Last updated: July 2026
This policy explains what information ShiftKin ("we," "us") collects when your organization uses the ShiftKin scheduling app, and how we handle it.
Please don't enter residents' protected health information (medical records, diagnoses, treatment details) into ShiftKin — it's built for staff scheduling, not resident health records, and isn't designed to store that category of information.
Solely to provide the scheduling service to your organization: storing your schedule, matching open shifts to qualified staff, sending certification expiry flags, and generating the reports and exports you request (like the hours report or the inspection CSV export). We do not sell your data or your staff's data to third parties, and we do not use it for advertising.
Data you enter is visible only within your own organization's account — staff and admins at other organizations using ShiftKin cannot see it. Within your organization, staff can see the shared schedule, messages, and open shifts; admins additionally see staff contact info, certification records, and time-off requests.
Data is stored in a hosted Postgres database. Passwords are never stored in plain text — they're hashed before being saved, so even we can't read them back.
We keep your data for as long as your organization's account is active. If you'd like your organization's data deleted, contact us and we'll remove it.
Admins can edit or remove staff records, certifications, and shifts directly in the app at any time. To request a full export or deletion of your organization's data, contact us using the details below.
ShiftKin is a business tool for employers and their staff. It isn't directed at children, and we don't knowingly collect information from anyone under 18.
If this policy changes in a meaningful way, we'll update the date at the top of this page.
Questions about this policy or your data: hello@shiftkin.com