Privacy

Privacy Policy

Last updated: August 2026

In one line

PanicButton is a silent panic button for your circle of trust. We handle the minimum information needed for your alert to reach the people you chose. We do not sell data to third parties, we show no ads, and we never share your location with advertisers.

What we store

What data we collect.

Account

Email and password (hashed), managed by Supabase Auth. The email is used only to sign in, recover your password and link you to your groups.

Profile

Display name and, optionally, medical data (allergies, blood type, medication, emergency contacts). This data is only shown to your trusted contacts when you trigger an alert.

Only during an alert

Location

While you have an active alert, the app shares your location with your group members and your trusted contacts, updating it so they can follow your route. It starts when you press the button and stops when the alert is closed. Outside an emergency we never collect your location.

Groups and memberships

Which groups you belong to and your role in each.

Alerts and responses

Send time, category, optional message, status (active/resolved/canceled) and members' responses.

Push device token

An FCM/APNs identifier to deliver notifications.

App usage

A signal that the app was opened (date and time, version, whether it is Android, iOS or web) and six events at the steps where people get stuck: you finished the introduction, you opened the invite screen, you shared an invitation, someone opened it, creating a group or inviting failed, you added a trusted contact. Also whether you granted notification and location permission, so we know whether the button could reach anyone at all.

Location while the app is closed

During an active alert, PanicButton collects your location even when the app is closed or not in use. It serves one purpose only: so the people you chose can follow where you are for as long as the emergency lasts, even if you locked your phone or put it in your pocket.

About usage measurement

It exists for a concrete reason: of the first real accounts, more than half never had anyone on the other side, and there was no way to know why. A panic button nobody hears is useless, and until now we could not tell someone who never found the invite button from someone who invited and was not accepted.

What we do NOT do

Who data is shared with

Your alert, location and message reach only the members of the group you chose and your trusted contacts. Technical data (push token, session) is processed by Supabase (infrastructure) and Google FCM / Apple APNs (push delivery).

How long data is kept

Alerts and responses are kept while your account exists or the group remains active. If you delete your account from Profile → Danger zone, we permanently delete your profile, tokens, alerts, responses, trusted contacts, memberships and sessions.

Usage events are the exception: they are not deleted, they are unlinked. The row is left with no reference to you and becomes an anonymous number inside a total. We say so because it is a real difference: if your account goes, the count of "how many people got stuck here" does not go with it.

Your rights

Contact

Privacy questions or requests: contact@atseacode.dev