Privacy Policy
SafePathApp ("we," "our," or "us") is an emergency-preparedness app. This policy explains what information SafePathApp handles, where it goes, and the controls you have over it. We wrote it to describe what the app actually does, not what we’d like it to do.
Summary
The short version, before the detail:
Information we collect
Information you provide or generate while using SafePathApp:
The accessibility, medical, and medications fields under household details are optional. You control whether to enter them, and they are not required to use the rest of the app.
How data is stored
Where each kind of data lives:
The preferences synced through iCloud are: push notification toggle; SMS alert toggle; email alert toggle; emergency bypass toggle; quiet hours on/off and start/end times; preferred map type; auto-refresh toggle; data-usage mode; large text, high contrast, and reduce motion toggles; preferred theme; compact view mode; community alerts toggle; location sharing toggle; and anonymous reporting toggle.
SafePathApp backend services
We operate two backend services hosted on Amazon Web Services. They are designed to receive only the data each request needs:
If the backend is unreachable, the app falls back to calling the upstream third-party sources directly. If you would like records associated with your device removed, contact us using the address at the end of this policy.
Third-party services
SafePathApp communicates with the following services. For each, we send only the data the feature requires; these services are governed by their own privacy policies.
Health Guidance feature
Health Guidance sends the free-text questions you type to Google’s Gemini API to generate informational guidance. Before you use it for the first time, the app shows a multi-step consent screen. What is sent to Google is the text of your question and the conversation context for the current session, each request wrapped with prompt-injection guardrails and a system instruction. We do not attach your name, email, profile information, location, or any SafePathApp identifier; Google receives standard request metadata such as your IP address.
Conversation history is held only in memory during your active session and discarded when it ends — it is never written to your device’s database or to any server we operate. The feature is rate-limited on your device (currently 20 requests per session and 50 per day). Health Guidance is informational and is not medical advice; you can avoid it entirely, or disable it after first use in settings. In a future release we plan to route Gemini requests through our own backend rather than calling Google directly, and will update this policy when that ships.
Sign in with Apple
SafePathApp uses Sign in with Apple for account creation. Apple shares a stable user identifier, and on first sign-in also the name and email you choose to provide. Those values are stored in the iOS Keychain and used to populate your local profile; subsequent sign-ins reuse them. We do not maintain user accounts, passwords, or session tokens on any server we operate.
A Guest Mode option is available if you prefer not to sign in — it creates a local-only profile without contacting Apple’s identity service. Because the Apple identifier, name, and email live in the Keychain, they persist across reinstalls; sign out from inside the app to remove them.
Push notifications
If you enable push notifications, alerts are delivered through Apple’s Push Notification service (APNs), fanned out by our push registration backend. To make this work, the backend stores your APNs device token, your iOS vendor identifier, the locations you have chosen to monitor, and your alert preferences. Notification content is generated from upstream hazard sources and does not include personal information from your profile.
You can disable push notifications at any time in iOS Settings. Removing your device registration from our backend is part of sign-out; for a manual record removal, contact us.
Identifiers
SafePathApp uses these identifiers:
SafePathApp does not use the IDFA (advertising identifier) and does not show the App Tracking Transparency prompt.
Subscriptions and tips
SafePathApp offers an optional Plus subscription (monthly and annual) and one-time tip purchases. All transactions are processed by Apple through StoreKit and the App Store. Receipts are verified on-device using StoreKit’s native verification — there is no third-party receipt validation service in the app — and your entitlement tier is cached in the Keychain so the app recognizes your subscription offline. Apple’s handling of payment and account information is governed by Apple’s privacy policy.
Analytics, tracking, and advertising
Based on a code-level audit, SafePathApp includes no third-party analytics SDKs (such as Firebase, Mixpanel, Amplitude, or Segment), no third-party crash reporting SDKs (such as Sentry, Crashlytics, or Bugsnag), and no advertising SDKs, and it does not use the iOS App Tracking Transparency framework because it does not track you across other companies’ apps or websites. The app records local diagnostic logs through Apple’s unified logging system; those stay on your device unless you choose to share them with us for support.
Biometric authentication
You can optionally protect access to SafePathApp with Face ID, Touch ID, or your device passcode. Authentication is handled entirely by iOS through the LocalAuthentication framework. We do not see, store, or transmit your biometric data.
Data security
Your data is protected by standard iOS platform security: app sandboxing, device encryption, and the protections you enable on your device (passcode, Face ID, Touch ID). Sensitive Keychain items are stored with the kSecAttrAccessibleAfterFirstUnlockThisDeviceOnly attribute. SafePathApp generates an encryption key for the local Core Data store and keeps that key in the Keychain. Network requests use HTTPS.
Data sharing and sales
We do not sell, rent, or trade your personal information, and we do not share it with advertisers or data brokers. The only information that leaves your device is what is described in the backend services and third-party services sections above, used solely to deliver app functionality.
Your choices
You stay in control of everything you enter:
Children’s privacy
SafePathApp is a general-audience app and is not directed at children under 13, and we do not knowingly collect personal information directly from them. A parent or guardian may choose to record information about a minor as a household member to support emergency planning; that information is stored locally on the parent’s device under the same controls as other household data and is not transmitted to our backend or to third parties. If you believe a child has used the app to provide information directly to us, contact us and we will take appropriate action.
Changes to this policy
We may update this Privacy Policy as the app changes. When we do, we will revise the effective date above and make the updated policy available within the app. Continued use of SafePathApp after changes constitutes acceptance of the updated policy.
Contact us
For questions about this Privacy Policy, or to request removal of records associated with your device from our backend services, contact us at tktajik@gmail.com.
Questions about this document? Email tktajik@gmail.com.