TUTTI

Privacy Policy

A clear account of the information Tutti uses to connect music teachers, students, and families.

Effective 1 August 2026

At a glance: Tutti has no advertising, does not sell personal data, and does not use third-party tracking or analytics SDKs. A teacher’s optional billing ledger synchronises to Tutti’s server, but Tutti does not move money or ask for payment credentials. Account deletion is available in Settings.

A note for children and young people

Tutti helps you share music-lesson information with a teacher and, where connected, a parent or guardian. They may see your lesson notes, homework, practice progress, recordings, and sheet music. We only ask for information needed to provide those features. We do not use your information for adverts, sell it, track you across other apps, or use it to pressure you to spend more time in Tutti.

You can ask a trusted adult or contact us if you do not understand this notice, want information corrected, or want an account or content deleted. If something shared in Tutti makes you feel unsafe, use the report and block controls and tell a trusted adult. Reports are not an emergency service.

1. Who is responsible for your data

Tutti is operated by Kal Rav Agrawal (“Tutti”, “we”, “us”). Questions or privacy requests can be sent to roadie-tyke.5a@icloud.com.

2. Information we collect

Account and contact information

Name, email address, account role, instrument, internal account identifiers, and a securely hashed form of your password. A teacher may also add a student’s or guardian’s phone number or email to manage their studio.

Student account eligibility

When someone creates a student account, the date of birth they enter is sent securely to Tutti’s server once so we can determine whether self-service registration is available or an adult-managed flow is required. The server uses it only for that eligibility check during the registration request; the date of birth is not added to the account or stored in Tutti’s database afterward.

Teaching and practice content

Lesson dates and notes, homework, repertoire, milestones, practice sessions, attendance, reschedule requests, achievements, whiteboards, sheet music or images, and audio recordings that users choose to create or upload.

Connections and safety

Teacher, student, and family connections; invitation codes; and reports or blocking actions submitted to keep shared content safe.

Teacher billing ledger

If a teacher uses the billing tools, Tutti stores and synchronises the studio billing profile and ledger. This can include the billing basis, lesson rate, package size and payment terms; charges, credits or waivers, amounts, due dates, lesson links, references and notes; and recorded payments such as amount, date, method, reference and note. The records are linked to the teacher and relevant student and are stored on Tutti’s server so the teacher can use the ledger across signed-in devices.

The ledger is visible only to the teacher account that created it, not to connected students or parents. Tutti is a record-keeping tool, not a payment processor: it does not transfer money. Tutti does not ask for or need full card numbers, bank account numbers, security codes or online-banking credentials, and users should not put those details in notes or reference fields.

Service and device data

Authentication sessions, notification and Live Activity tokens, a random installation identifier used to keep those tokens attached to the correct signed-in account, and limited server request logs needed to operate and secure the service. Tutti does not collect advertising identifiers, precise location, contacts, browsing history, or cross-app tracking data.

Permissions

Microphone access is requested only when you start the tuner or make a recording. On iPhone and iPad, notification access is requested when you choose to create a reminder. You can change permissions at any time in your device settings.

3. Why we use this information

Where UK or European data-protection law applies, these uses rely on performance of the service contract, legitimate interests in operating and securing Tutti, consent where a permission or optional upload requires it, and compliance with law.

4. Who can see or receive data

Lesson, practice, and shared content is visible only to the account holder and users connected through the relevant teacher, student, or family relationship, according to their role. A teacher’s billing ledger is restricted to that teacher account. We use infrastructure providers to host the API, database, and uploaded files, and Apple services to deliver notifications and Live Activities on Apple platforms. Those providers process data only to supply their services. We may disclose information where legally required or necessary to protect users and the service.

We do not sell personal data and do not share it for behavioural advertising.

5. Retention and deletion

Choosing Settings → Delete Account removes the account and associated active database records and uploaded files. A limited record may be retained only where required for security, fraud prevention, dispute resolution, or law. You may also request deletion by email.

6. Security

Tutti uses HTTPS for network traffic, one-way password hashing, authenticated API requests, access checks between connected users, rate limiting, and restricted server access. No internet service can promise absolute security; please use a unique password and contact us if you suspect unauthorised access.

7. Children and family accounts

Under UK law, anyone under 18 is a child. The separate age of 13 is relevant when an online service relies on a child’s own consent to process personal data. Tutti does not allow people under 13 to create a self-service student account; a parent or guardian must use the adult-managed connection flow. Being 13 or older does not remove the enhanced privacy and safety protections that apply to children.

We design for the child’s best interests, use high-privacy defaults, minimise collection and sharing, avoid behavioural profiling and manipulative engagement techniques, and do not use children’s data for advertising. Teachers and guardians should add only the child information needed for music tuition. Guardians can review or request correction or deletion of child information through the connected teacher and by contacting us.

Tutti is not currently offered in Apple’s Kids Category. Tutti’s operator assesses the service under the ICO Children’s Code, UK GDPR and the Data Protection Act 2018, and assesses any applicable duties for user-to-user features under the Online Safety Act 2023.

8. Your choices and rights

You can edit profile information, remove content and connections, revoke device permissions, sign out, or delete the account in the app. Depending on where you live, you may also have rights to access, correct, erase, restrict, object to, or receive a portable copy of personal data, and to complain to your local data-protection authority.

Send requests to roadie-tyke.5a@icloud.com. We may need to verify that the request concerns your account.

9. International processing

Data may be processed in a country different from where you live. Where transfer safeguards are legally required, we use an appropriate lawful mechanism and require service providers to protect the information.

10. Changes

Material changes will be highlighted in the app or on this page before they take effect where practical. The effective date above shows the latest revision.