Privacy Policy
Last Updated: August 31, 2026
Auditend, Inc. ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application ("App").
Consumer health data is governed by our separate Consumer Health Data Policy and is not collected for a check-in unless you first provide the separate consent presented in the App.
1. Information We Collect
Personal Information You Provide
When you register for an account, we collect:
- Name — Your full name for identification
- Email Address — For account authentication and communications
- Password — Securely hashed and stored for account access
- Saved Report Recipients — If you choose to save a recurring report recipient, we store the name, work email, role, and optional agency you provide. Saving a recipient does not contact that person, share a report, or grant access; you authorize each report separately.
Information Collected Automatically
When you use the App, we automatically collect:
- Location Data — When you initiate a check-in, the App uses your device location momentarily to derive an approximate general area. The precise coordinate is discarded after the general area is derived; only the approximate area and reported accuracy are retained. When you later confirm you are still at the meeting (“still here”), the App checks whether you are in the same general area and stores only that yes/no confirmation, not a location.
- Device Information — Device type, operating system version, app version, and device-integrity signals used for app functionality, security, and record integrity
- Usage Data — Check-in history, meeting attendance records, and app interaction data
Limited Product Analytics
When product analytics is enabled, Auditend records a limited set of server-generated funnel events: account creation, email verification, and onboarding completion. These events use a pseudonymous identifier derived from the internal account identifier. The analytics record does not include your name, email address, raw account identifier, meeting name, attendance details, location, report contents, or selfie media.
Pseudonymous does not mean anonymous. Auditend can associate the identifier with an account using protected internal systems, so we treat these analytics records as personal information. We use them only to understand account setup and improve the service, not for advertising or tracking across other companies' apps or websites.
Photos and Media
- Selfie Video — When you check in to a meeting, the App records a short, silent selfie video for identity and attendance verification. These videos are stored securely and associated with your check-in records. Completing a meeting (the “still here” confirmation) does not record a selfie.
Biometric Data
- Device Biometrics (Face ID / Touch ID) — If you choose to enable biometric authentication, Face ID or Touch ID is processed exclusively by your device's operating system. Auditend does not collect, receive, store, access, or transmit your biometric authentication credentials.
- Selfie Evidence Video — Selfie videos captured during check-in are collected to tie the evidence record to you and protect record integrity. Auditend does not independently determine whether you satisfied a court, agency, or program requirement. Auditend does not create, store, or use facial-recognition templates, facial geometry, or biometric identifiers.
2. How We Use Your Information
We use the information we collect to:
- Create Check-In Evidence — Record participant-initiated approximate location and selfie video evidence without a venue proximity or attendance decision
- Generate Compliance Reports — Create attendance reports for courts, sponsors, or other authorized parties at your request
- Enable Viewer Access — Allow you to share your attendance records with trusted partners (attorneys, sponsors, probation officers) that you authorize
- Remember Recipients You Choose to Save — Make it easier for you to select a recurring report recipient without re-entering their contact information
- Provide App Functionality — Deliver core features including check-ins, meeting management, and notifications
- Send Communications — Email you about account activity, password resets, and important updates
- Improve Our Services — Use operational diagnostics and feedback to enhance app performance and user experience
- Measure Account Setup — Use limited pseudonymous funnel events to understand whether users complete registration and onboarding
- Ensure Security — Detect and prevent fraud, abuse, or unauthorized access
3. Information Sharing and Disclosure
We do not sell your personal information. We disclose personal information only as described in this Privacy Policy, with your authorization, or as otherwise permitted or required by applicable law.
With Your Consent
- Compliance Reports — When you generate a court compliance report, the report contains your attendance data and is shared only as you direct.
- Authorized Recipients — Attendance reports and related records are disclosed only to the individuals or organizations you specifically authorize, such as courts, attorneys, probation officers, employers, sponsors, or treatment providers.
- Saved Recipient Profiles — Saving a recipient is an address-book convenience only. It does not create an access link or authorize a current or future disclosure. Deleting a saved profile does not revoke a link you previously authorized; active links are managed separately.
Service Providers
We use third-party services (as processors acting on our behalf) to operate the App:
- Supabase — Cloud database, authentication, and file storage (U.S.-hosted)
- Vercel — Hosting for Auditend's internal Growth OS analytics receiver and dashboard
- Sentry — Crash and performance diagnostics (personal data disabled; technical errors only)
- Postmark — Transactional email (sign-in codes and report delivery)
- Gotenberg on Fly.io — Report PDF/image rendering on Auditend-controlled infrastructure
- Geoapify — Coarse-area map images shown on reports
- Google Places — Meeting-search address lookup
- Google ML Kit — On-device image processing during selfie capture — runs on your device; creates no biometric template and transmits nothing
- Apple and RevenueCat — In-app purchase and subscription processing when you make an in-app purchase
- Stripe — Web subscription payment processing when you purchase through the web; Auditend does not receive or store your full payment-card number
Service providers process personal information on Auditend's behalf for their contracted services and are restricted from using it for their own advertising. Report PDFs are rendered by Gotenberg on Auditend-controlled infrastructure hosted by Fly.io and are not sent to a separate third-party document-rendering API.
Legal Requirements
We may disclose your information if required by law, such as:
- To comply with a legal obligation or court order
- To protect and defend our rights or property
- To prevent or investigate possible wrongdoing
- To protect the personal safety of users or the public
4. Data Storage and Security
Where Your Data is Stored
Your data is stored in secure cloud infrastructure provided by Supabase, with servers located in the United States.
Security Measures
We implement appropriate technical and organizational measures to protect your data:
- Encryption in transit (HTTPS/TLS)
- Encryption at rest for stored data
- Secure password hashing
- Access controls and authentication
- Regular security assessments
Biometric Security
If you enable Face ID or Touch ID, biometric authentication is performed entirely by your device's operating system. Auditend does not collect, receive, store, or process your biometric identifiers or biometric information for authentication purposes.
5. Data Retention
- Account Information — We retain account information while your account is active and as otherwise needed for security, legal, and record-integrity purposes
- Saved Report Recipients — Retained until you remove the saved recipient or delete your account; these convenience records are not part of the signed report-integrity record
- Selfie Videos and General-Area Location — These evidence payloads become eligible for deletion under the Consumer Health Data Policy. Active legal, litigation, court, or program record-preservation obligations may delay deletion
- Attendance Records and Reports — We retain these while needed to provide the service and support reports you request
- Product Analytics — Limited pseudonymous account-setup events are retained for no more than 13 months
- Account Deletion — We remove eligible account information and sensitive evidence from our operational database and private file storage. If an already-issued report or documented obligation requires it, we may retain the minimum signed integrity record needed to preserve that record
We do not represent archived or provider-backup copies as removed before the applicable controlled backup lifecycle completes. If restored, deletion controls must be reapplied before the data returns to ordinary use.
6. Your Rights and Choices
You have the following rights regarding your data:
Access Your Data
You can view your check-in history, meeting records, and profile information within the App.
Update Your Information
You can update your name and profile information in the Profile section of the App.
Delete Your Account
You may request deletion through App settings or by contacting support@auditend.com. Deletion is subject to the limited integrity and legal-preservation exceptions described above.
Withdraw Consumer Health Data Consent
You can withdraw consent to future core attendance-evidence collection in App settings. Withdrawal blocks new check-ins unless you consent again. Withdrawal does not itself delete previously collected information or revoke an existing report-access grant; export, deletion, and report-access revocation are separate controls.
Export and Report-Access Controls
You can export your information, including saved report recipients, in App settings. You can add, update, or remove a saved recipient in the App. You can also review and revoke active report-access links separately from collection consent. Removing a saved recipient does not revoke an access link you previously authorized.
Requests and Appeals
Email support@auditend.com with "Privacy Request" in the subject line. We respond without undue delay and within 45 days. When reasonably necessary, we may extend once for up to 45 additional days and will notify you during the initial period. If we refuse to act, we explain why and how to appeal; email the same address with "Privacy Appeal" in the subject line. We decide an appeal within 45 days.
Location Permissions
You can disable location permissions in your device settings. Note that this will prevent check-in functionality.
Camera Permissions
You can disable camera permissions in your device settings. Note that this will prevent selfie verification during check-ins.
Push Notifications
You can disable push notifications in your device settings.
7. Children's Privacy
The App is not intended for children under 18 years of age. We do not knowingly collect personal information from children under 18. If you believe we have collected information from a child under 18, please contact us immediately.
8. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by:
- Posting the new Privacy Policy in the App
- Updating the "Last Updated" date at the top of this policy
- Sending you an email notification for significant changes
Your continued use of the App after changes become effective constitutes acceptance of the revised policy.
9. Contact Us
If you have questions about this Privacy Policy or our privacy practices, please contact us:
Email: support@auditend.com
Auditend
131 Continental Drive, Suite 305
Newark, DE 19713
10. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act:
- Right to Know — You can request information about what personal data we collect, use, and disclose
- Right to Correct — You can request correction of inaccurate personal information we maintain about you
- Right to Delete — You can request deletion of your personal data
- Right to Limit the Use of Sensitive Personal Information — Where applicable, you can request limitations on certain uses of sensitive personal information
- Right to Non-Discrimination — We will not discriminate against you for exercising your privacy rights
To exercise these rights, contact us at support@auditend.com.
11. International Users
If you are accessing the App from outside the United States, please be aware that your information will be transferred to, stored, and processed in the United States. By using the App, you consent to this transfer.
This Privacy Policy is effective as of August 31, 2026.