Data & security

How we protect your data

A hunting spot is hard-won knowledge. Your location can be sensitive. We treat both like they matter — because to you, they do. Here’s the honest version of how Ember keeps your data safe.

Your spots

Your locations are yours

Your pins, stands, and saved ground are private by default. They are shared only when you choose to share them — and only with the people you share them with.

No selling

We don’t sell your data

We do not sell your personal information, and we don’t sell or trade your location. That’s not a promotion — it’s how the product is built.

On your terms

You can leave clean

Delete your account whenever you want. We remove or anonymize your personal data within 30 days, except where the law requires us to keep a record.

How your data is protected

The practical measures behind the promise — from the connection your phone makes to where your data finally rests.

Encrypted in transit

Every connection between the app, our servers, and your device is protected with TLS. Your data is never sent over the open internet in the clear.

Encrypted at rest

Your account data and hunting history live in a managed Postgres database (Supabase) where data is encrypted on disk. It sits behind our infrastructure, not on your device alone.

Access is restricted

Records are scoped to your account. Other users — and members of a different group — cannot query your spots or logs. Internal access is limited to what is needed to run and support the service.

Payments handled by Stripe

Billing runs through Stripe, a PCI-DSS Level 1 payment processor. We never see or store your full card number on our own servers.

Secure sign-in

Passwords are hashed — never stored as plain text — and authentication is handled by a dedicated, industry-standard auth layer.

Security-aware notifications

Account-related changes and sign-in activity can surface as alerts, so you notice something before it becomes a problem.

Location is the data we guard hardest

Ember uses precise location to power the things you actually opened the app for — stand scoring, terrain reads, offline maps, and check-in safety. That access is yours to grant, and yours to revoke in your device settings at any time.

  • Private by default. Your saved locations aren’t visible to other users unless you deliberately share them.
  • Shared only within your group. When you coordinate with a group, the members you invite see what you choose to share — check-in status, not a live map of your every honey hole.
  • Never sold. Your location is not a product we sell to advertisers or data brokers.

Being straight with you

No app can promise perfect security, and we won’t pretend otherwise. No method of transmitting or storing data is completely immune from risk. What we can promise is that we design carefully, lean on trusted infrastructure, limit what we collect to what the features need, and keep improving. If a security practice on this page ever stops being true, we’ll change the page — not the story.

Report a security issue

Found something?

If you believe you’ve found a vulnerability or a way your data could be exposed, we want to hear it before anyone else does. Email us with the details and steps to reproduce, and give us a reasonable window to respond before disclosing it publicly. We won’t pursue action against good-faith researchers who follow this.