IONTB Scanner
Privacy Policy
Effective September 5, 2026
IONTB Scanner does not sell personal information, display advertising, or track you across other companies' apps and websites. It uses limited account, device, preference, session, and diagnostic data to authenticate access, enforce connection limits, synchronize settings, and provide reliable audio.
1. Scope
This policy applies to the IONTB Scanner mobile application, its web player, and the scanner services they use (collectively, the “Service”). It does not apply to separately operated websites linked from the Service.
2. Information we process
- Access and authentication data. The access code you enter is transmitted securely to authenticate your scanner access. The Service stores the associated account identifier and a cryptographic hash of the issued session token. The app or browser stores the issued token so you can remain signed in.
- Device and live-session data. The Service uses a randomly generated device identifier, client type (app or browser), connection identifier, live status, heartbeat times, and playback cursor. This supports live operation, reconnection, and enforcement of the account's connection limit.
- Preferences and activity. For ordinary access accounts, Favorites, Quick Sets, selected talkgroups, and related scanner preferences may be stored with the access account so they can synchronize across devices using the same access code. For accounts designated as shared, those choices are stored only in that app installation or browser profile and are not synchronized to other users.
- Audio and connection diagnostics. The Service may record playback and reconnection events, error messages, timestamps, broad network state such as Wi-Fi or cellular, and audio route categories such as speaker, Bluetooth, or CarPlay. It does not collect Wi-Fi network names or precise location.
- Optional emergency notifications. If you enable background emergency notifications, the Service stores an Apple Push Notification service device token with the access-account and random device identifiers. It is used only to deliver the scanner emergency notifications you request and is disabled when you turn the setting off or change access accounts.
- Standard network information. Hosting and security providers may process information normally sent with an internet request, such as IP address, browser or device information, request time, and requested URL, to deliver and protect the Service.
- Support communications. If you contact us, we receive the information you choose to include in your message.
3. Information we do not collect
The Service does not request your name, physical address, contacts, photos, precise or coarse location, advertising identifier, or payment information. It does not use the microphone or record audio from your device. Scanner audio is received from the configured IONTB server.
4. How information is used
We use the information described above only to provide and secure the Service, authenticate access, enforce connection limits, maintain and restore live audio, synchronize scanner preferences, deliver optional emergency notifications, diagnose technical problems, respond to support requests, and comply with legal obligations.
5. Sharing and tracking
IONTB does not sell personal information and does not use information for third-party advertising or cross-app tracking. Limited information may be processed by service providers that host, deliver, or protect the Service, including infrastructure and content-delivery providers. We require those providers to protect the information consistently with this policy and applicable law. We may also disclose information when reasonably necessary to comply with law, protect the Service, or prevent misuse.
6. Retention
- Authentication sessions normally expire after 30 days.
- Live connection leases normally expire within approximately 75 seconds after heartbeats stop.
- Connection diagnostic events are retained for up to 30 days.
- An enabled notification token remains registered until it is replaced, disabled, invalidated by Apple, or the associated access profile is removed.
- For ordinary accounts, Favorites and Quick Set preferences remain associated with the access account until they are reset, the access profile is removed, or deletion is requested. Shared-account preferences remain on the device until app/browser storage is cleared or the app is removed.
- Infrastructure and security logs may be retained for the periods needed to operate and protect the Service or as configured by the applicable service provider.
7. Your choices
You may stop live listening at any time. Background emergency notifications are optional and may be disabled in the app or in Apple Settings. Changing the access code signs the current device out, disables its scanner notification registration for that account, and removes its locally stored session token. Ordinary accounts synchronize supported preferences across devices using the same access code. Accounts designated as shared retain each listener's choices only on that app installation or browser profile, so those choices do not affect other users of the shared code.
To request deletion or reset of data associated with an access account, contact [email protected]. We may need enough information to verify that you control the relevant access account.
8. Security
We use reasonable administrative and technical safeguards, including encrypted HTTPS connections and hashed server-side session tokens. No internet service can guarantee absolute security.
9. Children's privacy
The Service is not directed to children under 13, and we do not knowingly collect personal information from children under 13.
10. Changes to this policy
We may update this policy as the Service changes. The effective date at the top of this page will identify the latest version. Material changes will be communicated through the Service or another appropriate method.
11. Contact
Questions or privacy requests may be sent to [email protected].