Privacy
Last updated July 27, 2026
The short version
There are no accounts. We don't know who you are. The only personal data we hold is a push token if you turn on release alerts, and you can delete it by turning them off.
Release alerts
If you enable alerts, your device gives us a delivery token (a web push subscription, or an Apple/Google device token in the app). We store that token, its encryption keys where applicable, and which water you subscribed to — nothing else. It is used solely to send the alerts you asked for. Turning alerts off deactivates the token on our side; deliveries that bounce are deactivated automatically.
Location
The only location use is the optional "Sort by distance" button, which asks your device once, computes distances on your device, and discards the result when you leave. Your location is never transmitted to us, never stored, and never used in the background. The app is fully usable with location denied.
Analytics and errors
We use Plausible, a cookie-less analytics service that records aggregate page counts — no personal identifiers, no cross-site tracking. If error reporting (Sentry) is enabled, reports describe what the software did wrong, not who you are.
What we log about rivers, not you
We keep an audit log of every fetch from the public agencies (flow, schedules, weather, stocking) and of every alert the system decided to send, so we can prove what the app displayed and when. None of it is connected to individual users.
What we don't do
- No selling or sharing of data with third parties for their own use.
- No advertising identifiers. If advertising is ever added, this policy changes first and the date above moves.
- No data collection from children; the app is not directed at children under 13.
Contact
Questions or deletion requests: contact@beforethehorn.app. For push tokens, turning alerts off in the app is faster than email.