Skip to main content

Security and Privacy

For directors evaluating Bloomily: how the platform protects children's data — encryption, access controls, COPPA compliance, data ownership, and U.S. hosting.

Bloomily uses organization access, staff roles and permissions to control access to family, child and operational records. The information a person can view or change depends on their account, organization, assigned access and the feature they are using.

Manage access carefully

Give each person their own account and appropriate access. Review staff roles, room permissions, guardian relationships and authorized pickup records separately. Remove organization access when it is no longer needed.

Protect shared devices and family information

Use the intended staff account on a shared device, follow the device’s locking and sign-in controls, and keep passwords and PINs private. Review media audiences and family-facing content before sharing.

Security, hosting and compliance questions

For current details about hosting regions, encryption, backups, retention, contractual safeguards or a specific compliance requirement, contact [email protected]. Ask for the documentation relevant to your organization and service. Feature availability or a general help article should not be treated as a security certification or a guarantee of compliance.

Did this answer your question?