Privacy & security
Designed to share only what you choose.
FamilyBeacon is built around a public emergency page and a private account area. The goal is to make important information reachable during an emergency without turning the rest of the account into a public profile.
Important: anyone who physically has access to an active tag can open its public emergency page. Only place information on that page that you are comfortable making available to a helper who taps the tag.
Private account sessionsParent and admin areas require authenticated sessions, and password resets invalidate previously signed-in FamilyBeacon sessions.
Safer password recoveryPassword reset links are one-time, hashed on the server, expire after 30 minutes, and are rate-limited.
Reduced scan trackingFamilyBeacon no longer retains full visitor IP addresses for tag scans, and old device/browser metadata is removed on a retention schedule.
Public-page privacy controlsEmergency pages are marked not to be indexed by search engines and are sent with no-cache/no-referrer protections.
Protected server filesDatabase, runtime-secret, environment, Git, and server-source paths are blocked from public static access and guarded against accidental recommits.
Controlled profile fieldsSupported profile fields have visibility controls, with home address hidden by default for new profiles.