← Back to home

Privacy Policy

Last updated: 6 August 2026 · Applies to the Lifeline application and this website

Lifeline is built so that there is almost nothing to have a privacy policy about. It has no accounts, no central servers, and no company sitting between you and the people you message. This page explains, plainly, what that means for your data.

The short version. Your messages are end-to-end encrypted and travel directly between devices. We do not operate a server that receives, stores, or can read them. We do not require an account, an email, or a phone number. We cannot sell data we never collect.
1. Scope 2. No accounts 3. Your messages 4. On-device data 5. Location 6. Relaying for others 7. This website 8. Optional gateways 9. Children 10. Changes 11. Contact

1. Scope

This policy covers the Lifeline mobile and desktop applications ("the app"), the underlying open-source protocol, and this marketing website. Because Lifeline is open source, the ultimate authority on how it behaves is the source code itself, which you can inspect at any time.

2. No accounts, no identifiers we hold

Using Lifeline does not require you to create an account or provide a name, email address, or phone number. Your identity in the network is a cryptographic key pair generated on your device and stored only on your device. We never receive it.

3. Your messages

4. Data stored on your device

To function, the app stores certain information locally on your own device, such as your cryptographic keys, your message history, your contacts, and queued messages waiting to be delivered. This data stays on your device under your control. You can erase it at any time, including instantly with the app's panic-wipe feature.

5. Location data

Some features — such as SOS beacons, "find each other," and geocast — use your device's location. When you use them:

6. Relaying for others

As part of the mesh, your device may carry and forward other people's encrypted messages toward their destinations. You cannot read this traffic, and it is not retained beyond what is needed to attempt delivery. This is how the network stays alive without infrastructure — and it is designed so that relaying never exposes you to the contents of what you relay.

7. This website

This site is a static informational website. It does not use advertising cookies or third-party trackers. If you submit the contact form, the information you provide is used solely to respond to your inquiry. Our hosting provider may process standard server logs (such as IP addresses and request times) for security and reliability, as is typical for any website; we do not use these to build profiles of visitors.

8. Optional internet gateways

Lifeline can opportunistically bridge messages to the internet through a device that has connectivity. Where a message you send is routed over the public internet via such a gateway, it remains end-to-end encrypted in transit. Any optional hosted services offered separately (for example, a team or organization product) are governed by their own terms and notices presented at sign-up; the core mesh described here does not depend on them.

9. Children

Lifeline is not directed to children and does not knowingly collect personal information from children. Because the app does not collect personal information centrally at all, there is no such data for us to hold.

10. Changes to this policy

We may update this policy as the project evolves. Material changes will be reflected here with a new "last updated" date and, where appropriate, noted in the project's release notes.

11. Contact

Questions about privacy? Reach us through the contact page or open a discussion on GitHub.

← Back to home