Privacy Policy

Last update: August 12, 2026

Effective date: August 12, 2026

This Privacy Policy explains how this app collects, uses, shares, retains, and protects personal information when you use our mobile application, related websites, and services (collectively, the “Service”). It also explains the choices and rights available to you.

1. Information we collect

Account and profile information

Location information

Location may be collected while the app is in the background if you grant the relevant iOS permission and enable location sharing. iOS controls whether Location Services and Precise Location are available.

Circle and feature information

Device and technical information

Information you send to us

We do not collect phone numbers for registration, phone-number tracking, SMS verification, or contact matching. We do not access your contacts to locate people.

2. How we collect information

We collect information:

3. How we use information

We use personal information to:

We do not use location information to provide emergency dispatch or autonomous emergency response.

4. Legal bases where applicable

Depending on your location, we process personal information based on one or more of the following:

You may withdraw consent by changing in-app settings, changing iOS permissions, leaving a circle where supported, deleting a place, or deleting your account. Withdrawal does not affect processing already lawfully completed.

5. When information is shared

With circle members you choose to join

When sharing is enabled, members of your circles may receive your location, last update time, online status, distance, battery level, place-event summary, and SOS information as applicable. Pausing location or battery sharing stops new sharing of that category, but previously created records may remain available for the retention period described below.

With service providers

We may use hosting, database, security, customer-support, push-delivery, and diagnostics providers to process information on our behalf. They may access only the information needed to perform contracted services and must protect it under contractual and legal obligations at least equivalent to those described here.

The third-party services currently used by the Service include:

Third-party serviceProviderPurposeInformation that may be processedPrivacy policy
FirebaseGoogle LLCApp infrastructure, push delivery, reliability, and diagnosticsDepending on the enabled features: device or installation identifiers, push tokens, IP addresses, app and operating-system information, crash data, performance data, and related technical informationFirebase Privacy and Security
PostHogPostHog, Inc.Product-usage and feature-performance analytics used to maintain and improve the ServiceDepending on our configuration: product-interaction events, screen or feature usage, device or session identifiers, app and operating-system information, IP addresses, and related technical informationPostHog Privacy Policy

These providers process information only for the purposes described above and subject to their applicable data-processing terms and privacy practices. The specific information processed depends on the features we enable and how we configure them. We do not authorize these providers to use personal information received from us for their own advertising purposes.

With Apple services

Sign in with Apple, Apple Maps, Location Services, and Apple Push Notification service process information according to Apple's applicable terms and privacy practices.

For legal and safety reasons

We may disclose information when reasonably necessary to comply with law or valid legal process; protect users, rights, property, or the Service; investigate fraud or abuse; or respond to an emergency where disclosure is legally permitted. The Service itself is not an emergency response service.

Business transfer

If we are involved in a merger, acquisition, financing, reorganization, or sale of assets, information may be transferred subject to appropriate confidentiality and privacy protections and applicable notice requirements.

We do not sell personal information. The Service does not use personal information for advertising and is not intended to track users across apps or websites owned by other companies.

6. Retention and deletion

We retain information only for as long as necessary for the purposes described above, including operation, security, dispute resolution, and legal compliance. Our planned retention schedule is:

DataPlanned retention
Location and SOS history visible in the appMost recent 7 days by default; the configured period must match the released backend
Latest member status/locationUntil replaced, sharing or membership ends, the account is deleted, or no longer needed to provide the Service
Circle, membership, invitation, place, preference, and account recordsWhile the account or relevant relationship is active, then deleted or de-identified according to the account-deletion process
Account and associated business data after a confirmed deletion requestAccess, sharing, and push delivery stop immediately; hard deletion is completed within 1 day
Limited security and audit recordsUp to 180 days, unless a longer period is legally required

If a legal obligation, active dispute, security investigation, or valid preservation request requires longer retention, we retain only the necessary information for the required period. We then delete or de-identify it.

7. Your choices and controls

You can:

Revoking Location Services prevents new location collection by the app but does not automatically delete information collected earlier. Use account deletion or contact us if you also want previously collected information deleted, subject to legal exceptions.

8. Account deletion

When you confirm account deletion, we immediately disable account access, stop new location and battery sharing, stop push notifications, and remove or hide your active circle relationships. We then delete account-linked location, place activity, SOS, membership, and other business data within 1 day, except limited information we must retain by law or for documented security purposes.

Account deletion is permanent. The Service does not promise recovery of deleted information or restoration on a replacement device.

9. Security

We use administrative, technical, and organizational safeguards appropriate to the sensitivity of location data. Planned controls include encrypted transport, encryption at rest, access control based on circle membership and place ownership, protected session storage, invitation-code controls, rate limiting, audit trails, and log redaction.

No method of storage or transmission is completely secure. You should protect your device, Apple account, and invitation credentials and promptly contact us if you suspect unauthorized access.

10. International transfers

The servers and data hosting facilities used for the Service are located in Hong Kong. If you use the Service from a country or region outside Hong Kong, your personal information may be transferred to, stored in, and processed in Hong Kong. We take appropriate cross-border transfer mechanisms and safeguards as required by applicable law, including:

  1. Technical and organizational safeguards: We use encrypted communication protocols when transmitting personal information and apply appropriate safeguards to stored information, including encryption, access controls, authentication, audit logging, and least-privilege access management, to reduce the risk of unauthorized access, disclosure, alteration, or loss.
  2. Contractual and service-provider safeguards: Where required by applicable law, we enter into data processing agreements, cross-border data transfer clauses, or other binding contractual arrangements with service providers that receive personal information. These arrangements restrict processing to agreed purposes, require appropriate security measures, and prohibit unauthorized onward transfers, disclosures, and retention beyond the necessary period.

11. Children and minors

The Service is intended for voluntary use by families and trusted groups, but it is not directed specifically to children. A parent or legal guardian must authorize and supervise use by a minor when required by applicable law. Guardians should explain location sharing, circle visibility, permissions, and SOS limitations to minors and should not use the Service for covert monitoring.

If you believe a minor's information was collected without legally required authorization, contact support@njgxlkj.com. We will investigate and delete the information where required.

12. Region-specific privacy rights

Depending on where you live, you may have rights to know or access personal information, correct it, delete it, restrict or object to processing, receive a portable copy, withdraw consent, or appeal a decision. You may exercise available rights by using in-app controls or contacting support@njgxlkj.com. We may need to verify your identity before fulfilling a request.

You may also have the right to submit a complaint to a competent local data-protection or consumer-protection authority with jurisdiction. We will not discriminate against you for exercising applicable privacy rights.

13. Changes to this Policy

We may update this Privacy Policy to reflect changes in the Service, law, or our practices. If a change materially affects how we process personal information, we will provide reasonable notice in the app or by another appropriate method and obtain consent where required. The “Last update” and “Effective date” above identify the current version.

14. Contact us

For privacy questions or requests, contact: