Skip to content

Privacy Policy ‐ Concourser on iOS

Sam (matcha) edited this page Jul 18, 2026 · 2 revisions

Last updated: 18 July 2026

This policy describes the current data processing practices of the Concourser iOS app and the platform it connects to. It applies to the Concourser app for iPhone and iPad and to the backend services that support it.

Concourser is an institutional tool used by educational institutions to run daily attendance and a prepaid meal-allowance program. Accounts are created and managed by the institution that provides Concourser to you; there is no public sign-up. The single app serves three roles (Student, Teacher, and Store/POS staff), chosen at login.

  • Your institution (the school or academy that provides your account) decides which data is collected and why. It is the data controller.
  • Rikoukei Labs FZ-LLC builds and operates the Concourser app and platform on the institution's behalf. It acts as a service provider / data processor.
  • Questions, requests, or complaints: contact@rikoukeilabs.com.

The short version

  • We use only the data the app needs to do its job: your name, email, phone, role, program/class, meal allowance and purchases, and attendance records.
  • As part of its features, the app does not intentionally collect your device location, contacts, photos, or health data, does not use advertising identifiers, and includes no third-party analytics or advertising.
  • Camera access is used only to read a QR code on your device. No photo or video is stored or transmitted.
  • The QR codes contain only temporary identifiers that expire after a short period and cannot be reused.
  • We do not sell your personal information and do not share it for advertising.
  • Your password is handled by a dedicated authentication provider and is not stored by the app or its database in readable form.

Information we collect

Most of this comes from the institution or from your use of the app for its intended purpose. We practice data minimization: we do not ask for government IDs, dates of birth, gender, home addresses, photographs, or biometrics.

Category What it includes Why
Account identity Full name, email address, role Sign-in and identifying you to authorized staff
Contact Phone number Institutional contact; a student record requires one
Enrollment Program and class (students); assigned programs (teachers); storefront/branch (store staff) Routing attendance and allowances correctly
Meal allowance and purchases Daily allowance, remaining balance, amount spent, and a history of meal transactions (amount, time, storefront/program) Running the prepaid meal program and showing your balance and history
Attendance Which sessions you attended, whether you were late, and when you were scanned in The attendance function and institutional records
Sign-in and security records Last sign-in time and an internal log of significant changes Account security and integrity

Automatically collected technical data. As with any internet service, the infrastructure that runs Concourser (our hosting, database, and authentication providers) may automatically record limited technical information such as IP addresses, timestamps, and request metadata in server logs. This is used for security, debugging, abuse prevention, and reliability, not to build a marketing profile of you.

About the meal balance. The balance is an institution-funded allowance, not a bank account or a card. Concourser records it as an internal ledger: the institution grants an amount and each purchase debits it. The app does not collect or process credit or debit card numbers, bank details, or other external payment information, so payment-card security standards (such as PCI DSS) are outside its scope.

What Concourser does not intentionally collect

As part of its features, the app does not intentionally collect or use:

  • Device location or GPS. The "location" on a meal receipt is the storefront's name, set by the system, not your device's position.
  • Camera images. The camera decodes a QR code on your device and only the resulting code is sent; no image leaves your device.
  • Contacts, photo library, microphone, or health/fitness data.
  • Advertising identifiers, or cross-app or cross-website tracking.
  • Device push tokens. The app does not currently use push notifications.
  • Third-party analytics or telemetry SDKs.

If we add a feature in future that changes this, we will update this policy first.


How we use your information

We use the information above to:

  • Authenticate you and keep your session secure.
  • Show your meal balance and record purchases against your allowance.
  • Record and display attendance, including late marks.
  • Provide role-appropriate views (for example, a teacher sees their class roster; a store staff member sees a customer's name, program, and balance to process a charge).
  • Produce the institution's operational records and reports.
  • Protect the service through rate-limiting, abuse prevention, and the integrity log.

We do not use your information for advertising, marketing profiles, or automated decisions that produce legal or similarly significant effects about you.


QR codes and the camera

Concourser uses QR codes for contactless attendance and meal checkout.

  • The codes your app displays contain only temporary identifiers that expire after a short period and cannot be reused; they include no name, role, balance, or other personal information.
  • When you scan a code (teacher and store roles), the camera reads it on your device and only the resulting code is sent to the server. No photo or video is captured, stored, or transmitted.

iOS asks your permission before the camera is used, and you can change it at any time in Settings > Concourser.


Authentication

Your sign-in credentials are handled by our authentication provider (Supabase Auth), which stores them in salted, hashed form. The Concourser app and its own database do not have access to your password. New accounts are issued a temporary password that must be changed at first sign-in.


How we share your information

We do not sell your personal information and do not share it for advertising.

Your information is accessible to the institution's authorized staff, strictly by role and need (for example, teachers for their own classes, store staff to process a charge, and administrators who manage the program), and to the infrastructure providers that operate the service under contract and process data only on our instructions:

Provider What it processes Location
Supabase Authentication (your hashed credentials) and database storage (account, enrollment, allowance, attendance, and transaction data) Cloud-hosted region
Render Application hosting for the backend API (handles requests in transit) Singapore

Concourser does not send marketing email; any account or authentication email is handled by the authentication provider above. We may also disclose information if required by law, or to protect the rights, safety, and security of users, the institution, or the public.


How we protect your information

Concourser applies security controls appropriate to the sensitivity of the data it handles, including:

  • Encryption of data in transit (HTTPS/TLS), with iOS App Transport Security enforced in the app.
  • Credentials stored by the authentication provider in salted, hashed form (see "Authentication").
  • Session tokens kept in the iOS Keychain on your device and cleared when you sign out.
  • Row-Level Security in the database and role-based access controls, so people and services can reach only the data their role requires.
  • Short-lived QR tokens that carry no personal information.
  • An internal log of significant changes, and rate limiting on sensitive requests.
  • Data minimization: the app requests no device permission other than the camera, and caches only your latest meal balance locally, which is erased when you sign out.

No system can be guaranteed perfectly secure, but these measures are designed to keep risk low and contained.


Privacy by design

Concourser is built using privacy-by-design principles informed by widely adopted data protection frameworks, including the GDPR and related international privacy standards. Because Concourser is deployed by institutions that act as the data controller, the specific legal obligations that apply depend on the institution and its jurisdiction, and this policy is designed to help institutions meet those obligations rather than to assert compliance on their behalf.


How long we keep your information

  • Attendance and transaction records are retained in line with the institution's academic and financial record-keeping requirements, which the institution determines.
  • Account and profile data is kept while your account is active. After an approved deletion request, personal profile data is removed within 30 days unless a longer period is required by law or by the institution's record obligations.
  • Security and audit logs are retained for a limited period (ordinarily up to 12 months) and then purged.

Deactivated accounts may be purged by an administrator.


Your rights and choices

Depending on where you live, you may have some or all of the following rights. Because your institution is the data controller, some requests (especially about institutional records) are fulfilled by, or together with, the institution, and we will help you reach the right party.

  • Access. You can view your profile in the app; you may request a copy of the personal data held about you.
  • Correction. Students can update limited details, and teachers and store staff can update their name and phone. To correct anything you cannot edit, contact your program administrator or support.
  • Deletion. Accounts are provisioned and managed by the institution, so deletion is carried out by the institution. The app includes a Delete Account option (Profile > Delete Account) that explains this and points you to your program administrator; you may also email us and we will route your request.
  • Restriction and objection. You may ask us to restrict or object to certain processing of your personal data.
  • Complaint. You may lodge a complaint with your local data protection authority.
  • Contact. To exercise any right, email contact@rikoukeilabs.com or contact your program administrator.

You can also grant or revoke the app's camera access at any time in Settings > Concourser.


Children and students

Concourser is an institutional education tool. Accounts, including those of any students who are minors, are created and managed by the institution, not by the individuals themselves. Where a program includes minors, the institution is responsible for providing notice to, and obtaining any required consent from, parents or guardians in accordance with applicable law and its own policies. We do not knowingly market Concourser directly to children, and the app collects only the limited information described here. If you believe a child's information has been provided without appropriate authorization, contact us and we will work with the institution to address it.


International data transfers

The platform's infrastructure providers host data in cloud regions that may be outside your country (for example, application hosting in Singapore). Where information is transferred across borders, we rely on appropriate contractual safeguards (such as data processing agreements or standard contractual clauses) where required by applicable law.


Changes to this policy

We may update this policy to reflect changes to the app or to legal requirements. When we do, we will revise the "Last updated" date above and, for material changes, make the updated policy available in the app and through the same link where you found it.


Contact us

  • Operator / data processor: Rikoukei Labs FZ-LLC
  • Email: contact@rikoukeilabs.com
  • Data controller: the institution that provides your account (contact your program administrator)