What we can see, and what we can't.
This is the whole point of Time Release Safes: almost everything you put in is encrypted with keys we never hold, so we can't read it. Below is the honest, plain-language account of the little we can see, why, and what we never do with it.
Effective date: August 7, 2026. If we make material changes, we'll update this page and, where appropriate, notify you in the app.
The short version
Your Safes, files, recordings, and location captures are end-to-end encrypted on your device. We cannot read them — not for you, not for your family, not for a court. We can see the minimum needed to run an account: your email, an account ID, your subscription status, the contacts you ask us to notify, and basic technical logs. We do not sell your data, show ads, use advertising identifiers, or embed third-party trackers or analytics. You can delete your account and data at any time.
1. Who we are
Time Release Corporation, of Atlanta, Georgia, operates Time Release Safes ("TRS"). This policy covers the TRS mobile app and this website. Questions? Contact us.
2. Zero-knowledge by design
TRS encrypts your content on your device with keys that live only on your devices and with the people you designate. We never receive those keys. As a result we cannot read, decrypt, produce, or recover the contents of your Safes, your recordings, your files, or your location captures. This isn't a setting you can toggle — it's the architecture of the product.
3. What we can see (and collect)
To run your account and deliver what you ask us to, our servers hold a limited set of information we can read:
Account details. Your email address and a randomly generated account ID. Your password is stored only as a salted hash, never in plain text.
Recipients you designate. When you add someone to receive a Safe or an alert, we store the contact details you provide (such as their email or phone number) so we can notify and route to them. We need these in readable form to actually send the message.
Subscription status. Whether you're on Free, Plus, Pro, or Family. Payments are processed by Apple — we never see your card number or full billing details.
Technical and diagnostic data. Standard operational logs such as IP address, timestamps, app version, device and OS type, and error or crash events, used to operate, debug, and secure the service.
Push notification tokens. So we can deliver alerts to your device and to the recipients you chose.
4. What is end-to-end encrypted and unreadable to us
The substance of the product is encrypted on your device before it ever reaches us, using XChaCha20-Poly1305 authenticated encryption, and we never hold the keys. That includes the contents of your Safes (files, notes, documents), your video and audio captures, and the location data attached to a Check-in or Panic. We store these only as ciphertext we cannot open, and we deliver them — still encrypted — to the recipients you chose.
5. Location
Location gets its own section because it's sensitive.
A Check-in or Full Panic can attach a one-time encrypted location snapshot, and an active session can share your live location so the trusted contacts you chose can find you. Live and background location runs only during a safety session you start, and stops the moment that session ends. It is never collected for tracking, advertising, or analytics. All coordinates are end-to-end encrypted on your device before upload — we cannot see where you are. You control the location permission and can turn it off in iOS Settings at any time.
6. How we use what we can see
Only to provide and protect the service: to authenticate you, run your subscription, route and deliver Safes and alerts to the recipients you chose, send account and safety notifications, provide support, and detect abuse or keep the system secure. That's the entire list.
7. What we never do
We never sell, rent, or trade your data. We show no ads and use no advertising identifiers (no IDFA). We embed no third-party analytics or tracking SDKs in the app, and we do not track you across other apps or websites. We never use your content to train models — we can't, because we can't read it.
8. Who else touches your data
Infrastructure. The service runs on cloud infrastructure (Amazon Web Services), which stores data on our behalf under contract. Your encrypted content stays encrypted there.
Apple. Handles subscription payments and delivers push notifications.
Recipients you choose. That's the point — content and alerts go to the people you designate, and only them.
Law enforcement. Because your content is end-to-end encrypted, we cannot produce it even if legally compelled — we don't have the keys. If served with valid legal process, the most we can provide is the limited account metadata described above (such as an email address), and we'll notify you where we're permitted to.
9. Keeping and deleting your data
You can delete your account and its data at any time from within the app or via our account deletion page. When you delete your account, we remove your account records and encrypted content from active systems; residual copies in backups age out on our normal backup cycle. Because we don't hold your keys, deleting your recovery paths (recovery phrase, Recoverees) can make your encrypted content permanently unrecoverable — that is intended.
10. Children
TRS is not directed to children. The app is rated 17+ and intended for adults, and we do not knowingly collect data from children under 13.
11. Security
Your content is end-to-end encrypted with keys that never leave your devices, and data in transit is protected with TLS. No system is perfectly secure, but the architecture is built so that a breach of our servers exposes only ciphertext that we ourselves cannot read.
12. Changes to this policy
If we make material changes, we'll update this page and, where appropriate, notify you in the app. The effective date at the top reflects the latest version.
13. Contact
Privacy questions: contact us or email support@timereleasesafes.com. Security issues: security@timereleasesafes.com.