school ERP functions the school has enabled
  • Show parents only the children and records the school has linked
  • Send push notifications, SMS OTPs, and (where the school uses them) WhatsApp messages
  • Process staff-app credit purchases via Razorpay when that feature is used
  • Operate transport maps using location shared from staff/driver workflows
  • Provide support, security, and fault diagnosis
  • Meet legal and school record-keeping obligations

We do not sell personal information. We do not show ads in the Services.

4. Legal bases (India)

We process personal data to provide the Services the school and users request, to meet legal obligations, and for legitimate operational needs such as security. Where consent is required (for example notification, camera, photos, or location permission on a device), we ask on that device.

5. Who we share information with

  • The school: authorised staff see and manage school records. Parent actions (for example a leave request) are visible to the school.
  • EduForest servers: account and school data are stored so the website and apps stay in sync.
  • Google Firebase: phone sign-in (when enabled) and push messaging. See Google’s privacy policy.
  • Map providers: map tiles and location display (Google Maps / device map SDKs) when transport maps are opened.
  • Razorpay: if the school or staff app purchases credits, payment data is processed by Razorpay. We do not store full card numbers. See Razorpay’s privacy policy.
  • WhatsApp: the school may send notices or invites using WhatsApp (including opening WhatsApp on a device, or a Business API where enabled). Mobile numbers are shared only to deliver those messages. See WhatsApp’s privacy policy.
  • Authorities: if required by law or to protect rights, safety, or the Services.

We only share what is needed to provide these functions.

6. Children’s information

We process student personal data because the school has enrolled the student and uses EduForest as its school system. We do not knowingly let children under 18 create staff, admin, or parent accounts. Questions about a student’s records should go first to the school; you may also contact us as below.

7. Storage, security, and retention

Data is transmitted over HTTPS and stored on our servers and, where described above, with processors such as Firebase. Session tokens and preferences may be stored in the browser or on the mobile device (including device backup if the OS allows it).

We keep account and school data for as long as the school relationship and legal / accounting requirements need it. Operational records (for example attendance already marked) are not removed merely because a parent or staff member deletes the app or deactivates a login; the school may still need those records.

8. Your choices

  • Log out on shared computers and phones.
  • On mobile, control notifications, camera, photos, and location in system settings and (where offered) in-app settings.
  • Ask the school to correct student or guardian details they maintain.
  • Request access or correction of your own login profile via the product you use or by emailing us.

Account deletion: in the mobile apps, use Profile / Settings → Delete account where that option is shown. That deactivates the login on our servers (soft delete) and stops push tokens for that account. Signing in again with the same mobile number may reopen the account, subject to school rules. You can also request deletion at eduforest.co.in/delete-account or by emailing us. We aim to complete login-deletion requests within 30 days, except where the school or law requires us to keep records.

9. International processing

The Services are offered in India. Some processors (including Google and payment or messaging providers) may process data on servers outside India, only as needed for authentication, notifications, maps, payments, or messaging.

10. Changes

We may update this policy. The “Last updated” date will change. Continued use after an update means you accept the revised policy where permitted by law.

11. Contact

EduForest

B-251, Sector 19, Noida, Uttar Pradesh 201301, India

Email: support@eduforest.co.in

Website: https://eduforest.co.in