Privacy Policy
Last updated: not yet published — fill in a date once reviewed.
This is a starting-point template, not legal advice.
It describes what the app actually does with data as of this writing.
Before relying on it for a real facility handling resident-adjacent
information under Title 22 or similar regulation, have it reviewed by
someone qualified to advise on your specific obligations.
What this covers
This policy describes how Tello Staff handles data for the account
holder(s) who use the app to manage staff scheduling. It does not cover
resident health information — Tello Staff is a staffing tool, not a
resident records system, and should not be used to store protected health
information.
What we collect
- Account data — the email address and password used
to sign in (handled by Supabase Auth; passwords are never visible to us
in plain text).
- Schedule data you enter — home names, staff names,
shift assignments, reminders, and birthdays you type into the app.
- Staff directory data — names, roles, phone numbers,
and notes you add for staff members.
- Chat messages — questions you ask the "Ask Tello"
feature and its replies, stored so your conversation persists between
visits.
How it's used
Solely to operate the app for you: displaying your schedule, sending
your schedule data as context to the AI chat feature so it can answer
grounded in your actual roster, and nothing else. Data is not sold, and
is not used to train any AI model.
Who else sees it
- Supabase hosts the database and handles
authentication. Your data is stored in Supabase's infrastructure under
this app's account.
- Anthropic processes messages sent to the "Ask
Tello" chat feature, including the schedule context sent with each
question, in order to generate a reply. See
Anthropic's privacy policy
for how they handle API data.
- Cloudflare hosts and serves the application files.
No other third parties receive your data.
Data retention and deletion
Data persists until you delete it in the app (staff records,
reminders, birthdays, chat history) or ask the account owner to remove
it. There is currently no self-service "delete my account" flow — contact
the account owner directly to request removal.
Security
Data is scoped per account via database-level access rules (row-level
security), so one account cannot read another's data. All traffic is
encrypted in transit (HTTPS).
Children's privacy
Tello Staff is a workplace tool for adult staff scheduling and is not
directed at children.
Changes to this policy
If this policy changes in a way that matters, the date above will be
updated and, where practical, existing users will be notified.
Contact
Questions about this policy go to the account owner directly, through
whatever channel you already use to reach them.