Who operates the app
Jordan Gopie / jgopie.com provides Brownie Badge Progression and is the contact for privacy requests concerning information handled by the app. Authorized adult leaders enter and manage their units' records. Android and iOS use a shared cloud service; desktop versions store records locally.
The app is operated by adults. Children do not create app accounts, although an adult may show a child her achievements.
Information we handle
- Adult accounts: Google account name, email, account identifier, verified sign-in information, approval status, role, and assigned units or divisions. Google and Firebase handle sign-in credentials; the app does not receive your Google password. Firebase may retain profile information supplied by Google, such as a profile image URL.
- Brownie records: names, unit/division/Six membership, badge checklists, progress, notes, awards, and activity dates and name snapshots.
- Unit and adult directory: operating schools, unit and Six names, adult Guider names, positions, training levels, and Unit Badge definitions.
- Certificates: recipient and badge details, division/unit snapshots, district, remarks, dates, and drawn signatures.
- Operation data: record identifiers, synchronization timestamps, change receipts, deletion markers, and pending offline edits used to maintain consistent records.
- Device information: local copies of accessible records, theme and selected-Guider preferences, and temporary export files. Desktop users may also select badge artwork files stored locally.
- Requests: account-deletion requests and information you choose to send in support or privacy correspondence.
The app has no dedicated fields for children's dates of birth, addresses, health information, or contact details. Please do not enter unnecessary sensitive information in notes or remarks.
Why information is used
We use this information to authenticate adults, administer access, maintain unit records, track achievements, generate certificates and reports, synchronize authorized devices, prevent conflicting changes, and respond to support and privacy requests.
The app does not include advertising, advertising identifiers, cross-app tracking, Google Analytics, or Firebase Crashlytics. We do not sell personal information or use unit records for advertising. Authentication and cloud providers may process technical information such as IP addresses and service logs to operate and secure their services.
Children's information
The app deliberately handles children's information entered by authorized adults. Leaders must have their organization's authorization and obtain any parent or guardian permission required for recording and sharing it. They should enter only information needed for unit administration.
Parents or guardians can contact their unit leader or contact@jgopie.com to request access, correction, or permanent erasure of their child's records. We may verify the requester's identity and relationship to the child before disclosing or deleting records. Do not email passwords or unnecessary identity documents.
Who can access information
Approved leaders access their assigned units. Approved Division Commissioners have read-only access to assigned divisions, including reports and exports. Administrators can manage records across units and administer access. The publisher's authorized technical operator can access information when needed to operate the service or handle privacy requests.
Google Firebase Authentication and Cloud Firestore provide sign-in and shared storage. See Firebase privacy and security information and the Google Privacy Policy.
When an adult exports a CSV or PDF, the selected sharing application and recipients receive that file. They control their copies under their own policies. Information may also be disclosed when required by applicable law or necessary to protect the service or people's rights.
Storage, security, and international processing
Mobile records are stored in Firestore in the United States (us-east1) and copied to authorized devices for offline use. Google authentication and service operations may involve processing in other countries. Desktop records and uploaded artwork remain on the device unless you export or back them up.
Mobile access uses Google authentication, administrator approval, and server-enforced permissions. Cloud connections use encrypted transport. Local SQLite files are not separately encrypted by the app; device protection and operating-system security remain important. No storage or transmission system can guarantee complete security.
Signing out stops synchronization and hides records but is not secure erasure. A disconnected device may retain previously authorized information until it reconnects. Device backups and previously exported copies may also remain outside the app's control.
Retention and deletion
Account and shared unit records have no automatic expiry. Unit records remain available for ongoing administration until removed or a verified permanent-erasure request is fulfilled.
Ordinary Delete actions remove records from normal use but can retain their contents in cloud synchronization records. Deleting a Brownie does not automatically delete separate certificate snapshots. Archiving a badge preserves its history. Use a permanent-erasure request when you want personal information removed from these retained records.
You can initiate account deletion inside the app or use our account and data deletion page. We complete account deletion within 30 days of receiving an authenticated request, or verification of a request submitted outside the app, and send confirmation. This removes the app login, access assignments, operation receipts, and account-linked technical metadata. It does not delete your Google account.
Children's and other adults' shared organizational records are not owned by the person who entered them and are not automatically erased when that person's login is deleted. Requests concerning your own Guider information or signatures are reviewed separately. Verified requests to erase a member's records are fulfilled within 30 days, including related personal snapshots and retained deleted copies. Minimal markers without names, notes, or signatures may remain to prevent stale devices from recreating erased records.
Request contact details are removed from the processing queue after completion notification. Support correspondence is retained only while needed to answer or resolve the request. Any legally required exception to erasure will be explained to the requester. We cannot recall files already shared with recipients or remotely erase a disconnected device or its backups.
Your choices and rights
You can ask for access, correction, deletion, or information about the handling of your personal data by emailing contact@jgopie.com. Depending on applicable law, you may have additional rights to restrict or object to processing, withdraw consent, or complain to a relevant authority. Withdrawing permission does not undo processing already carried out.
Protect your device and share exports only with appropriate recipients. Clearing app storage removes local working data but does not erase shared cloud records, external exports, or backups. Uninstalling is not an account-deletion request.
Policy changes and contact
We update this policy when the app or its data practices change and revise the effective date. Material changes will be communicated through an appropriate app or service notice.
Contact Jordan Gopie / jgopie.com at contact@jgopie.com. Include “Brownie Badge Progression privacy” in your subject and only the information necessary to explain your request.