Last Updated: July 9, 2026
OnDuty ("we," "our," or "us") provides software utilities, localized medical protocol reference tools, and shift management features for first responders. This Privacy Policy is a legally binding document detailing exactly what data we collect, how it is isolated and processed, and how you retain total control over your information. We do not use vague legal phrasing; our operations are explicitly structured as detailed below.
In strict compliance with Apple’s App Tracking Transparency (ATT) framework and data privacy regulations, OnDuty enforces a strict policy against data brokering and user tracking.
No Cross-App Tracking: The App does not track your activities across third-party apps or websites.
No Targeted Advertising: We do not include advertising SDKs, software development kits, or tracking pixels. Your data is never compiled to build advertising profiles.
No Data Selling: We do not sell, rent, trade, or lease any user-specific data or account information to data brokers, advertising networks, or commercial analytics firms.
We only collect data that you directly input or data necessary for basic core app functionality. This data is strictly categorized below:
Data Fields Collected: First name, last name, email address, and agency affiliation.
Purpose: To authenticate your secure login session, manage your account profile, and verify authorization for specific localized agency protocols.
Storage & Isolation: This data is stored securely using industry-standard cloud encryption and is entirely isolated from any commercial tracking mechanisms.
Data Fields Collected: Shift schedules, calendar entries, duty hours, personal bookmarks, and custom notes appended to protocol documents.
Purpose: To synchronize your schedule and personal protocol annotations across your authorized iOS devices.
Scope: This data remains strictly functional. We do not read, aggregate, or run semantic analysis on your shift schedules or personal notes for any purpose other than cloud synchronization.
Data Fields Collected: Anonymized crash logs, app launch frequencies, and performance latencies.
Purpose: To monitor the technical stability of the application, debug code errors, and ensure the app remains reliable during emergency field operations.
Anonymization: This data is completely decoupled from your personal identity, account credentials, or specific device identifiers.
We do not use third-party analytics packages that covertly monitor user behavior. The only third-party infrastructure we utilize consists of core backend cloud services required to securely host the database and synchronize your data.
Contractual Protections: Any backend service provider we partner with is contractually obligated to provide identical structural data protections as outlined in this policy.
No Secondary Use: Third-party infrastructure partners are strictly prohibited from using your data for independent marketing, profiling, or machine learning training.
We maintain a strict "right to be forgotten" policy. You retain total ownership of your data, and we provide an instantaneous method to wipe it entirely.
How to Initiate: You can permanently delete your account directly inside the app by navigating to Settings > Account > Delete Account.
Data Destruction Scope: Initiating account deletion executes a cascade command across our database. Your personal profile, contact information, synchronized shift calendars, and custom protocol notes are permanently purged from our active servers within 24 hours. Backup data blocks are fully overwritten and sanitized within 30 days.
Alternative Request Method: If you cannot access the app, you may request complete account deletion by emailing us directly at [Insert Support Email Address].
The App operates strictly within the sandboxed permissions of the iOS environment. You control exactly what the app can access, and permissions can be revoked instantly via iOS Settings > OnDuty:
Push Notifications: Used exclusively to deliver critical protocol updates or system status alerts. We do not use push notifications for promotional tracking or marketing.
Local Calendar Access: Used only if you explicitly choose to export your OnDuty shift schedules into your native iOS Calendar app.
For direct privacy inquiries, to double-check the current content of your data file, or to execute manual data deletion requests, you may contact the data administrator directly at:
Email: admin@theondutyapp.com