This policy explains what information CodeBlueCoach handles, and — mostly — what it doesn’t. It applies to the CodeBlueCoach mobile app and this website.
The short version
| Question | Answer |
|---|---|
| Do I need an account? | No. There is no sign-up, login, or user profile. |
| Do you collect analytics or run ads? | No. No analytics SDKs, no advertising, no tracking — in the app or on this website. |
| Where is my data stored? | On your device. Event logs, notes, and settings never leave your phone by default. |
| Does the app ever talk to a server? | Only if you use the optional AI code note feature. |
| What is sent for AI notes? | A de-identified event log: timestamps, interventions, doses, rhythms. No names, no record numbers, no identifiers. |
| Is it stored on your servers? | No. It is processed transiently to generate the note and is not retained. |
| Is it used to train AI models? | No. |
| Is my data sold or shared? | Never. |
Data we do not collect
CodeBlueCoach has no user accounts and collects no personal information. We do not collect names, email addresses, phone numbers, device identifiers, location data, health records, usage analytics, or crash reports. The app contains no advertising or analytics SDKs. This website sets no cookies and loads no third-party scripts.
Data stored on your device
Everything you create in the app — code event logs, generated notes, medication lists, and settings — is stored locally on your device and stays there. Exporting a PDF or sharing an event log happens through your device’s share sheet and is entirely under your control; we never see or receive exported files. Deleting the app deletes all of its data.
The one network feature: AI code note drafting
CodeBlueCoach can optionally draft a narrative code note from your event log. This is the only feature that transmits data off your device, and it works like this:
- What is sent: a de-identified event log — event timestamps, event types (such as CPR started, shock delivered, medication given), doses, routes, energies, and rhythm labels, plus the code’s start time and duration.
- What is never sent: patient names, dates of birth, medical record numbers, room numbers, or any other identifiers. The app screens the log for identifier-like content on your device before sending, and our server screens it again on receipt; requests containing identifier-like content are rejected.
- Where it goes: to our backend on Google Cloud, which passes it to Google’s Vertex AI service to generate the draft note. The connection is encrypted in transit (TLS).
- How long it is kept: it isn’t. The event log and the generated note are processed transiently and are not stored, logged, or retained on our servers after your note is returned to the app.
- Model training: your data is not used to train AI models — by us or by Google. Vertex AI does not use customer data to train its models.
- Authentication: requests are verified with device attestation (Firebase App Check), not user identity. We cannot tie a request to a person.
Do not enter patient identifiers in the app. The feature is designed to work only with de-identified event data, and free-text fields should never contain names, record numbers, or other identifying information.
Not a HIPAA-covered service
CodeBlueCoach is designed to operate without protected health information and does not create, receive, maintain, or transmit PHI on behalf of covered entities. Using the app does not establish a business associate relationship. You are responsible for complying with your institution’s documentation and privacy policies.
Children’s privacy
CodeBlueCoach is intended for trained healthcare professionals. Its pediatric (PALS) content is about the care of pediatric patients; it is not directed to children, and we do not knowingly collect information from children under 13 — or from anyone else.
Changes to this policy
If we change this policy, we will post the updated version here with a new effective date. Material changes — for example, any change to what the AI note feature transmits — will also be noted in the app’s release notes.
Contact
Questions about privacy? Email support@codebluecoach.com.