Privacy Policy
Effective date: August 14, 2026
1. Introduction
Firedesk ("Company," "we," "us") operates the Firedesk platform ("Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service.
2. Information We Collect
2.1 Information You Provide
- Account information: name, email address, department name, and contact details when you register
- Department data: incident reports, apparatus records, truck check data, training records, member information, and other data you enter into the Service
- Payment information: billing details processed securely through our payment processor, Paddle — we do not store your full credit card number
- Communications: information you provide when contacting us for support
2.2 Information Collected Automatically
- Log data: IP address, browser type, operating system, referring URLs, and access timestamps
- Usage data: pages visited, features used, and interactions within the Service
- Cookies: session cookies necessary for authentication and service functionality
3. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the Service
- Process transactions and manage your subscription
- Send you service-related communications (e.g., account verification, billing notices, security alerts)
- Respond to your inquiries and provide customer support
- Monitor and analyze usage to improve the Service
- Detect, prevent, and address technical issues or security threats
- Comply with legal obligations
4. Data Sharing and Disclosure
We do not sell your personal information. We may share information in the following limited circumstances:
- Service providers: trusted third parties that assist us in operating the Service (e.g., hosting, payment processing, error monitoring), bound by confidentiality obligations
- NERIS reporting: if your department uses NERIS integration, incident data is transmitted to the U.S. Fire Administration as directed by your department
- Legal requirements: when required by law, regulation, legal process, or governmental request
- Business transfers: in connection with a merger, acquisition, or sale of assets, with notice to affected users
5. Data Security
We implement industry-standard security measures to protect your data, including encryption in transit (TLS) and at rest, access controls, and regular security assessments. However, no method of transmission over the Internet is 100% secure, and we cannot guarantee absolute security.
6. Data Retention
We retain your data for as long as your account is active or as needed to provide the Service. If you cancel your subscription, we will retain your data for a reasonable period to allow for reactivation, after which it will be securely deleted. You may request deletion of your data at any time by contacting us.
7. Your Rights
Depending on your jurisdiction, you may have the right to:
- Access the personal information we hold about you
- Request correction of inaccurate information
- Request deletion of your personal information
- Object to or restrict certain processing of your data
- Request a portable copy of your data
To exercise any of these rights, please contact us at support@firedesk.io.
8. Cookies
Within the Service we use essential cookies required for authentication and core functionality.
On our public website we also use first-party analytics, provided by PostHog, to understand how visitors find and move through the site — which pages they read, and where they abandon the signup form. This is used to improve the website. We do not use advertising cookies, we do not run advertising pixels, and we do not sell or share this information with advertisers or data brokers. Analytics does not run inside the Service itself.
PostHog's session recording is configured to mask the contents of every form field, so information you type into the signup or contact forms is not captured in a recording.
9. Third-Party Services
We rely on the following providers to operate the Service. Use of each is governed by that provider's own privacy policy.
- Amazon Web Services — hosting, databases, and file storage, in the United States.
- Paddle — payment processing and subscription billing. Paddle is the merchant of record; we do not store your card details.
- Google Maps Platform — geocoding addresses and calculating responder travel times.
- PostHog — website analytics, as described in the Cookies section.
- National Weather Service — weather conditions shown on station displays.
In addition, the Service integrates with dispatch and reporting systems that your department chooses to connect — including NERIS, Active911, and IamResponding. Those connections are initiated by your department, not by us.
10. Children's Privacy
The Service is not directed at individuals under the age of 18. We do not knowingly collect personal information from children. If we become aware that we have collected information from a child, we will take steps to delete it.
11. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page and updating the effective date. Your continued use of the Service after changes take effect constitutes acceptance of the revised policy.
12. Contact
If you have questions about this Privacy Policy, please contact us at support@firedesk.io.