CampFire privacy policy
Version 2026-09 · effective from . This is a plain-English policy that is still pending legal review. It describes how CampFire works today, and we will update it if the review changes anything.
CampFire helps people who met at an event stay in touch. It holds your card, the people you met and your conversations, so we have tried to collect as little as possible, keep it close to home, and make it easy to see, download or delete. We handle personal information under the Privacy Act 1988 (Cth) and the Australian Privacy Principles.
Who we are
CampFire is made and operated by Yuma IT, an Australian business, at campfire.yumait.au and in the CampFire apps for iPhone and Android. In this policy “we” and “us” means Yuma IT.
For anything about your privacy, contact our privacy officer at privacy@yumait.com.au. To report a security issue, email security@yumait.com.au.
What we collect
- Your account. The email address you sign in with, or the identity Apple or Google confirms if you use one of those. If you add a passkey we keep only its public key. Your sign-in email is never shown on your card.
- Your CampFire Card. A display name is the only required field. Everything else is optional and added by you: photo, pronouns, organisation, role, bio, location (free text you type, not tracked), interests, expertise, “ask me about”, who you want to meet, links, and a contact email and phone number separate from your sign-in email. We also keep your visibility and messaging settings for each field.
- Guest sessions. You can view a card without an account. To connect or reply as a guest you only give a name; we don’t ask for an email or password until you choose to sign in.
- Connections. Who you connected with and the “where we met” context: the event, the date, and whether it was by QR code, NFC or App Clip.
- Private notes and reminders. Notes you write about a connection (what you talked about, what to follow up) and follow-up reminders. Only you can read them.
- Messages and attachments. Messages, reactions and files you send in direct conversations and Campfires.
- Campfires and introductions. The small groups you create or join, your role in them, links and files shared there, and introductions you make or receive.
- Event attendance. Events you joined, your role there, and whether you appear in the event’s attendee list. If an organiser invited you, they gave us your name, email and badge details for that invitation.
- Devices. If you turn on notifications, your device’s push token, platform and app version, so we can deliver them.
- Checks that you’re a person. When you join as a guest, we may check that the request comes from a real browser (Cloudflare Turnstile) or a genuine copy of our app on a real device (Apple App Attest on iPhone, Google Play Integrity on Android). We keep the result (passed, not checked, or failed), which decides how much a guest can do. On iPhone we also keep a public key the app created for this check; it identifies the app installation, not you, and isn’t linked to your account.
- Consent records. When you accept this policy or the terms, allow notifications, or change whether you appear in attendee lists, we record the decision, the version and the time.
- Safety and security records. Blocks, reports you make or that are made about you (a report can include the text of the reported message), your IP address and device type for active sign-in sessions, and a security log of account actions in which IP addresses are stored only as a salted one-way hash.
What we don’t collect
- No passwords. You sign in with an email link, a passkey, Apple or Google.
- No contact-book uploads and no location tracking.
- No advertising, no advertising or cross-app tracking, and no third-party analytics tools.
- We never sell your information or share it for marketing.
- We don’t ask for sensitive information such as health or religion. If you choose to put something like that in your bio, it follows your visibility settings.
How we collect it
- From you, when you fill in your card, connect, write notes or send messages.
- From Apple or Google, if you choose to sign in with them.
- From other people: when someone scans your card and you connect, both of you get a record of where you met; an organiser may invite you to their event; another person may report a message.
- From your device, when you allow notifications.
How we use it
- To run CampFire: showing your card to the people you allow, connecting you, delivering messages and notifications, and reminding you of follow-ups you set.
- To keep people safe: enforcing blocks, reviewing reports and removing people who break the rules.
- To keep CampFire secure: sign-in, rate limits, preventing abuse and investigating incidents.
- To give event organisers aggregate insights about whether CampFire helped their event (see below).
Providing the service you signed up for doesn’t depend on consent. We ask for your consent for optional things: notifications, appearing in attendee lists, and agreeing to this policy and the terms. You can withdraw consent at any time, and we keep a record of each decision.
We send notifications only for things that matter to you: a new message or connection, a reminder you set, an organiser announcement, an introduction, or at most two reconnection reminders after an event you attended. We don’t send marketing.
Who can see what
- You choose, field by field, whether something on your card is shown to everyone, only your connections, or no one. Your contact email and phone are private by default. Hidden fields are never sent to anyone else’s device.
- Guests who haven’t signed in see only your public fields.
- You choose who can message you and add you to a Campfire, whether connection requests need your approval, and whether guests can message you.
- Messages are seen only by the people in that conversation or Campfire. Your private notes and reminders are seen only by you.
- You can turn off appearing in event attendee lists under Me → Privacy & safety, so only people you meet in person can find you.
- Event organisers never see your messages, notes or who talked to whom. They see only aggregate counts (for example, how many connections were made), and any count below five is shown as “fewer than 5” so no one can be singled out.
- If you report a message, our moderators see that message’s text and nothing else from the conversation.
Service providers and overseas disclosure
Your account, card, connections, notes, messages and files are stored and processed by Cloudflare. We ask Cloudflare to place this data in its Oceania region, but that is a placement preference, not a guarantee, so it may be held or processed outside Australia. Our sign-in and invitation emails are sent through Cloudflare’s email service. These providers act on our instructions.
A few things necessarily pass through services that may be outside Australia:
- Cloudflare’s network. Requests to campfire.yumait.au travel through Cloudflare’s network, normally a data centre in Australia near you, or one overseas when you are travelling.
- Apple and Google notifications. If you turn on notifications, they are delivered through Apple (iPhone and App Clip) or Google (Android), which process them in the United States and other countries. A message notification can contain the sender’s name, up to 120 characters of the message (you can turn this off), a conversation reference and a link. It never contains contact details, private notes or file names.
- Guest checks. The checks above run through Cloudflare (web), Apple (iPhone and App Clip) or Google (Android), which may process them outside Australia. They see a one-time random code from us and signals about the browser, app and device, never your name, card or messages. Apple and Google do this under their developer terms, and Cloudflare under its Turnstile terms.
- Sign in with Apple or Google. If you choose one of these, that provider handles the sign-in under its own privacy policy.
We don’t disclose your information to anyone else unless you ask us to, or the law requires it.
How long we keep it
- Your account, card, connections, notes and messages: until you delete them.
- Guest sessions: deleted automatically after 7 days if you never introduced yourself, or after 90 days without activity if you never signed in.
- Sign-in sessions expire after 30 days without use.
- Guest check results: with the guest account. One-time check codes: deleted when used or within an hour of expiring. iPhone app check keys: deleted after 12 months without use.
- Database backups: up to 14 days, then they age out.
- Previous versions of deleted photos and files: up to 30 days.
- Application logs, which never contain message text: up to 12 months.
- Reports and the security log: kept for safety and security for a limited period, which we are finalising (currently planned as two years).
Security
Your information is encrypted in transit and at rest, and access is limited to the people and systems that need it. Uploaded files are checked against the size and type they were declared as, and are only ever downloaded as files, never opened as web pages. They are not scanned for malware, so only open files from people you trust. If a data breach is likely to cause you serious harm, we will tell you and the Office of the Australian Information Commissioner as soon as practicable.
Your choices and rights
- Access and export. Download a copy of your information at any time: on the web, Me → Privacy & safety → Download my data (guests: Me → Download my data); in the iPhone and Android apps, Me → Export my data. Guests can do this too. It includes your card, connections, notes, the messages you sent, reminders, blocks, reports you made, devices and consent records. You can also ask us by email and we’ll respond within 30 days.
- Correction. Edit any card field yourself in the app. For anything else, email privacy@yumait.com.au.
- Visibility. Change who sees each field, who can message you, who can add you to a Campfire, whether others see when you’ve read their messages, and whether you appear in attendee lists under Me → Privacy & safety. Me → Preview as others see it shows your card exactly as someone who scans you, or a connection, sees it.
- Notifications. Choose whether message notifications show the full preview, only the sender, or nothing, and turn reconnection reminders and event announcements off, on the web under Me → Notifications & calendar. You can also turn notifications off in your device settings.
- Blocking and reporting. Block or report anyone. A blocked person can’t see your card, connect with you, message you or trigger notifications to you.
Deleting your account
You can delete your CampFire account yourself, whether you signed in or are a guest.
- On the web: sign in at campfire.yumait.au/me, choose Delete my account, type DELETE and confirm.
- In the iPhone or Android app: open Me, tap Delete my account, then confirm.
- If you haven’t signed in within the last 24 hours, we’ll ask you to sign in again first. You may want to download your data before you delete.
Deletion happens straight away and can’t be undone. It removes:
- your account, sign-in methods, passkeys and sessions;
- your card, photo and links;
- your connections and their “where we met” context, including the other person’s notes about that connection;
- your private notes, reminders, reactions, blocks, devices and consent records;
- your event attendance and Campfire memberships;
- files you sent (removed from storage within about an hour).
What remains:
- Messages you sent stay in the other person’s conversation as “Message deleted”, with the text removed and no link to you.
- Campfires you own pass to another host or member, or are archived if empty. Events you created stay for other attendees without your name.
- Reports you made or that were made about you, and earlier security log entries, are kept for safety and security without your account details.
- Backups hold deleted data for up to 14 days, and previous versions of files for up to 30 days, before they age out.
If you can’t sign in, email privacy@yumait.com.au from the email address on your account and ask us to delete it. We’ll confirm it’s you and respond within 30 days.
Cookies and local storage
The CampFire website uses only the cookies needed to keep you signed in. They are HTTP-only, so page scripts can’t read them, and they are sent only over a secure connection. We don’t use advertising or analytics cookies. The apps keep your sign-in and a cache of your recent conversations on your device so they work offline.
Age
CampFire is for people aged 16 and over attending events. We don’t knowingly collect information from anyone younger. If you think a child is using CampFire, email privacy@yumait.com.au and we will remove the account.
Changes to this policy
When we change this policy we update the version and date at the top of this page. If a change affects what you have agreed to, the app will show you the new version and ask again at a sensible moment, never before you can see a card. This is version 2026-09.
Questions and complaints
Email privacy@yumait.com.au with any question, request or complaint about how we handle your information. We aim to respond within 30 days.
If you’re not satisfied with our response, you can complain to the Office of the Australian Information Commissioner at www.oaic.gov.au or on 1300 363 992.