Privacy Policy

Last Updated: September 5, 2026

This Privacy Policy describes how StayReady Kits ("App") handles your information. We are committed to protecting your privacy.

1. Overview

StayReady Kits is designed with privacy as a priority. Your personal and household data is stored locally on your device and is not transmitted to our servers. We do not collect, store, or have access to your personal information. The one thing the App can send us, if you allow it, is the usage data described in Section 7. It contains none of your preparedness data, and it does not identify you by name, email or account, though it does include a scrambled code that distinguishes one installation from another.

2. Data Stored on Your Device

The App stores the following data locally on your device using Apple's SwiftData framework:

This data never leaves your device except through standard iOS backup mechanisms (iCloud Backup, iTunes/Finder backup) which are controlled by your device settings, or when you explicitly export your data using the App's backup feature (see Section 3).

3. Data Backup (Export & Import)

StayReady Pro allows you to export your App data to a .stayready backup file and import a previously exported backup.

When you export data:

When you import data:

4. iCloud Sync and Sharing (Pro Features)

StayReady Pro offers two optional iCloud features powered by Apple's CloudKit service:

a) iCloud Sync

If you enable iCloud Sync, your household data, kits, inventory, and scenario progress are synced across your own devices using Apple's CloudKit service. This data is stored in your personal iCloud account and counts toward your iCloud storage quota.

Key points about iCloud Sync:

b) Kit Sharing

You may share individual kits with other iCloud users, such as household members or family. Sharing is facilitated through Apple's CloudKit sharing infrastructure.

When you share a kit, the following data is shared with invited participants:

Key points about Kit Sharing:

For more information about how Apple handles CloudKit data, refer to Apple's Privacy Policy.

5. Third-Party Services

OpenFoodFacts API: When you scan a product barcode, the App sends the barcode number to OpenFoodFacts (openfoodfacts.org), an open-source product database, to retrieve product information. Only the barcode number is transmitted. No personal or household data is sent. OpenFoodFacts has its own privacy policy available at world.openfoodfacts.org/privacy.

TelemetryDeck: If, and only if, you have allowed the usage data described in Section 7, those signals are delivered to TelemetryDeck (telemetrydeck.com), which processes them on our behalf so we can read them as counts. Nothing is sent to TelemetryDeck while the setting is off. TelemetryDeck has its own privacy policy available at telemetrydeck.com/privacy.

6. Device Permissions

The App may request the following device permissions:

7. Usage Data

StayReady Kits can send usage signals to help us find and fix the parts of the app people struggle with. This is off by default for anyone who installed the App before this policy came into effect, and can be turned on or off at any time in Settings under Privacy. While it is off, nothing is sent and nothing is recorded.

What is sent: the name of a screen reached or a feature opened, and coarse ranges rather than exact figures, such as whether a kit is roughly a quarter or roughly half prepared. Each signal also carries technical context added automatically by our analytics provider: your app version, iOS version, device model, language and region, and whether the build came from the App Store or TestFlight.

Separately from the signals above, our analytics provider records when the App is launched, so sessions can be counted, and the date of its first launch on your device, so new installations can be told from returning ones. Neither carries anything about your preparedness data.

Each signal also carries a scrambled code derived from an identifier iOS gives us for your device. It is not your name, email or account, and it is not the advertising identifier. Its purpose is to tell us that fifty signals came from ten people rather than from one, and it lets the signals from a single installation be counted together. Deleting the App and reinstalling it produces a different code.

What is never sent: your household members, pets, inventory, notes, storage locations, kit names, barcodes, photos, or any part of your preparedness data. No profile is built about you, nothing is sold, and nothing is shared with advertisers or data brokers.

We use no advertising SDKs and no cross-app or cross-site tracking of any kind.

8. No Data Sharing

We do not sell, share, trade, or transfer your personal information to third parties. The only external data transmissions are the barcode lookup described in Section 5, iCloud Sync described in Section 4(a), Kit Sharing described in Section 4(b), user-initiated data export described in Section 3, and, if you have allowed it, the usage data described in Sections 5 and 7. When you share a kit with other users, the shared kit data is transmitted to those users via Apple's CloudKit; this sharing is initiated and controlled entirely by you. When you export data, the resulting file is saved to a destination you choose and is under your sole control.

9. Data Deletion

If you turn off usage data in Settings under Privacy, the App stops sending signals immediately. Signals already sent cannot be traced back to you, so they cannot be individually retrieved or deleted; write to us at the address in Section 13 if you have a question about them.

Since all data is stored locally on your device, you can delete all App data at any time by:

If iCloud Sync is enabled, you can also manage or delete synced data through iOS Settings > Apple Account > iCloud.

If you have shared kits with other users, revoking their access or deleting the kit on your device will remove their access to future updates. However, data that participants previously viewed or copied cannot be retroactively deleted from their devices.

Previously exported backup files are not affected by deleting data within the App and must be managed separately by you.

10. Children's Privacy

The App does not knowingly collect personal information from children. Household data about children (such as age group for calculating requirements) is entered by the adult user and stored only on the device.

11. Security

Your data is protected by your device's built-in security features, including device passcode, Face ID/Touch ID, and encryption. Since data is stored locally and not transmitted to external servers, the risk of unauthorized remote access is minimized. When iCloud Sync is enabled, data is additionally protected by Apple's CloudKit encryption. When you share a kit, the shared data is protected by Apple's CloudKit sharing infrastructure, including encryption in transit and at rest. You are responsible for managing who has access to your shared kits. Exported backup files are not encrypted by the App and should be stored securely.

12. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be reflected in the "Last Updated" date. Continued use of the App constitutes acceptance of the updated policy.

13. Contact

If you have questions about this Privacy Policy, please contact us at support@orlio.io.