Your data, and how we look after it
This notice explains, in plain language, who stands behind Exit Protocol, what personal data we hold, and the rights you have over it under the Data Protection (Jersey) Law 2018. For the cryptographic detail behind the promises here, see the security architecture.
Last updated: July 2026
Who we are
Exit Protocol is a registered business in Jersey, Channel Islands ([JFSC registration no. pending]). We are the data controller for the personal data described here.
We are registered with the Jersey Office of the Information Commissioner ([JOIC registration no. pending]) and handle personal data in line with the Data Protection (Jersey) Law 2018.
The privacy-first principle
Exit Protocol is built so that we hold as little of your information as the service can possibly work with — and so that the most sensitive part, the contents of your vault, is one we cannot read at all.
Your vault is encrypted on your own device with a key derived from your master password before anything is sent to us. What reaches our servers is a sealed, unreadable box. We have no master key and no way to open it. This means most of what you entrust to Exit Protocol never exists, in readable form, anywhere we can see.
What personal data we hold
The personal data we actually hold about you is limited to:
- Your accountYour email address, a salted hash used to authenticate you (never your password itself), your chosen timezone, and account timestamps.
- Your vault, sealedEncrypted vault contents and encrypted file attachments. We store these as ciphertext and cannot decrypt them.
- Your recipientsThe names, contact details, and delivery settings you enter for the people who should receive a vault. You provide these; please only add people whose details you are entitled to share.
- Your PulseCheck-in and delivery scheduling data — when you last checked in, when the next deadline falls, and the switch's state.
- BillingSubscription and payment status. Card details are handled by our payment provider and are never stored on our servers.
- Technical logsLimited security and operational logs (for example, sign-in events and error diagnostics) needed to keep the service safe and working.
Why we hold it
We only process this data to run the service you have signed up for: to authenticate you, to keep your Pulse ticking, to deliver sealed vaults to the recipients you have chosen when the switch fires, to take payment, and to keep the platform secure. We do not sell your data, and we do not use it for advertising.
How long we keep it
We keep your data for as long as your account is active. If you close your account, we delete your vaults, recipients, and account data, retaining only what we are legally required to keep (such as limited billing records) for as long as the law requires.
Your rights
Under the Data Protection (Jersey) Law 2018 you have the right to access the personal data we hold about you, to have inaccurate data corrected, to have your data erased, to object to or restrict how we process it, and to data portability. To exercise any of these, contact us using the details below.
Contact & complaints
For any privacy question or to exercise your rights, reach us through our secure contact form. We will respond within the timeframes the law requires.
If you are unhappy with how we have handled your data, you have the right to complain to the Jersey Office of the Information Commissioner, the independent regulator with whom we are registered.