Still Here is operated by Sahaj Tech LLC
Sahaj Tech LLC (Still Here) collects only what is necessary to operate the service:
We do not collect location data, browsing history, or any data beyond what is needed to send check-in alerts.
We never sell your data. We never use it for advertising. We never share it with third parties except to deliver the service (Twilio for SMS, Resend for email, Firebase for push).
When you add an emergency contact, we send them a one-time email explaining the service and what to expect. We only contact them again if you miss a check-in and your grace period expires. They can opt out at any time by replying to that email.
Your account and all associated data are deleted immediately when you confirm your account deletion request (via the link emailed to you). Check-in history older than 365 days is automatically purged. Emergency contact information is deleted immediately when you remove a contact.
If you run Still Here on your own infrastructure, we have no access to your data. You are the data controller. Our Docker image contains no telemetry or phone-home code.
Passwords are hashed with bcrypt. API keys are stored as SHA-256 hashes. JWTs use HS256 with a secret you control. Database connections use TLS. We do not store payment details — Stripe handles all card data.
Questions about privacy? Contact Sahaj Tech LLC at [email protected]. For self-hosted deployments, open an issue on GitHub.