← OnPar home

Privacy Policy

Effective date: July 23, 2026 (first published July 9, 2026)

OnPar Fire & EMS ("OnPar," "we," "us") is operated by Whyte Line Holdings LLC, a Texas limited liability company. OnPar is an operations platform for fire departments and EMS agencies. This policy covers the OnPar app — including the iOS app "OnPar — Fire & EMS Readiness" — and this marketing website. It explains what we collect, why, and your choices.

The short version

What we collect in the app

DataWhat it includesWhy
Account dataName, email address, phone number (optional, for SMS notifications), department, role, and the account identifier that ties your records to you.Sign-in, roster identity, and the audit trails your department relies on.
Roster & schedule dataShift assignments, schedules, certifications and readiness items your department tracks.Scheduling and readiness features.
Operational recordsInventory items and counts, expiration dates and lot numbers, apparatus checklists, maintenance records, messages/alerts, and controlled-substance custody records — counts, seal numbers, drawn sign-off signatures, and (if the signer permits it) a single point-in-time GPS stamp on the sign-off.This is the product: your department's operational and custody recordkeeping.
Photos & documents you attachEquipment-issue photos, invoices, and apparatus documents you choose to upload.Stored for your department only when you attach them.
Device dataA push-notification token if you enable notifications.Delivering the notifications your department configures.
DiagnosticsOur own first-party error reports: error message, the screen it happened on, viewport size, browser/device string, and your account and department identifiers.Finding and fixing bugs. This is not a behavioral-analytics service — no third-party diagnostics SDK is involved.

Everything above is used for app functionality only — never for advertising, tracking, or profiling, and it is never sold.

Website forms: if you request a demo or download a resource on our marketing site, we collect the name, department, and contact details you submit (processed by Netlify, our hosting provider) and use them only to respond to you. No mailing list without your say-so; unsubscribe by replying to any email.

Camera and scanning

When you use label-scan or vial-count features, the camera frame is sent to our server-side function, processed one-shot by our AI vision providers (currently Anthropic and Google) and then discarded — the image is not stored. Only the extracted result (for example, a drug name and concentration, or a count) is saved as part of your department's records. Photos are stored only when you deliberately attach one, such as an equipment-issue photo.

Location

We do not track your location. The only location data OnPar handles is an optional, single point-in-time GPS stamp captured when a user signs a controlled-substance record, to strengthen that record's evidentiary value. It is a one-time fix during a user-initiated action, not continuous tracking, and it is stored with that custody record.

What we do not collect

Patient care records (controlled-substance entries explicitly instruct crews to use age/initials only — no protected health information), social security numbers, payment card numbers (departmental billing is handled by invoice; the app collects no payment details), biometric data (Face ID runs entirely on your device via Apple's APIs), browsing or search history, your contacts, or continuous location. No advertising identifiers, no cross-app tracking, no data brokers.

How we use it

To provide the service to your department; to secure accounts and maintain audit trails; to send notifications your department configures (shift reminders, alerts, briefings); to provide support; and to fix bugs using our own error reports. That's the list.

Who can see your data

Retention

Your data is retained while your department's account is active, under your department's control. After termination, departments have a 90-day export window. Controlled-substance custody records are append-only and are retained to satisfy the recordkeeping obligations that apply to your department — including DEA-mandated retention periods — and are deleted only on the department's signed instruction. You may ask your department administrator to deactivate your individual account at any time; audit records of actions you took remain part of your department's records.

Security

Encryption in transit and at rest, row-level tenant isolation so each department can only reach its own data, role-based access, regular automated backups, and append-only controlled-substance records. No system is perfectly secure; we will notify affected departments without undue delay after confirming any breach.

Your choices

Children

OnPar is a workplace tool for emergency-services personnel. It is not directed to children under 16, and never to children under 13; we do not knowingly collect data from children.

Changes

We'll post changes here and update the effective date; material changes will be announced in-app to department administrators.

Contact

Whyte Line Holdings LLC dba OnPar Fire & EMS · Texas

Privacy requests and questions: sales@onparfireems.com — a monitored shared inbox, not a single person's mailbox. Technical support: support@onparfireems.com.

Support · Terms of Service · Acceptable Use Policy · Security & compliance