# StreetSense — Privacy Policy
**Version 4 · Effective July 7, 2026**
## 1. Overview
MNS Industries, LLC (“we,” “us,” or “our”) operates https://mnsindustriesllc.com/streetsense (the “Site”) and develops the StreetSense mobile applications for **iOS and Android** (the “Apps”).
This Privacy Policy explains what limited information the Apps and Site collect, how we use it, and the choices you have. It consolidates and supersedes all prior StreetSense privacy notices. By using the Apps or Site you agree to this Policy. If you do not agree, please discontinue use. We may update this Policy; the latest version is posted at https://mnsindustriesllc.com/streetsense/privacy, and the effective date above reflects the most recent revision.
## 2. Information We Collect
StreetSense is built around data minimization. The core legal-reference content works fully offline and requires no account. Some features — law-enforcement verification for the TempTag scanner, optional accounts, subscriptions, and device authorization — involve limited data, described below.
**(a) Stored only on your device.** The following never leaves your device (except optional iCloud sync on iOS, below): display/theme and app-lock preferences; recently viewed and favorited statutes; charge-sheet contents; onboarding and disclaimer-acceptance status; your selected state; TempTag scan tallies by state (counts only); and a per-install device identifier (see (g)). Camera images and the text read from a scanned tag are processed in memory only — never written to disk, saved to your photo library, or transmitted off your device. On iOS, if you enable iCloud Sync, favorites sync through Apple’s encrypted iCloud Key-Value Store under Apple’s privacy policy — never to our servers. On Android, these items remain on the device.
**(b) Account and law-enforcement verification.** If you create an account or request LE verification for the TempTag scanner, we collect through Google Firebase Authentication and store in Google Cloud Firestore (processed by our Google Cloud Functions): your email address (or, with Sign in with Apple, the email or private-relay address you choose, plus your name if provided); your name, agency, and rank from the verification form (no photo of your ID is collected, and we do not contact your department); and your selected state, a Firebase user identifier, and sign-in timestamps. We use this only to administer accounts and to manually verify law-enforcement status. Your password is handled by Google and stored only as a salted hash; we never see it. When you verify ownership of a work email, we send a one-time confirmation link to that address through Resend, Inc., an email-delivery service that receives the destination email address solely to deliver that message.
**(c) Subscriptions and payments.** Subscriptions are managed with RevenueCat, Inc. On each launch the RevenueCat SDK transmits a RevenueCat-generated subscriber identifier (not derived from your email), your subscription and purchase status, your device model and IP address, and your selected U.S. state code. Payment is processed by **Apple (iOS) or Google (Android)** — we never receive your card or banking details.
**(d) Crash diagnostics.** Each App keeps a small on-device diagnostic log (recent screens and any unexpected closures) to help us fix crashes; it contains no scan content and no personal information, and stays on your device unless you choose to email it to us. **On iOS only,** when the App unexpectedly closes we also use Firebase Crashlytics (Google LLC) to send us an automatic crash report — a stack trace, your device model and OS version, and your Firebase user identifier (not your name or email) — used solely to diagnose crashes, never for advertising or profiling. **The Android App does not use Crashlytics** or any remote crash-reporting SDK; its crash log stays on-device. Apple or Google may also provide us aggregate crash/analytics reports if you have opted in through your device settings, governed by their policies.
**(e) Reference-data updates.** The Apps periodically download updated TempTag reference data from our content delivery network (Amazon Web Services CloudFront/S3 at cdn.streetsenseapp.com). These are plain HTTP GET requests with no user data in the body; as with any web request, server logs record your IP address and a User-Agent string. Offline, the Apps use the reference data bundled with the installed version.
**(f) Corporate / agency licensing.** If your department licenses StreetSense directly, we may collect the agency name, a billing or purchasing contact, and the invoicing details needed to fulfill the order. Direct agency orders are billed by invoice — we do not collect or store payment-card details. Each officer’s access is then activated on their own StreetSense account. We do not report individual officers’ use back to your department.
**(g) Device authorization.** To protect purchased access from unauthorized sharing, the Apps register the devices you sign in on. When you sign in, we send to our Google Cloud Function a per-install device identifier (a random value, not a hardware serial or advertising ID), your device name as set on your device, and your device model — so we can bind your access to your device and let you reassign it if you switch phones. We use this only to enforce your license, not to track your location or activity.
**(h) Integrity attestation.** To protect our systems from abuse, the Apps may verify they are a genuine, untampered install using Apple App Attest / DeviceCheck (iOS) or the Google Play Integrity API (Android). These return a device-integrity token to Apple/Google and then to us; they do not collect personal information and are not used to identify or track you.
## 3. How We Use Information
We use the limited information above only to: administer and secure accounts; manually verify law-enforcement status; process and restore subscriptions; enforce license terms and prevent unauthorized sharing; understand at an aggregate level which states our users work in, to guide pricing and content; deliver reference-data updates; diagnose crashes; and send service-related messages. We do not use it for advertising or profiling.
## 4. Local Notifications
The Apps may schedule local notifications on your device (for example, a reminder before a free trial converts, or when new reference data is available). These are created and delivered entirely on-device. We do not use push notifications, device push tokens, or Firebase Cloud Messaging, and no notification content leaves your device.
## 5. Third-Party Services
The Apps transmit data to only these processors, each under its own privacy policy:
– **Google LLC** (Firebase Authentication, Cloud Firestore, Cloud Functions) — email, account and verification data, sign-in metadata, IP address; and, via the device-authorization Cloud Function, your device id/name/model.
– **Google LLC** (Firebase Crashlytics — **iOS only**) — automatic crash reports: stack traces, device model and OS version, and your Firebase user identifier.
– **RevenueCat, Inc.** (subscriptions) — subscriber identifier, purchase data, state code, IP address, and your recorded terms-acceptance version and timestamp.
– **Amazon Web Services** (reference-data CDN) — IP address and User-Agent in server logs only.
– **Resend, Inc.** (email delivery) — the email address a verification message is sent to.
– **Apple** (iOS) / **Google** (Android) — subscription payment processing, and device-integrity attestation.
The Apps use no analytics, attribution, advertising, or tracking SDK beyond the above. Links to official government legal resources open outside the Apps and are subject to those sites’ policies.
## 6. Cookies and Tracking
The Apps use no cookies or tracking technologies. Our website may use a standard session cookie to keep administrators signed in. We do not use cookies or pixels for advertising, profiling, or cross-site tracking.
## 7. Data Retention and Deletion
We retain account and administrative data only as long as needed for the purposes above. You can permanently delete your account and associated data at any time in the App: **Settings → Account → Delete Account**. This removes your authentication record and the data we hold about you. Any active subscription must be cancelled separately in your **Apple ID settings (iOS) or Google Play account (Android)**.
## 8. Your Privacy Rights
Depending on your jurisdiction, you may ask what information we hold about you, request its deletion or a copy, and exercise additional rights. Residents of California (CCPA), the EU/UK (GDPR), and other states with comprehensive privacy laws may have further rights, including to opt out of sale or sharing. We do not sell or share personal information for cross-context behavioral advertising and have no mechanism to do so. Use the in-App deletion above, or email support@mnsindustriesllc.com from your account email, to exercise any right. We respond within the timeframes applicable law requires.
## 9. Data Security
All network connections use HTTPS. Authentication tokens are stored in the iOS Keychain / Android Keystore-backed storage, hardware-backed on supported devices. Scan photos, read text, and analysis results are never written to disk. We use commercially reasonable safeguards, but no method of transmission or storage is completely secure, and you are responsible for the physical security of your device.
## 10. Children’s Privacy
The Apps and Site are not directed to individuals under 13, and we do not knowingly collect personal information from children. If you believe a child has provided us information, contact us and we will delete it.
## 11. Communications
We may send service messages (such as subscription confirmations, verification results, or critical updates). We do not send marketing email unless you opt in, and you may opt out of non-essential messages at any time.
## 12. Policy Updates
We may update this Policy. The effective date reflects the latest revision, and the current version is posted on our website. Continued use after an update constitutes acceptance.
## 13. Contact Us
Questions about this Policy or our data practices:
**MNS Industries, LLC**
support@mnsindustriesllc.com
—
_We are committed to data minimization and to safeguarding the confidentiality of the limited information we hold._
