Reading protocols requires no account and sends no personal data. Preferences (certification level, theme, pinned items) and offline copies stay on your device.
Account: email address, name, and a password (stored as a hash by our authentication provider — we never see it).
Provider verification, if you submit it: certification number, last name, and a photo of your certification card.
Agency membership: which agencies you joined, your role, and when.
Error reports: the message you write, the protocol reference, app version, and platform — linked to your account only if you're signed in.
To run your account, check verification claims against the state registry, show agencies their rosters, and fix reported content errors. Nothing else.
No advertising, no analytics resale, no sale or rental of personal data. If product analytics are ever added, this policy changes first.
Admins of an agency you join see your name, email, join date, and role for that agency.
Infrastructure runs on Amazon Web Services (authentication, database, file storage) in the United States; AWS processes data on our behalf.
We disclose data if the law requires it, and we'll tell you unless prohibited.
Account data is kept while the account exists. Verification photos are kept only as long as review requires.
Delete your account and its data from the Account screen, or by contacting suufi@mit.edu.
Data moves over TLS. Verification photos land in a private bucket, readable only by the reviewer. Access to production data is limited and audit-logged.
The service is for EMS professionals and students and is not directed to children under 13. We don't knowingly collect their data.
EMS Atlas · Massachusetts, USA · suufi@mit.edu