Birdieins
Data Protection & Privacy

Privacy Policy and Terms of Birdieins App

Learn how Birdieins protects student, athlete, and educator data with modern encryption standards and regulatory safeguards.

AES-256 Bit Encryption TLS 1.3 In-Transit FERPA Compliant COPPA Compliant GDPR Ready

Data Collection and Usage

We collect video footage and performance data solely for the purpose of assessing and improving player performance.
Our app collects phone numbers for the purpose of user authentication. We do not share phone numbers with third parties.

Health & Fitness Data

Our app may access health and activity data such as heart rate, steps, speed, distance, calories burned, body sensor readings, activity recognition, and health data history. This information is used solely to provide you with personalized fitness assessments, performance tracking, and a comprehensive view of your physical activity. The data is stored securely, never sold or shared with third parties, and you remain in full control of the permissions granted through your device settings.

User Consent

Users consent to the collection, storage, and analysis of their video recordings and performance data.

Data Ownership

Users retain ownership of their video recordings and performance data. We do not claim any ownership rights.

Data Security

We employ industry-standard security measures to protect user data, including encryption and access controls.

Professional-Grade Encryption at Rest

All student and educator data stored in our databases is protected by Advanced Encryption Standard (AES) 256-bit encryption.
The Standard: This is the same level of encryption used by the U.S. government and global financial institutions to protect "Top Secret" and highly sensitive data.
How it Works: Data is encrypted before it is written to disk, ensuring that even in the event of unauthorized physical access to the server infrastructure, the data remains unreadable without the unique, managed cryptographic keys.
Compliance: This satisfies the technical safeguard requirements of FERPA and COPPA.

Secure Encryption in Transit

Data moving between your device and our servers is never exposed in plain text. We utilize Transport Layer Security (TLS) 1.2 or 1.3 to create an encrypted "tunnel" for all communications.
Authentication: Our systems use AWS Signature Version 4 (SigV4) to ensure that every request to our backend is authenticated and has not been tampered with during transit.
End-to-End Safety: Whether a teacher is importing a roster from Google Classroom or a student is submitting an assignment, all data is shielded from "man-in-the-middle" attacks by modern cryptographic protocols.

Access Control

Only authorized users, including players and academy coaches, have access to view and analyze the videos and performance insights.

Data Sharing

We do not share user data with third parties unless explicitly authorized by the user or required by law.

Data Retention

We retain user data for as long as necessary to provide the service and fulfill the purposes outlined in our privacy policy.

Account Security

Users are responsible for maintaining the security of their account credentials and should report any unauthorized access immediately.

Deletion of Data

In accordance with FERPA and COPPA, the school district remains the sole "owner" of student data. We act strictly as a "Data Processor".
Users can request the deletion of their data at any time, and we will promptly comply with such requests in accordance with applicable laws.
On-Demand Deletion: School administrators or teachers may request the deletion of a specific student’s data or an entire class roster at any time. We fulfill these requests within 30 business days.
Contract Termination: Upon the termination of a service agreement with a school or district, we will securely purge all associated student PII (Personally Identifiable Information) within 90 days, providing a "Certificate of Deletion" upon request.
Data Portability: Before deletion, schools have the right to export their data in a standard format (e.g., CSV or JSON) to ensure academic records are preserved in their own primary systems.

Compliance with Laws

We comply with all relevant data protection and privacy laws, including the General Data Protection Regulation (GDPR).

Contact Information

Users can contact us for questions or concerns related to privacy and data security at contact@datalyca.com.