Custody-Safe Consent Ledger — consent that handles custody, not just enrollment
The Custody-Safe Consent Ledger records every pickup authorisation, photo consent, media opt-out, and custody flag at the guardian level — not as a single enrollment signature that is supposed to cover every situation that comes up over the next two years. Each record is explicit, time-stamped, scoped to a specific use case, and revocable at any time. A custody change that restricts a parent’s pickup rights takes effect the moment a director records it, with the prior authorisation preserved in the audit trail. A restraining order flag locks a guardian out of pickup immediately — enforced at the check-in engine, not by a note on a clipboard. Multi-child classroom photos are governed by the group-photo conflict resolver, which is fail-closed: when one photo depicts children with differing photo-consent states, the photo is held rather than routed — a single unconsented child in a group activity does prevent that photo from going out as-is. The resolver flags the conflict and produces a remediation plan (blur or crop the unconsented child, or split the image into a consented-only view) before the photo can be shared, and a child with no active photo consent is never published in a group image by default. Consent can be set with an expiration window, so a temporary foster placement or a limited photo authorisation expires automatically rather than persisting indefinitely. The consent audit export produces a full history for every child — every record, every revocation, every update — in a format an inspector or a family-court attorney can read. The Custody-Safe Consent Ledger is built and production-ready.
Custody-Safe Consent Ledger built · production-ready
QR/PIN check-in with custody enforcement and real-time ratio monitoring
The check-in engine manages arrivals and departures through QR code or PIN, matched against each child’s authorized-pickup list from the Custody-Safe Consent Ledger. A guardian not on the list cannot check out a child — enforced at the engine, not by a reminder to the door staff. A custody restriction or restraining order flag surfaces immediately at the check-in screen, with a director alert before a non-authorised adult reaches the classroom. Staff clock in and out against rooms, and the ratio monitor tracks the licensed child-to-staff ratio per classroom in real time — surfacing a warning before a ratio violation occurs rather than logging it after the fact. Late-pickup tracking, classroom transfers, and every pickup log land in the same audit trail as the consent records, so a licensing inspector sees one coherent record across check-in, custody, and ratio. The check-in and ratio monitoring engine is built and production-ready on the BAS/after-school substrate.
Check-in engine built · production-ready
Consent-safe photo and video sharing — approval queues, expiring links, no public galleries
The media engine routes photos and videos through the Custody-Safe Consent Ledger before any image reaches any family. A child without an active photo consent record does not appear in any share, any gallery view, or any daily-report composition — and the teacher does not need to manually check a list; the engine blocks the route. A director approval queue holds every proposed share before it goes to families, so a photo taken during a messy art project does not route automatically to thirty parent inboxes. Shared links are time-limited by default — a grandparent link does not persist in someone’s email forever. There are no public galleries, no searchable child profiles, and no social-feed-style photo streams. The gallery substrate is built and production-ready, with consent-gated private delivery enforced at the data layer. The director approval queue — the UI surface that holds shares for review before routing — is in active development on top of the built substrate. The parent storefront for ordering prints and albums is built; the checkout that accepts payment is honest-off today.
Gallery substrate built · approval queue in development · checkout honest-off
SC licensing compliance cockpit — immunisations, incidents, staff records, inspection binder
The compliance cockpit covers the records a licensing inspector requests on arrival: immunisation records per child with expiration alerts before they lapse, incident reports written at the time of the event and timestamped and locked after director sign-off, medication-administration logs requiring a prior written authorisation before a dose is recorded, staff-certification dates with renewal alerts, and background-check dates per staff member. The South Carolina childcare-licensing checklist is the initial compliance surface — a director can see which required record types have gaps before an inspector arrives rather than discovering them during the visit. The inspection binder export assembles the required licensing records into a portable, printable package at a director’s request; additional state configurations follow SC. The underlying records model for every compliance record type is built. The inspection binder export UI and any state-specific checklist beyond SC are in active development. We provide early-access partners with a free SC Daycare Inspection Binder Checklist as a paper reference while the export surface is in build.
Records model built · SC compliance checklist available · binder export in development
Billing, subsidy tracking, and CACFP meal-count — early access
The billing engine handles tuition plans, deposit schedules, sibling discounts, subsidy receivables (state childcare assistance, voucher-funded slots), late fees, receipts, and annual tax statements. A director configures a tuition plan at enrollment; the engine applies it on the billing cycle without manual re-entry. Subsidy receivables are tracked separately from family balances so the director sees both at a glance without reconciling two spreadsheets. The billing engine is built and production-ready on the tuition.software substrate. The charge rail that moves money is honest-off — present in the platform, not enabled for live transactions today. CACFP meal-count tracking and claim-export are in early access: the records model is built for per-meal, per-child, per-day logging, and the export format that maps to the CACFP monthly claim worksheet is in active development. We do not claim automated CACFP filing or live submission — the tool produces a meal-count export a director carries into the claim process. We provide early-access partners with a free Photo Consent Policy Template as a starting document for their family handbook.
Billing engine built · charge rail honest-off · CACFP export in development