Laatst bijgewerkt: 8 september 2026
Vindt u een beveiligingsprobleem in FireSignal, meld het dan aan security@1338.nl. U krijgt binnen drie werkdagen antwoord. Meldingen worden serieus genomen en er wordt niet juridisch opgetreden tegen melders die zich aan onderstaande afspraken houden.
Er is geen beloningsprogramma. FireSignal is een klein product; wat we kunnen bieden is een snelle oplossing en erkenning.
De publieke kaart werkt zonder account. Er staan geen advertenties op, er zijn geen analytics van derden, en u wordt niet gevolgd over websites heen. Wij tellen wel hoe vaak een pagina wordt bekeken, met zelf gehoste software op ons eigen domein; wat dat precies inhoudt staat hieronder.
| Gegeven | Waarom | Bewaartermijn |
|---|---|---|
| IP-adres bij het aanroepen van bepaalde functies | Misbruik beperken (een limiet per uur per adres) | Enkele uren; de teller ruimt zichzelf op |
| Thema-, taal- en weergavevoorkeur | Uw instelling onthouden | Blijft in uw browser, wij zien het niet |
| Paginaweergave: welke pagina, de vorige pagina, land, soort apparaat en browser | Zien welke pagina's gelezen worden en of iets stuk is | Geteld, niet per bezoeker bewaard; wij gebruiken zelf gehoste software op ons eigen domein, zonder cookies en zonder een kenmerk dat u over bezoeken heen herkenbaar maakt |
| Uw locatie, als u die zelf deelt via "Mijn locatie" | De afstand en richting tot een brand berekenen | Blijft in uw browser en wordt niet verzonden; weg zodra u de pagina sluit of op × klikt |
De meting van paginaweergaven zit alleen op de website. In de app FireSignal staat geen meetcode: dat blok wordt bij het bouwen uit het pakket gehaald.
De kaart laadt lettertypen van Google Fonts, kaartlagen van CARTO en vlaggetjes van flagcdn. Die partijen zien daarbij uw IP-adres, zoals bij elke website die externe bronnen gebruikt.
| Gegeven | Waarom | Bewaartermijn |
|---|---|---|
| Naam en e-mailadres van gebruikers van het portaal | Inloggen en beheer | Zolang het abonnement loopt |
| E-mailadressen van alarmontvangers | Waarschuwingen versturen | Zolang het abonnement loopt |
| Namen en coördinaten van uw locaties | De bewaking zelf | Zolang het abonnement loopt |
| IP-adres en tijdstip bij inlogpogingen | Beveiliging tegen misbruik | Kort, alleen voor de begrenzing |
| IP-adres en browsertype bij het openen van een gedeelde kaartlink | Zien of en hoe de deellink gebruikt wordt | Zolang het abonnement loopt |
| Logboek van beheerhandelingen met e-mailadres en IP-adres | Herleidbaar houden wie wat wijzigde | Zolang het abonnement loopt |
De kaart in de app werkt zonder account. Een account is alleen nodig om plekken te volgen en waarschuwingen te ontvangen.
| Gegeven | Waarom | Bewaartermijn |
|---|---|---|
| E-mailadres | Inloggen met een eenmalige code, en het versturen van die code | Tot u uw account verwijdert |
| De plekken die u volgt: naam, coördinaat en straal | Bepalen of een brand binnen uw straal valt | Tot u de plek of uw account verwijdert |
| Pushtoken van uw toestel | Een melding naar dat toestel kunnen sturen | Tot u uitlogt, de app verwijdert of uw account verwijdert |
| Taalvoorkeur | De meldingen in uw eigen taal | Tot u uw account verwijdert |
| Welke waarschuwingen u kreeg, met datum en afstand | De historie in de app, en zien of het systeem werkt | Blijft bewaard zonder uw naam, ook na verwijdering; zie hieronder |
| Aankoopgegevens van een abonnement: het transactienummer van Apple en de einddatum | Vaststellen of u Plus heeft | Tot u uw account verwijdert |
| IP-adres bij het aanvragen van een inlogcode | Misbruik beperken | Enkele uren |
Een pushmelding kan niet rechtstreeks van onze server naar uw telefoon. Op iPhone gaat hij verplicht via Apple (APNs), op Android via Google (Firebase Cloud Messaging). Dat geldt voor elke app met meldingen; er is geen weg omheen.
Dat betekent dat Apple respectievelijk Google weet dat uw toestel deze app heeft, en dat de tekst van een melding hun servers passeert. Wij sturen daarin niet meer dan nodig: de naam die u zelf aan een plek gaf, de afstand en de richting. Geen e-mailadres, geen coördinaat, geen account-id.
Van Firebase gebruiken wij alleen het versturen van meldingen. Geen analytics, geen advertentie-id, geen crashrapportage; die onderdelen zitten niet in de app.
De app vraagt uw locatie alleen als u zelf op "Mijn locatie" tikt, en dan met opzet onnauwkeurig: iOS geeft ons een grove positie, geen adres. Wij slaan die niet op en versturen hem niet. De app volgt u niet op de achtergrond.
De plekken die u zelf toevoegt zijn iets anders: die kiest u bewust en die bewaren wij wél, want zonder coördinaat kunnen wij niet waarschuwen.
Dat kan in de app zelf, bij Account. Weg gaan: uw e-mailadres, uw inlogsessies, de pushtokens van uw toestellen, de wachtrij met nog te versturen meldingen, uw abonnementsgegevens en de namen van uw plekken.
Wat blijft staan is de coördinaat van die plekken en de bijbehorende waarschuwingen, zonder naam en zonder e-mailadres. Dat is geen persoonsgegeven meer: "op deze coördinaat was op die datum brand binnen 20 km" zegt niets meer over wie dat was, en het is wel de basis van de cijfers die wij naar buiten brengen over hoe vaak en hoe snel er gewaarschuwd is.
FireSignal draait op servers die wij huren bij Hetzner Online GmbH, in een datacentrum in Duitsland. Hetzner levert alleen de infrastructuur en heeft geen toegang tot de inhoud van de gegevens; formeel is Hetzner een verwerker en zijn wij verwerkingsverantwoordelijke. Er wordt geen opslag buiten de Europese Unie gebruikt.
Uitgaande e-mail loopt via een mailserver die wij zelf beheren op diezelfde infrastructuur. Alarmmails gaan rechtstreeks naar de door u opgegeven ontvangers en niet via een externe mailingdienst.
Daarnaast laadt de publieke kaart onderdelen van derden (Google Fonts, CARTO voor de kaartachtergrond, flagcdn voor vlaggen). Die zien het IP-adres van de bezoeker, zoals bij elke website die externe bronnen gebruikt. Het klantportaal gebruikt die bronnen niet.
U mag opvragen welke gegevens wij over u hebben, ze laten corrigeren of laten verwijderen, en bezwaar maken tegen de verwerking. Stuur daarvoor een bericht aan hallo@1338.nl. U krijgt binnen een maand antwoord. Bent u het oneens met hoe wij ermee omgaan, dan kunt u een klacht indienen bij de Autoriteit Persoonsgegevens.
1338, Nederland. Contact: hallo@1338.nl. Voor beveiligingsmeldingen: security@1338.nl.
Last updated: 8 September 2026
If you find a security issue in FireSignal, please report it to security@1338.nl. You will get a reply within three working days. Reports are taken seriously, and we will not take legal action against reporters who follow the guidelines below.
There is no bug bounty. FireSignal is a small product; what we can offer is a quick fix and acknowledgement.
The public map works without an account. There are no adverts, no third-party analytics, and you are not followed across websites. We do count how often a page is viewed, using self-hosted software on our own domain; what that involves is set out below.
| Data | Why | Retention |
|---|---|---|
| IP address when calling certain functions | Limiting abuse (a cap per hour per address) | A few hours; the counter cleans itself up |
| Theme, language and view preference | Remembering your setting | Stays in your browser; we never see it |
| Page view: which page, the previous page, country, device type and browser | Seeing which pages are read and whether something is broken | Counted, not kept per visitor; we use self-hosted software on our own domain, without cookies and without an identifier that makes you recognisable across visits |
| Your location, if you share it yourself via "My location" | Calculating distance and bearing to a fire | Stays in your browser and is never transmitted; gone when you close the page or click × |
Page view measurement is on the website only. The FireSignal app contains no measurement code: that block is stripped from the package at build time.
The map loads fonts from Google Fonts, map tiles from CARTO and flags from flagcdn. Those parties see your IP address, as with any website using external resources.
| Data | Why | Retention |
|---|---|---|
| Name and email address of portal users | Login and administration | For the duration of the subscription |
| Email addresses of alert recipients | Sending alerts | For the duration of the subscription |
| Names and coordinates of your sites | The monitoring itself | For the duration of the subscription |
| IP address and time of login attempts | Protection against abuse | Briefly, only for rate limiting |
| IP address and browser type when a shared map link is opened | Seeing whether and how the shared link is used | For the duration of the subscription |
| Audit log of administrative actions with email and IP address | Keeping track of who changed what | For the duration of the subscription |
The map in the app works without an account. An account is only needed to follow places and receive alerts.
| Data | Why | Retention |
|---|---|---|
| E-mail address | Signing in with a one-time code, and sending that code | Until you delete your account |
| The places you follow: name, coordinate and radius | Determining whether a fire falls within your radius | Until you delete the place or your account |
| Push token of your device | Being able to send a notification to that device | Until you sign out, remove the app or delete your account |
| Language preference | Alerts in your own language | Until you delete your account |
| Which alerts you received, with date and distance | The history in the app, and checking that the system works | Kept without your name, also after deletion; see below |
| Subscription data: Apple's transaction identifier and the end date | Establishing whether you have Plus | Until you delete your account |
| IP address when requesting a sign-in code | Limiting abuse | A few hours |
A push notification cannot go straight from our server to your phone. On iPhone it must pass through Apple (APNs), on Android through Google (Firebase Cloud Messaging). That applies to every app with notifications; there is no way around it.
This means Apple, respectively Google, knows that your device has this app, and that the text of a notification passes their servers. We put no more in it than needed: the name you gave a place yourself, the distance and the direction. No e-mail address, no coordinate, no account id.
Of Firebase we use only the sending of notifications. No analytics, no advertising id, no crash reporting; those components are not in the app.
The app asks for your location only when you tap "My location" yourself, and then deliberately coarse: iOS gives us an approximate position, not an address. We do not store it and do not transmit it. The app does not track you in the background.
The places you add yourself are different: you choose those deliberately and we do store them, because without a coordinate we cannot warn you.
You can do this in the app, under Account. Removed: your e-mail address, your sessions, the push tokens of your devices, the queue of pending notifications, your subscription data and the names of your places.
What remains is the coordinate of those places and the associated alerts, without a name and without an e-mail address. That is no longer personal data: "at this coordinate there was a fire within 20 km on that date" says nothing about who that was, and it is the basis of the figures we publish about how often and how quickly warnings were sent.
FireSignal runs on servers we rent from Hetzner Online GmbH, in a data centre in Germany. Hetzner supplies the infrastructure only and has no access to the content of the data; formally Hetzner is a processor and we are the controller. No storage outside the European Union is used.
Outgoing email runs through a mail server we operate ourselves on that same infrastructure. Alert emails go directly to the recipients you specify, not through an external mailing service.
In addition, the public map loads third-party components (Google Fonts, CARTO for the base map, flagcdn for flags). Those parties see the visitor's IP address, as with any website using external resources. The customer portal does not use them.
You may request what data we hold about you, have it corrected or deleted, and object to the processing. Write to hallo@1338.nl; you will get a reply within one month. If you disagree with how we handle it, you can complain to the Dutch Data Protection Authority (Autoriteit Persoonsgegevens).
1338, the Netherlands. Contact: hallo@1338.nl. For security reports: security@1338.nl.