Ranford School Privacy Policy
This policy applies specifically to the Ranford School Android application (Package: com.myzinisolutions.ranfordschool). Learn how we handle your academic data, device permissions, and security.
1. Scope & Introduction
Welcome to the Ranford School mobile application (hereinafter referred to as the "App"), developed and managed by MyZini Solutions (operating under package name com.myzinisolutions.ranfordschool).
This Privacy Policy outlines our procedures regarding the collection, utilization, disclosure, and safeguarding of information when you access the integrated school portals. We are committed to protecting the privacy of students, parents, educators, and administrators while providing a robust, automated School ERP experience.
By downloading, installing, or logging into the App, you consent to the data collection and usage practices detailed in this document.
2. Integrated Web Services & WebView Access
The Ranford School application operates as a secure container client that hosts three integrated web portals via WebViews. These integrated platforms require device permissions to execute their respective school functions:
When you interact with these web services through the App, the system prompts you to grant permissions (Camera, Location, Photos, and Notifications). These permissions are delegated directly to these secure URLs to support operational workflows such as online classes, attendance logging, homework submissions, and fee transactions.
3. Information We Collect & How We Use It
To enable critical school communications, automated check-ins, and push updates, the App and its integrated web services collect and synchronize the following details:
Student Identity & Portal Session Data
When you log in, session credentials (including Student Name, Class, Roll Number, and School Name) are retrieved from local storage to authenticate the session and display academic dashboards.
FCM Device Tokens
A unique Firebase Cloud Messaging (FCM) token is generated on app startup to facilitate targeted alert pushes from the school administration.
Server Sync: The student identity details and the FCM device token are securely transmitted via HTTPS to our centralized API endpoint at https://fatch.digitalerp.shop/save-notification-data. This mapping ensures that academic alerts and notifications are pushed strictly to the device of the corresponding student/parent.
4. Advanced Security & Process Isolation
To deliver enterprise-grade data security and protect user credentials, the Ranford School application implements strict process isolation at the operating system level:
- Isolated Portal Threads: The Student Portal (
:student), Teacher Portal (:teacher), and Principal Portal (:principal) run in completely separate and isolated OS-level processes. - WebView Sandbox Isolation: Each process is assigned a unique WebView data directory suffix. This prevents session cookies, credentials, cache logs, or HTML5 localStorage databases from colliding or leaking across portals.
- Secure HTTPS Standards: All outbound and inbound network requests utilize Transport Layer Security (TLS/SSL) encryption, preventing middleman interception.
5. Third-Party Software Development Kits (SDKs)
We integrate specific, trusted third-party SDKs to facilitate app analytics and push messaging:
These services are operated by Google LLC and are subject to the Google Privacy Policy. They do not have access to your personal files or secondary device details.
6. Data Retention & User Rights
Retention Period: We retain notification registration logs (such as the mapped device token and roll number) only as long as the user remains active in the school database or until the token is revoked.
Your Rights & Control:
- Revocation of Permissions: You can enable or disable permissions (such as Camera, Location, or Notifications) at any time through your Android device settings.
- Data Erasure Requests: If you wish to delete your synced notification tokens or request database deletion, you can contact us at
support@myzinisolutions.in. We will execute the request within 5 business days. - Opt-Out: To stop receiving notifications, you can toggle off notification permissions or log out of the App, which automatically de-registers the active device token.
Questions or Data Deletion Requests?
For questions regarding this privacy policy, data practices, or to request the deletion of your device association details, please contact our privacy compliance officer: