Effective date: July 23, 2026 (first published July 9, 2026)
OnPar Fire & EMS ("OnPar," "we," "us") is operated by Whyte Line Holdings LLC, a Texas limited liability company. OnPar is an operations platform for fire departments and EMS agencies. This policy covers the OnPar app — including the iOS app "OnPar — Fire & EMS Readiness" — and this marketing website. It explains what we collect, why, and your choices.
| Data | What it includes | Why |
|---|---|---|
| Account data | Name, email address, phone number (optional, for SMS notifications), department, role, and the account identifier that ties your records to you. | Sign-in, roster identity, and the audit trails your department relies on. |
| Roster & schedule data | Shift assignments, schedules, certifications and readiness items your department tracks. | Scheduling and readiness features. |
| Operational records | Inventory items and counts, expiration dates and lot numbers, apparatus checklists, maintenance records, messages/alerts, and controlled-substance custody records — counts, seal numbers, drawn sign-off signatures, and (if the signer permits it) a single point-in-time GPS stamp on the sign-off. | This is the product: your department's operational and custody recordkeeping. |
| Photos & documents you attach | Equipment-issue photos, invoices, and apparatus documents you choose to upload. | Stored for your department only when you attach them. |
| Device data | A push-notification token if you enable notifications. | Delivering the notifications your department configures. |
| Diagnostics | Our own first-party error reports: error message, the screen it happened on, viewport size, browser/device string, and your account and department identifiers. | Finding and fixing bugs. This is not a behavioral-analytics service — no third-party diagnostics SDK is involved. |
Everything above is used for app functionality only — never for advertising, tracking, or profiling, and it is never sold.
Website forms: if you request a demo or download a resource on our marketing site, we collect the name, department, and contact details you submit (processed by Netlify, our hosting provider) and use them only to respond to you. No mailing list without your say-so; unsubscribe by replying to any email.
When you use label-scan or vial-count features, the camera frame is sent to our server-side function, processed one-shot by our AI vision providers (currently Anthropic and Google) and then discarded — the image is not stored. Only the extracted result (for example, a drug name and concentration, or a count) is saved as part of your department's records. Photos are stored only when you deliberately attach one, such as an equipment-issue photo.
We do not track your location. The only location data OnPar handles is an optional, single point-in-time GPS stamp captured when a user signs a controlled-substance record, to strengthen that record's evidentiary value. It is a one-time fix during a user-initiated action, not continuous tracking, and it is stored with that custody record.
Patient care records (controlled-substance entries explicitly instruct crews to use age/initials only — no protected health information), social security numbers, payment card numbers (departmental billing is handled by invoice; the app collects no payment details), biometric data (Face ID runs entirely on your device via Apple's APIs), browsing or search history, your contacts, or continuous location. No advertising identifiers, no cross-app tracking, no data brokers.
To provide the service to your department; to secure accounts and maintain audit trails; to send notifications your department configures (shift reminders, alerts, briefings); to provide support; and to fix bugs using our own error reports. That's the list.
Your data is retained while your department's account is active, under your department's control. After termination, departments have a 90-day export window. Controlled-substance custody records are append-only and are retained to satisfy the recordkeeping obligations that apply to your department — including DEA-mandated retention periods — and are deleted only on the department's signed instruction. You may ask your department administrator to deactivate your individual account at any time; audit records of actions you took remain part of your department's records.
Encryption in transit and at rest, row-level tenant isolation so each department can only reach its own data, role-based access, regular automated backups, and append-only controlled-substance records. No system is perfectly secure; we will notify affected departments without undue delay after confirming any breach.
OnPar is a workplace tool for emergency-services personnel. It is not directed to children under 16, and never to children under 13; we do not knowingly collect data from children.
We'll post changes here and update the effective date; material changes will be announced in-app to department administrators.
Whyte Line Holdings LLC dba OnPar Fire & EMS · Texas
Privacy requests and questions: sales@onparfireems.com — a monitored shared inbox, not a single person's mailbox. Technical support: support@onparfireems.com.
Support · Terms of Service · Acceptable Use Policy · Security & compliance