Privacy Policy

Your privacy and data security are fundamental to our mission of keeping you safe.

Last updated: December 2024 β€’ Effective Date: December 1, 2024

Privacy at a Glance

Zero Location Tracking

On-device routing means we never see your location, routes, or travel patterns. Alerts are proximity-based on downloaded maps, not GPS tracking.

Never Sold, Never Shared

Your data is never sold to advertisers or data brokers. End-to-end encryption and industry-standard security practices.

You're in Control

Access, correct, export, or delete your data anytime. No questions asked, no hoops to jump through.

GDPR & CCPA Compliant

Full compliance with EU and California privacy laws. Privacy by design, not an afterthought.

1. Information We Collect

πŸ”’ Our Privacy-First Commitment

We believe in data minimization. We only collect what is absolutely necessary to provide disaster monitoring services and process transactions. We do not track your location, movements, or browsing behavior beyond what you explicitly provide.

Account Information (Required)

When you create an account, we collect only the essentials:

  • β€’ Email address - for login, account recovery, and email alerts (if you choose email notification method)
  • β€’ Password (encrypted with bcrypt) - we never store plain text passwords (not required for Apple/Google sign-in)
  • β€’ Phone number (optional) - required only if you choose SMS alerts or need SMS-based trial verification. Stored for the duration of your subscription for alert delivery and yearly renewal verification.
  • β€’ Subscription plan type - to determine your feature access and billing
  • β€’ Device identifiers - when signing in via iOS App Store or Google Play, we receive a unique identifier from Apple/Google to authenticate your account and manage subscriptions. We do not receive your Apple ID or Google account password.

App Store Sign-In: When you sign up through the iOS App Store (Sign in with Apple) or Google Play (Sign in with Google), we receive: your email address (or Apple's private relay email), unique user identifier, and subscription status. We do not receive your full name, contacts, or any other device data unless you explicitly grant permission.

Alert Notification Preferences (You Choose)

You control how you receive disaster alerts. Alerts are proximity-based on the geographic areas (maps) you've downloaded - we don't monitor or track your location. We store only what's necessary for your chosen notification methods:

  • β€’ In-App Notifications - delivered through the mobile app (requires device push token)
  • β€’ Email Alerts - sent to your registered email address (if you enable email notifications)
  • β€’ SMS Alerts - sent to your phone number (only if you provide a phone number AND enable SMS notifications)
  • β€’ Alert frequency preferences - immediate, daily digest, or weekly summary
  • β€’ Severity filters - which disaster types and severity levels trigger alerts

Privacy advantage: Alerts are triggered based on disasters occurring in your downloaded map regions, not by tracking where you are. If a wildfire starts in "Los Angeles" and you have that map downloaded, you get an alert - regardless of whether you're currently in LA, at work, or on vacation.

Your choice: You can choose any combination: app-only, email-only, SMS-only, or all three. Change your preferences anytime in account settings.

Map Download Areas & Emergency Routing

We store only the geographic areas (maps) you choose to download. These downloaded map regions determine which disaster alerts you receive (proximity-based, not location-based). Key privacy features:

  • β€’ Downloaded map regions - general area coordinates (e.g., "San Francisco Bay Area")
  • β€’ Alerts for downloaded areas - you receive disaster alerts for any map region you've downloaded, regardless of where you physically are
  • β€’ On-device routing - emergency route calculation happens entirely on your device, not on our servers (unlike Google Maps or Waze)
  • β€’ No GPS tracking - we never receive or store your real-time location or movements
  • β€’ No location history - we don't know where you've been, where you are now, or where you're going
  • β€’ No travel patterns - we don't build profiles of your commute, frequently visited places, or travel habits

Example: If you download a map of "Los Angeles," we store "Los Angeles area downloaded" β€” not your home address, not your GPS coordinates, just the general region. You'll receive LA disaster alerts whether you're at home, at work, or traveling abroad.

Routing privacy: When you request emergency evacuation routes, all route calculations happen on your phone/tablet using the downloaded map data. Your start point, destination, and route are never sent to our servers. This means we can't provide real-time traffic data (beyond official road closure notices from authorities), but it also means your movements remain completely private.

Map Coverage Metadata (Privacy-Preserving Feature)

πŸ—ΊοΈ Family Map Recommendations

To help families coordinate offline map downloads and improve disaster preparedness, we collect privacy-preserving metadata about which maps you've downloaded and approximately how many pins/destinations you have in each region.

This is an extension of existing functionality: We already track which maps you've downloaded for delivering proximity-based disaster alerts. The new feature adds aggregate counts (e.g., "15 pins in California map") to enable smart family recommendations without compromising location privacy.

βœ… What We Collect (Safe)
  • β€’ Map tile names (e.g., "California - Northern Coast")
  • β€’ Pin count per map (just a number, e.g., "15 pins")
  • β€’ Destination count per map (e.g., "3 destinations")
  • β€’ Download timestamps

Example: "User has 15 pins in California map" - this reveals nothing about where those pins actually are within the 300,000+ square kilometer region.

❌ What We DON'T Collect (Private)
  • ❌ Actual pin coordinates (lat/long)
  • ❌ Addresses or place names
  • ❌ Routes or waypoints
  • ❌ Any specific location data

Zero-knowledge architecture: Map tiles are HUGE geographic areas. Knowing you use "California" reveals nothing about your home, work, or travel patterns.

πŸ”’ How This Preserves Privacy

Unlike typical family tracking apps that monitor your exact location 24/7, our system only knows:

  • β€’ They know: "3 family members have downloaded the Texas map"
  • β€’ They DON'T know: Where anyone actually is, where their pins are, or where they're going

Privacy by design: Server aggregates map names for recommendations but can never reverse-engineer your actual locations because coordinates are never sent.

Purpose: This metadata enables the "Family Map Suggestions" feature, which recommends useful maps based on what your family members have downloaded, helping everyone stay prepared without revealing anyone's actual locations or travel plans.

Transaction Data (Required by Law)

For paid subscriptions, we must retain:

  • β€’ Payment records - amount, date, payment method (last 4 digits only)
  • β€’ Transaction history - required for tax compliance (7 years)
  • β€’ Billing information - processed securely by Stripe (we don't store full card numbers)

Minimal Technical Data (Essential Operations)

We collect minimal technical data to keep the service running:

  • β€’ Error logs - to fix bugs and crashes (anonymized)
  • β€’ Session data - to keep you logged in securely
  • β€’ Device type - iOS or Android (for app compatibility)
  • β€’ App version - to ensure you have security updates

Support Communications (When You Contact Us)

When you contact support, we store:

  • β€’ Your messages - to provide assistance and resolve issues
  • β€’ Support ticket history - to track resolutions
  • β€’ Deleted after resolution - unless you request we keep them for reference

❌ What We DON'T Collect

  • β€’ ❌ Real-time GPS location or location history - your current location is never sent to our servers
  • β€’ ❌ Emergency routes or navigation queries - all routing happens on your device, not our servers (unlike Google Maps/Waze)
  • β€’ ❌ Travel patterns or commute data - we don't know where you go, when, or how often
  • β€’ ❌ Start/destination points - when you calculate evacuation routes, your start and end points stay on your device
  • β€’ ❌ Real-time traffic data - we can't collect this because we don't track your location or speed
  • β€’ ❌ Browsing behavior or activity tracking across other websites
  • β€’ ❌ Third-party advertising cookies or trackers
  • β€’ ❌ Social media profile data (unless you choose to link accounts)
  • β€’ ❌ Contacts, photos, or other device data
  • β€’ ❌ Biometric data
  • β€’ ❌ Health information

Privacy tradeoff: Because we use on-device routing instead of server-side routing, we cannot provide real-time traffic congestion data. However, we do provide official road closure notices from authorities, and your privacy remains intact - your movements are never tracked or analyzed.

2. How We Use Your Information

We use your information only for the specific purposes you provide it. We do not repurpose your data for marketing, profiling, or any use beyond disaster monitoring services.

Essential Service Delivery (Legitimate Interest & Contract)

  • β€’ Send proximity-based disaster alerts - via your chosen notification methods (in-app, email, and/or SMS) when disasters occur in your downloaded map regions, based on your severity preferences. No location tracking required.
  • β€’ Provide offline maps - deliver map tiles for the geographic areas you selected for download, enabling on-device navigation and routing
  • β€’ Deliver road closure data - send official road closure notices from authorities to update your offline maps, without knowing your location or route
  • β€’ Process payments - handle subscription billing through Stripe and maintain transaction records for tax compliance
  • β€’ Authenticate your account - verify login via email/password or Apple/Google sign-in, maintain secure sessions
  • β€’ Verify subscriptions - use phone number for SMS-based verification during trial signup or yearly renewal
  • β€’ Sync across devices - sync your downloaded map regions and alert preferences across multiple devices (iOS and/or Android) using the same account

Security & Stability (Legitimate Interest)

  • β€’ Fix bugs and crashes - error logs help us identify and resolve technical issues
  • β€’ Prevent fraud and abuse - detect suspicious activity and protect accounts
  • β€’ Ensure system uptime - monitor server performance with infrastructure SLA targets
  • β€’ Security updates - notify you of critical security patches

Customer Support (Your Request)

  • β€’ Respond to inquiries - answer your questions and resolve issues
  • β€’ Troubleshoot problems - help debug technical issues you report
  • β€’ Process privacy requests - fulfill your data access, export, or deletion requests

Optional Communications (Consent-Based)

  • β€’ Critical service updates - outages, security alerts, terms changes (essential, cannot opt-out)
  • β€’ Feature announcements - new capabilities, improvements (opt-out available)
  • β€’ Affiliate product recommendations - disaster preparedness gear, emergency supplies (future, opt-in only)

You can opt out of non-critical emails anytime in your account settings or via unsubscribe links.

What We DON'T Do With Your Data

  • β€’ ❌ We do not sell your personal data to anyone, ever
  • β€’ ❌ We do not share data with advertisers or data brokers
  • β€’ ❌ We do not use your data for behavioral profiling or targeting
  • β€’ ❌ We do not track you across other websites or apps
  • β€’ ❌ We do not create marketing profiles or audience segments

3. Data Sharing and Disclosure

❌ We NEVER sell your personal data to third parties.

Your personal information is not a product. We do not sell, rent, or trade your data to advertisers, data brokers, or marketing companies.

Limited Sharing for Service Delivery:

We share minimal data with these trusted service providers only to deliver our service. They cannot use your data for their own purposes.

Essential Service Providers
  • Stripe (Payment Processing)
    Receives: Payment method, billing amount, subscription status
    Purpose: Process subscription payments securely
    Privacy Policy: stripe.com/privacy
  • Apple App Store / Google Play Store
    Receives: Email, unique user identifier, subscription status
    Purpose: Authenticate sign-ins and manage in-app subscriptions
    Privacy: Apple Privacy | Google Privacy
  • SMS Provider (Twilio or AWS SNS)
    Receives: Phone number, alert message content
    Purpose: Deliver SMS disaster alerts (only if you enable SMS notifications)
    Note: SMS messages are not encrypted in transit (standard SMS limitation)
  • Email Service Provider
    Receives: Email address, alert message content
    Purpose: Deliver email disaster alerts and service notifications
    Note: Emails are encrypted in transit (TLS)
  • Cloud Hosting (DigitalOcean)
    Stores: Your account data and map downloads on secure servers
    Purpose: Host the application and database
    Location: United States data centers

Limited Situations:

  • Emergency Services: In rare cases of immediate life-threatening emergencies, we may share monitored location areas (not GPS coordinates) with emergency response services if legally required or you explicitly request assistance.
  • Legal Requirements: We may disclose information when required by valid legal process, such as court orders or government requests, but only the minimum required by law. We will notify you unless legally prohibited.
  • Business Transfers: If Keryx Maps is acquired or merged, your data may be transferred to the new entity. You will be notified and given the option to delete your account before any transfer.

4. Data Security

πŸ” Encryption

All data is encrypted in transit (TLS 1.3) and at rest (AES-256). Your password is hashed using industry-standard bcrypt with high-cost factors.

🏒 Infrastructure

We use enterprise-grade cloud infrastructure with redundant backups, access controls, and continuous monitoring.

πŸ‘₯ Access Control

Employee access to user data is strictly limited, logged, and granted only on a need-to-know basis for support and maintenance.

πŸ” Regular Audits

We conduct regular security audits, penetration testing, and vulnerability assessments with third-party security firms.

5. Your Rights and Controls

πŸ“‹ Exercise Your Privacy Rights

Under GDPR, CCPA, and other privacy laws, you have the right to access, correct, export, or delete your personal data. Use our dedicated privacy request page to exercise these rights.

Submit Privacy Request

Right to Access

You can view all your personal data through your account dashboard. For additional details, contact our support team.

Right to Correction

Update your account information, email address, and monitoring locations anytime through your account settings.

Right to Portability

Export your data in machine-readable formats (JSON, CSV) through your account settings or by contacting support.

Right to Deletion

Delete your account and all associated data anytime. We'll remove your personal information within 30 days, keeping only anonymized data for service improvement.

6. Data Retention

Specific Retention Periods

Active Accounts

Indefinite - data retained while account is active

Deleted Accounts

30 days - personal data removed within 30 days after deletion request

Event and Alert Data

Plan-dependent: Demo (7 days), Basic (30 days), Pro/Family (2 years)

Database Backups

90 days - automated backups retained for disaster recovery

System and Audit Logs

1 year - security and debugging logs retained for system integrity

Transaction and Payment Records

7 years - retained for tax compliance and financial audit requirements

Legal Compliance Data

As required by law - may be retained longer for legal obligations, in anonymized form when possible

7. International Data Transfers

Keryx Maps is operated from the United States, and your data is stored on servers located in the United States. If you are accessing our service from outside the United States (including the European Union), your data will be transferred internationally to our US servers.

We ensure appropriate safeguards for international transfers:

  • β€’ EU-US Data Privacy Framework compliance for European users
  • β€’ Standard Contractual Clauses (SCCs) with all data processors
  • β€’ Regular adequacy assessments of international data transfer arrangements
  • β€’ All data encrypted in transit and at rest regardless of location

8. Cookies and Tracking

We use minimal cookies and tracking technologies:

Essential Cookies

Required for login, session management, and core functionality. These cannot be disabled.

Analytics Cookies

Help us understand how users interact with our platform. These are anonymized and can be opted out.

Preference Cookies

Remember your settings like theme preferences and dashboard layout.

9. Children's Privacy

Our service is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, please contact us immediately and we will delete such information.

10. California Residents - Your Privacy Rights

If you are a California resident, the California Consumer Privacy Act (CCPA) provides you with specific rights regarding your personal information:

Your CCPA Rights

Right to Know

You have the right to request disclosure of the categories and specific pieces of personal information we have collected about you in the past 12 months.

Right to Delete

You have the right to request deletion of your personal information, subject to certain exceptions (e.g., completing transactions, fraud prevention, legal compliance).

Right to Opt-Out of Sale

We do not sell your personal information. We have never sold personal information and do not have plans to do so in the future.

Right to Non-Discrimination

You have the right to not receive discriminatory treatment for exercising your CCPA rights. We will not deny service, charge different prices, or provide different quality of service for exercising your privacy rights.

How to Exercise Your Rights

California residents can exercise these rights by:

  • β€’ Visiting our dedicated Privacy Request Page
  • β€’ Emailing us at privacy@keryxmaps.com
  • β€’ We will respond to verified requests within 45 days as required by law
  • β€’ We may request additional information to verify your identity before fulfilling requests

Categories of Personal Information We Collect

For California residents, we collect the following categories of personal information:

  • β€’ Identifiers: Email address, account username, IP address
  • β€’ Commercial Information: Subscription plan, payment history
  • β€’ Geolocation Data: Only the locations you explicitly provide for monitoring
  • β€’ Internet Activity: Usage analytics, feature interactions (anonymized)
  • β€’ Inferences: Preferences derived from your account settings and usage patterns

11. European Union Residents - Your Privacy Rights (GDPR)

If you are located in the European Union (EU) or European Economic Area (EEA), the General Data Protection Regulation (GDPR) provides you with comprehensive rights regarding your personal data:

Your GDPR Rights

Right of Access (Art. 15)

You have the right to obtain confirmation of whether we process your personal data and, if so, to access that data and receive information about how it is processed.

Right to Rectification (Art. 16)

You have the right to have inaccurate personal data corrected and to have incomplete data completed.

Right to Erasure / "Right to be Forgotten" (Art. 17)

You have the right to request deletion of your personal data under certain circumstances, such as when the data is no longer necessary or you withdraw consent.

Right to Restriction of Processing (Art. 18)

You have the right to restrict processing of your personal data in certain situations, such as when you contest the accuracy of the data or object to processing.

Right to Data Portability (Art. 20)

You have the right to receive your personal data in a structured, commonly used, and machine-readable format (JSON, CSV) and to transmit it to another service provider.

Right to Object (Art. 21)

You have the right to object to processing of your personal data based on legitimate interests, direct marketing, or processing for scientific/historical research purposes.

Rights Related to Automated Decision-Making (Art. 22)

You have the right not to be subject to decisions based solely on automated processing that produce legal or similarly significant effects. We do not use automated decision-making for critical functions.

Right to Withdraw Consent

Where we process your data based on consent, you have the right to withdraw that consent at any time, without affecting the lawfulness of processing based on consent before withdrawal.

Legal Basis for Processing (Art. 6 GDPR)

We process your personal data based on the following legal grounds:

  • β€’ Contract Performance: Processing necessary to provide our disaster monitoring service
  • β€’ Consent: For optional features like analytics and marketing communications
  • β€’ Legitimate Interest: For service improvement, security, and fraud prevention
  • β€’ Legal Obligation: For compliance with tax, accounting, and legal requirements

How to Exercise Your Rights

EU/EEA residents can exercise these rights by:

  • β€’ Visiting our dedicated Privacy Request Page
  • β€’ Emailing us at privacy@keryxmaps.com
  • β€’ We will respond to verified requests within 30 days as required by GDPR
  • β€’ No fee will be charged unless requests are manifestly unfounded or excessive
  • β€’ We may request additional information to verify your identity

Right to Lodge a Complaint

If you believe we have not handled your personal data in accordance with GDPR, you have the right to lodge a complaint with your local data protection authority (supervisory authority) in the EU member state where you reside, work, or where the alleged infringement occurred.

Find your local authority: EDPB Member List

Data Protection Officer (DPO)

While not required for our current scale of operations, we have designated a privacy contact for GDPR matters:

Privacy Contact: privacy@keryxmaps.com
Subject Line: "GDPR - [Your Request Type]"

12. Updates to This Policy

We may update this Privacy Policy to reflect changes in our practices, technology, legal requirements, or other factors. We will notify you of material changes by:

  • β€’ Email notification to all registered users
  • β€’ In-app notifications when you next log in
  • β€’ Prominent notice on our website

13. Contact Us

If you have questions about this Privacy Policy or our data practices, please contact us:

Email: privacy@keryxmaps.com

Subject Line: Privacy Policy Inquiry

Response Time: Within 72 hours