Privacy Policy — Firepulse (mobile app)

Last updated: 2026-05-10

In a nutshell: Firepulse is a read-only mobile viewer for your Google and Firebase projects. It uses Google Sign-In and asks only for read-only permissions, so it can never create, modify, or delete anything in your Firebase account. A Google refresh token is sent to our server only if you explicitly turn on daily or weekly notifications — it is encrypted with Google Cloud KMS before being written to storage. You can revoke our access at any time in one tap, either from inside the app or at myaccount.google.com/permissions.

This policy explains, in plain language, what we process, why, where it lives, and how you can make it go away.

1. Who we are

2. What data we process

Stored on your device only

Never leaves your phone unless you enable server-side notifications (section below).

Sent to Google APIs

These calls go directly from your phone to Google, over HTTPS, authenticated by your Google account. They are read-only — the app is physically incapable of mutating your Firebase resources, because it has not requested the scopes to do so.

Scopes requested (verbatim from the app's sign-in configuration):

Using these scopes, the app can view your Firebase projects, GA4 analytics, Cloud Monitoring metrics, Cloud Functions / Cloud Run services, enabled APIs, and project billing status. It cannot create, modify, or delete any Firebase or Google Cloud resource, run any Cloud Function, change any Firestore rule, modify billing, or post any data back to your Google Cloud project.

Sent to our server — only if you enable daily / weekly notifications

If (and only if) you tap "Turn on notifications" and accept the in-app consent sheet, the following is sent to our backend:

Generated by our server when a notification fires

3. Why we process it

4. Who we share data with

5. Limited Use of Google user data

Firepulse's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements. In practice that means:

6. Where data is stored

7. How we protect your data

Security procedures are in place to protect the confidentiality of your data. Specifically:

8. How long we keep it

9. Your rights

10. Children

This app is intended for users 13 and older. It is not marketed to children, does not feature content designed to appeal to children, and does not knowingly collect data from anyone under 13.

11. Changes to this policy

If we change what we collect or how we process it, we will update this page and bump the consentVersion flag in the app. The next time you open the app after a material change, you will be asked to re-consent before the change takes effect — your old consent does not roll forward silently.


This policy describes the behavior of the "Firepulse" mobile app as of the last-updated date. It applies only to that app (published on the Google Play Store) and the backend that serves its notification feature.