Privacy Policy

Last Updated: August 31, 2026

Auditend, Inc. ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application ("App").

Consumer health data is governed by our separate Consumer Health Data Policy and is not collected for a check-in unless you first provide the separate consent presented in the App.

Information that reveals your participation in recovery is consumer health data and is governed by our separate Consumer Health Data Policy, which controls where the two policies differ.

1. Information We Collect

Personal Information You Provide

When you register for an account, we collect:

  • Name — Your full name for identification
  • Email Address — For account authentication and communications
  • Password — Securely hashed and stored for account access
  • Saved Report Recipients — If you choose to save a recurring report recipient, we store the name, work email, role, and optional agency you provide. Saving a recipient does not contact that person, share a report, or grant access; you authorize each report separately.

Information Collected Automatically

When you use the App, we automatically collect:

  • Location Data — When you initiate a check-in, the App uses your device location momentarily to derive an approximate general area. The precise coordinate is discarded after the general area is derived; only the approximate area and reported accuracy are retained. When you later confirm you are still at the meeting (“still here”), the App checks whether you are in the same general area and stores only that yes/no confirmation, not a location.
  • Device Information — Device type, operating system version, app version, and device-integrity signals used for app functionality, security, and record integrity
  • Usage Data — Check-in history, meeting attendance records, and app interaction data

Limited Product Analytics

When product analytics is enabled, Auditend records a limited set of server-generated funnel events: account creation, email verification, and onboarding completion. These events use a pseudonymous identifier derived from the internal account identifier. The analytics record does not include your name, email address, raw account identifier, meeting name, attendance details, location, report contents, or selfie media.

Pseudonymous does not mean anonymous. Auditend can associate the identifier with an account using protected internal systems, so we treat these analytics records as personal information. We use them only to understand account setup and improve the service, not for advertising or tracking across other companies' apps or websites.

Photos and Media

  • Selfie Video — When you check in to a meeting, the App records a short, silent selfie video for identity and attendance verification. These videos are stored securely and associated with your check-in records. Completing a meeting (the “still here” confirmation) does not record a selfie.

Biometric Data

  • Device Biometrics (Face ID / Touch ID) — If you choose to enable biometric authentication, Face ID or Touch ID is processed exclusively by your device's operating system. Auditend does not collect, receive, store, access, or transmit your biometric authentication credentials.
  • Selfie Evidence Video — Selfie videos captured during check-in are collected to tie the evidence record to you and protect record integrity. Auditend does not independently determine whether you satisfied a court, agency, or program requirement. Auditend does not create, store, or use facial-recognition templates, facial geometry, or biometric identifiers.

2. How We Use Your Information

We use the information we collect to:

  • Create Check-In Evidence — Record participant-initiated approximate location and selfie video evidence without a venue proximity or attendance decision
  • Generate Compliance Reports — Create attendance reports for courts, sponsors, or other authorized parties at your request
  • Enable Viewer Access — Allow you to share your attendance records with trusted partners (attorneys, sponsors, probation officers) that you authorize
  • Remember Recipients You Choose to Save — Make it easier for you to select a recurring report recipient without re-entering their contact information
  • Provide App Functionality — Deliver core features including check-ins, meeting management, and notifications
  • Send Communications — Email you about account activity, password resets, and important updates
  • Improve Our Services — Use operational diagnostics and feedback to enhance app performance and user experience
  • Measure Account Setup — Use limited pseudonymous funnel events to understand whether users complete registration and onboarding
  • Ensure Security — Detect and prevent fraud, abuse, or unauthorized access

3. Information Sharing and Disclosure

We do not sell your personal information. We disclose personal information only as described in this Privacy Policy, with your authorization, or as otherwise permitted or required by applicable law.

With Your Consent

  • Compliance Reports — When you generate a court compliance report, the report contains your attendance data and is shared only as you direct.
  • Authorized Recipients — Attendance reports and related records are disclosed only to the individuals or organizations you specifically authorize, such as courts, attorneys, probation officers, employers, sponsors, or treatment providers.
  • Saved Recipient Profiles — Saving a recipient is an address-book convenience only. It does not create an access link or authorize a current or future disclosure. Deleting a saved profile does not revoke a link you previously authorized; active links are managed separately.

Service Providers

We use third-party services (as processors acting on our behalf) to operate the App:

  • Supabase — Cloud database, authentication, and file storage (U.S.-hosted)
  • Vercel — Hosting for Auditend's internal Growth OS analytics receiver and dashboard
  • Sentry — Crash and performance diagnostics (personal data disabled; technical errors only)
  • Postmark — Transactional email (sign-in codes and report delivery)
  • Gotenberg on Fly.io — Report PDF/image rendering on Auditend-controlled infrastructure
  • Geoapify — Coarse-area map images shown on reports
  • Google Places — Meeting-search address lookup
  • Google ML Kit — On-device image processing during selfie capture — runs on your device; creates no biometric template and transmits nothing
  • Apple and RevenueCat — In-app purchase and subscription processing when you make an in-app purchase
  • Stripe — Web subscription payment processing when you purchase through the web; Auditend does not receive or store your full payment-card number

Service providers process personal information on Auditend's behalf for their contracted services and are restricted from using it for their own advertising. Report PDFs are rendered by Gotenberg on Auditend-controlled infrastructure hosted by Fly.io and are not sent to a separate third-party document-rendering API.

Legal Requirements

We may disclose your information if required by law, such as:

  • To comply with a legal obligation or court order
  • To protect and defend our rights or property
  • To prevent or investigate possible wrongdoing
  • To protect the personal safety of users or the public

4. Data Storage and Security

Where Your Data is Stored

Your data is stored in secure cloud infrastructure provided by Supabase, with servers located in the United States.

Security Measures

We implement appropriate technical and organizational measures to protect your data:

  • Encryption in transit (HTTPS/TLS)
  • Encryption at rest for stored data
  • Secure password hashing
  • Access controls and authentication
  • Regular security assessments

Biometric Security

If you enable Face ID or Touch ID, biometric authentication is performed entirely by your device's operating system. Auditend does not collect, receive, store, or process your biometric identifiers or biometric information for authentication purposes.

5. Data Retention

  • Account Information — We retain account information while your account is active and as otherwise needed for security, legal, and record-integrity purposes
  • Saved Report Recipients — Retained until you remove the saved recipient or delete your account; these convenience records are not part of the signed report-integrity record
  • Selfie Videos and General-Area Location — These evidence payloads become eligible for deletion under the Consumer Health Data Policy. Active legal, litigation, court, or program record-preservation obligations may delay deletion
  • Attendance Records and Reports — We retain these while needed to provide the service and support reports you request
  • Product Analytics — Limited pseudonymous account-setup events are retained for no more than 13 months
  • Account Deletion — We remove eligible account information and sensitive evidence from our operational database and private file storage. If an already-issued report or documented obligation requires it, we may retain the minimum signed integrity record needed to preserve that record

We do not represent archived or provider-backup copies as removed before the applicable controlled backup lifecycle completes. If restored, deletion controls must be reapplied before the data returns to ordinary use.

6. Your Rights and Choices

You have the following rights regarding your data:

Access Your Data

You can view your check-in history, meeting records, and profile information within the App.

Update Your Information

You can update your name and profile information in the Profile section of the App.

Delete Your Account

You may request deletion through App settings or by contacting support@auditend.com. Deletion is subject to the limited integrity and legal-preservation exceptions described above.

Withdraw Consumer Health Data Consent

You can withdraw consent to future core attendance-evidence collection in App settings. Withdrawal blocks new check-ins unless you consent again. Withdrawal does not itself delete previously collected information or revoke an existing report-access grant; export, deletion, and report-access revocation are separate controls.

Export and Report-Access Controls

You can export your information, including saved report recipients, in App settings. You can add, update, or remove a saved recipient in the App. You can also review and revoke active report-access links separately from collection consent. Removing a saved recipient does not revoke an access link you previously authorized.

Requests and Appeals

Email support@auditend.com with "Privacy Request" in the subject line. We respond without undue delay and within 45 days. When reasonably necessary, we may extend once for up to 45 additional days and will notify you during the initial period. If we refuse to act, we explain why and how to appeal; email the same address with "Privacy Appeal" in the subject line. We decide an appeal within 45 days.

Location Permissions

You can disable location permissions in your device settings. Note that this will prevent check-in functionality.

Camera Permissions

You can disable camera permissions in your device settings. Note that this will prevent selfie verification during check-ins.

Push Notifications

You can disable push notifications in your device settings.

7. Children's Privacy

The App is not intended for children under 18 years of age. We do not knowingly collect personal information from children under 18. If you believe we have collected information from a child under 18, please contact us immediately.

8. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by:

  • Posting the new Privacy Policy in the App
  • Updating the "Last Updated" date at the top of this policy
  • Sending you an email notification for significant changes

Your continued use of the App after changes become effective constitutes acceptance of the revised policy.

9. Contact Us

If you have questions about this Privacy Policy or our privacy practices, please contact us:

Email: support@auditend.com

Auditend
131 Continental Drive, Suite 305
Newark, DE 19713

10. California Privacy Rights (CCPA)

If you are a California resident, you have additional rights under the California Consumer Privacy Act:

  • Right to Know — You can request information about what personal data we collect, use, and disclose
  • Right to Correct — You can request correction of inaccurate personal information we maintain about you
  • Right to Delete — You can request deletion of your personal data
  • Right to Limit the Use of Sensitive Personal Information — Where applicable, you can request limitations on certain uses of sensitive personal information
  • Right to Non-Discrimination — We will not discriminate against you for exercising your privacy rights

To exercise these rights, contact us at support@auditend.com.

11. International Users

If you are accessing the App from outside the United States, please be aware that your information will be transferred to, stored, and processed in the United States. By using the App, you consent to this transfer.

This Privacy Policy is effective as of August 31, 2026.