Privacy Policy

Effective Date: July 14, 2026  ·  Last Updated: July 14, 2026

MyHRProof helps you privately document what happens to you at work. Privacy is the product, so this policy is written to be read, not buried. In plain terms: your incident records are encrypted with a key only you hold. When they sync to the cloud, we store only scrambled text we cannot read.

This policy describes the MyHRProof mobile app as it works today. The app now includes optional accounts and encrypted cloud sync, so your records can be backed up and restored on a new device. This document explains exactly what that means for your data.

Short version: To use accounts and cloud backup, you sign up with your email and a password. Your incidents and media are protected by end-to-end (zero-knowledge) encryption — when they sync to our cloud we store only encrypted data and cannot read your incidents, media, password, recovery code, or decryption key. Information reaches a third party only for accounts and sync (Supabase), payments (Apple, Stripe & RevenueCat), and, if you use the Charlie assistant, the message you type (Anthropic).

1. What we collect, and what we don’t

Account information (stored by us, via Supabase)

Encrypted incident data (synced to the cloud, but unreadable to us)

Information handled by a third party when you use a specific feature

We do not collect: your contacts, browsing history, advertising identifiers, or cross-app tracking data. We collect limited first-party usage analytics — which features are used and when — on our own systems, to improve the app; this never includes your incident content, media, or descriptions. We do not use third-party analytics or advertising SDKs, and the app does not track you across other apps or websites.

2. How your information is used

We do not use your information for advertising, and we do not profile you.

3. Third parties and subprocessors

We keep the list of companies that process data on our behalf short and purposeful:

Each of these processes data under its own privacy policy. We do not sell your data to anyone.

4. Data retention and deletion

5. Your rights

Depending on where you live (including under the California CCPA/CPRA and the EU/UK GDPR), you may have rights to access, correct, delete, or export personal information a company holds about you. You can delete your account and its data at any time from within the app. For any other request, or for information a third party processes on our behalf (Supabase, Anthropic, Apple, Stripe, RevenueCat), you may contact us and we will help you exercise applicable rights. We do not sell or “share” personal information as those terms are defined under CCPA/CPRA.

6. Children

MyHRProof is intended for people in the workforce and is not directed to children under 16. We do not knowingly collect information from children under 16. If you believe a child has used the app, contact us and we will help.

7. Security

Your incident content and media are protected with end-to-end, zero-knowledge encryption. A random 256-bit data encryption key encrypts your vault; that key is “wrapped” by keys derived from your password and a one-time recovery code using PBKDF2-SHA256 (100,000 iterations), and the content itself is encrypted with AES-256. The server stores only the encrypted data and the wrapped keys — never your password, recovery code, or the decryption key. Because of this design, if you lose both your password and your recovery code, your data cannot be recovered — nobody, including us, holds an escrow copy of your key. The app also blanks its screen in the device’s app switcher so your incidents aren’t visible in a preview. No method of storage or transmission is 100% secure, but zero-knowledge encryption means that even a breach of our cloud storage exposes only unreadable ciphertext.

8. Changes to this policy

If we make material changes, we will update this page and, where appropriate, notify you in the app before the change affects you.

9. Contact

Questions about privacy? Email privacy@myhrproof.com.