Privacy policy
Launch version. A legal professional will check this policy before our full commercial launch.
What we collect
- Account data — name, email, city, and password (stored as a secure hash).
- Nanny profiles — the professional information a nanny chooses to publish: headline, bio, languages, experience, rate, availability, certifications, and an optional photo.
- Introduction requests & messages — the requests parents send to nannies and the conversations that follow, including the family and schedule details the parent chooses to share. Our team can read conversations for safety, moderation and dispute resolution.
- Family adverts and offers — descriptions, child-age information, schedules and nanny responses. Open adverts are visible only to their parent and currently published nannies.
- Community content and moderation — public forum posts and replies, automated moderation flags, notices and administrator actions.
- Private nanny planner — dates, times, notes and private family labels entered by a nanny. Families and other nannies cannot see this planner.
- Phone numbers — optional for parents. Nannies must give a phone number before we review their profile. We share a phone number with the other person only after a nanny accepts an introduction request.
- Reviews — after an accepted introduction, a parent can publish a rating and a comment about a nanny. The review is public and shows the parent's first name.
- Basic page statistics — page path, server time, rough device class and referring domain on every visit. With analytics consent, we also attach a random browser identifier. Supabase and Netlify necessarily receive network information such as IP addresses while delivering these requests, even though we do not put an IP address in our analytics table.
- Identity verification photos — a nanny may upload a photo of an identity document (with the BSN and document number covered) and a photo of themselves holding it, as an alternative to a video call. These are stored privately, viewed once by our reviewer, and deleted automatically the moment the review is decided; we keep only the review outcome, never a copy of the document.
- Trust, security and payments — profile-review checklists and an append-only verification history; notification delivery attempts; and, when paid plans are enabled, order, Mollie payment, entitlement, redemption, voucher and refund records.
How we use it
We use your data only to run the platform: to show published nanny profiles in the directory, to deliver introduction requests, to exchange contact details after an accepted introduction, and to email you about your account (for example to confirm your email address or to reset your password), prevent abuse, moderate the public forum, keep review and payment evidence, and support disputes. We do not sell personal data and we do not use it for third-party advertising.
What is public
Published nanny profiles are visible to signed-in members, but only their professional fields: first name, city, headline, bio, languages, experience, rate, availability, certifications and photo. Community posts and reviews are public: a review shows the parent's first name, the rating, the comment and the month it was posted. We never show last names, email addresses or phone numbers publicly.
Cookies & local storage
We use no tracking cookies and no third-party analytics. A functional token in your browser's local storage keeps you logged in. We serve our fonts from our own site, so no font provider sees your visit. There is one optional setting, and it is off unless you switch it on: it stores a random number in your browser so we can count returning visitors. That number is never linked to your name or your account. Our cookie policy explains how it works and how to change your choice at any time.
Where it lives
Core data is stored with Supabase in the configured EU region and the website and server functions are delivered by Netlify. Cloudflare provides the optional signup/login security check. When enabled, Resend delivers transactional email and Mollie processes payments. Each provider receives the information technically necessary for its service; Mollie also handles payment/compliance data under its own legal obligations.
Your rights
Under the GDPR you may request access, correction, erasure, restriction, portability or objection, and complain to the Dutch Data Protection Authority. You can edit most operational data in your dashboard. Email privacy@expatnannies.com for a request. Erasure is not absolute: records we must retain for tax, payment, fraud, legal-claim or safety purposes are restricted and pseudonymised instead of being presented in the product.
Retention
Account profiles, adverts, requests, messages, planner entries and non-required community data are removed or anonymised when an account is erased. Basic page statistics are kept for up to 13 months; completed notification delivery records for 30 days (failed delivery evidence up to 180 days). Payment/order records are provisionally retained for seven years, and verification/safety evidence only for the applicable legal-claim period. These legal periods are reviewed before paid launch and may be extended when a dispute or legal hold requires it.