Privacy policy
KinFrame ("KinFrame", "we", "us") is a self-hosted family command center built and operated by the Combs family for their own household. This policy explains what data KinFrame handles, why, and how you can have it removed. It covers the KinFrame application and this website, kinframe.link.
Summary
- KinFrame runs on a server the household owns. Its data is stored there, not in a third-party cloud service.
- Google Calendar data is used only to show and manage the household's calendar inside KinFrame.
- We do not sell data, show ads, run analytics or tracking, or share data with third parties.
- Disconnecting Google in KinFrame revokes our access and deletes the copied calendar data.
Data from Google accounts
A household administrator can connect a Google account using Google's sign-in and consent screen. KinFrame requests these permissions:
| Permission | Why KinFrame needs it |
|---|---|
openid, email | To record which Google account was connected, so the administrator can see it and disconnect it. |
calendar.calendarlist.readonly | To list the account's calendars so the administrator can choose which ones appear in KinFrame. |
calendar.events | To read events from the chosen calendars and show them on the household's displays, and to let family members create or edit events from KinFrame (a planned feature; edits are written back to Google Calendar). |
What we store
- The connected account's email address.
- An OAuth refresh token, encrypted at rest with a key kept outside the database.
- The names and colors of the account's calendars, and which ones the administrator enabled.
- For enabled calendars only: a copy of event details (title, description, location, start and end times, time zone, recurrence rules and status) so displays can load quickly and work during brief network outages.
How we use it
Google user data is used only to provide KinFrame's calendar features to members of the household that connected the account: showing events on household devices, keeping that copy in sync, and, when a family member asks, writing their event changes back to Google Calendar. We do not use Google user data for advertising, to build user profiles, to train AI or machine-learning models, or for any purpose unrelated to these features.
Sharing
We do not sell, rent, transfer or disclose Google user data to anyone. Calendar data is shown only to members and devices of the household, according to the visibility settings the administrator chooses. The only outside party KinFrame exchanges this data with is Google itself, through the Google Calendar API.
Human access
No one reads Google user data except household members using the app as intended. The household's administrator may look at stored data only when needed to fix a problem, for security purposes, or to comply with the law.
Other data KinFrame stores
To work as a household app, KinFrame also stores the profiles the administrator creates (names, colors, optional birth years), sign-in credentials for adult accounts (passwords are stored only as salted hashes), paired devices, chores, points and photos that family members upload. This data stays on the household's server.
Children
Child profiles are created and managed by a parent or guardian. Children do not create accounts, provide email addresses or connect Google accounts. A parent can edit or delete a child's profile at any time.
Cookies
The KinFrame app uses a single session cookie to keep you signed in. This website sets no cookies. Neither uses analytics, advertising or tracking cookies.
Security
The KinFrame app is reachable only from the household's private network over encrypted HTTPS connections. Google refresh tokens are encrypted at rest. Access to stored data is limited to the household's administrators.
Retention and deletion
- Disconnecting: an administrator can choose Calendars → Disconnect in KinFrame at any time. KinFrame then revokes its access token with Google and deletes the stored token and all copied events for that account.
- Revoking from Google: you can also remove KinFrame's access at myaccount.google.com/permissions. KinFrame then can no longer read the calendar and stops syncing. To have the copied data deleted too, disconnect in KinFrame or email us.
- Calendar copy: while connected, KinFrame keeps its copy in step with Google: events deleted in Google Calendar are removed from KinFrame at the next sync, usually within two minutes.
- Backups: encrypted backups of the household's database are kept for up to 12 months and then deleted.
- Requests: email privacy@kinframe.link to ask what data we hold about you or to have it deleted. We will respond within 30 days.
Changes
If this policy changes, we will update this page and its effective date. Material changes to how Google user data is used will require renewed consent before they take effect.
Contact
Questions about this policy: privacy@kinframe.link