Privacy Policy
Last updated 10 October 2026. Mayday isn't available yet; this describes how it will work at launch.
Mayday is operated by Denys Lebiediev (“we”). In short: no account, no ads, no tracking and no third-party SDKs in the app. We collect only what's needed to deliver your alerts, and we delete it on a fixed schedule.
What we collect
If you use Mayday
- An anonymous identifier: a key created on your iPhone. There's no account, and we don't ask for your name or email.
- Your alerts and check-ins while they run, with their times and delivery status.
- Your location during an alert or check-in, encrypted on your iPhone before upload. We store only the encrypted form.
- Your subscription status, from Apple.
Your contacts' names stay on your iPhone and in your own iCloud.
If someone adds you as a trusted contact
- The phone number or email address you agreed to receive alerts at, and your language.
- A record of your consent: when you agreed, the page and wording you saw, the channels you chose, and any opt-out.
How your location is protected
- Each alert or check-in gets its own key, and your iPhone encrypts your location with it before upload.
- The key travels in the part of the link after “#” (the URL fragment). Browsers never send that part to our server, so the page decrypts your location in your contact's browser.
- When you send an alert from your own Messages app, we never see the key.
- When Mayday sends texts or emails for you (automatic alerts and missed check-ins), our server passes the link, key included, to the service that delivers it (email, WhatsApp or Telegram). For a check-in, the server keeps the key, itself encrypted, until the deadline. Keys are deleted when the alert or check-in ends.
- These emails and messages aren't end-to-end encrypted: anyone who has the message can open the link while it works. That's why links stop working shortly after an alert ends.
- To draw the map, your contact's browser sends the location to Apple Maps (MapKit JS).
- Location never appears in our logs, analytics or backups.
How long we keep it
| Encrypted location and alert or check-in data | 24 hours after the alert or check-in ends |
|---|---|
| Delivery records (message IDs, status, times) | 30 days |
| Contacts' phone numbers and email addresses | While the contact is on someone's list |
| Consent records | 4 years after the last change; when erased, reduced to a one-way hash of the number and the dates |
| Anonymous identifier and subscription status | Deleted after 13 months without use |
Erase All Data in Mayday's settings deletes your data from our servers within 24 hours. Our database provider's backups can keep deleted rows for up to 30 days; location is never stored in that database.
Who processes it for us
- Cloudflare hosts our servers, database and the live-location page, and sends emails. It doesn't keep the content of sent emails.
- Meta (WhatsApp) delivers WhatsApp alerts to contacts who chose WhatsApp.
- Telegram delivers alerts to contacts who linked Telegram. Telegram bot chats are not end-to-end encrypted.
- Apple handles App Store purchases, the map on the live page, and iCloud sync of your own data.
We don't sell or share personal data, and we don't use it for advertising.
Your choices
- Erase your data: Settings › Erase All Data in the app.
- Stop alerts: use the link in any Mayday email, reply STOP on WhatsApp, or send /stop on Telegram.
- Your rights, including under GDPR and UK GDPR (access, correction, deletion, objection): ask from inside the app, which proves the request is yours without an account, or contact hello@denyslebiediev.com.
Changes and contact
We'll announce material changes in the app and update the date above. Contact: Denys Lebiediev, hello@denyslebiediev.com.