Security & Data Handling
Every statement below is a statement of fact about the current implementation. Anything we cannot yet verify is omitted or marked as planned.
What we collect
- Worker name / contact and role (account & access requests).
- Safety concern details: description, location, hazard type, severity, optional photo evidence.
- Early discomfort / symptom descriptions (segregated for support coordination).
- HR support notes, corrective actions, inspections, JHSC records, and audit-log entries.
Where it is stored & who processes it
- Hosting, auth, database and file storage are provided by Google Firebase (Hosting, Authentication, Cloud Firestore, Storage).
- A working copy is kept in your browser (localStorage) for offline use.
How it is protected
- In transit: all traffic to Firebase is over TLS (HTTPS).
- At rest: data is stored in Google Cloud Firestore, which encrypts data at rest at the provider level.
- Offline copy: the browser working copy is not encrypted; it is a convenience cache on the user's own device.
- Access is role-based; evidence uploads are restricted to organisation members.
What we do NOT do
- We do not sell personal information or use it for advertising.
- We do not use personal information to train models.
- We do not provide a subjective medical diagnosis; early discomfort records support coordination only.
Retention & deletion
A formal retention schedule is being finalised. You may request access, correction, or deletion at any time (see contact below).
Contact for privacy requests: info@praevanta.ca
Praevanta Safety is an independent software provider. We are not affiliated with, endorsed by, or acting on behalf of WorkSafeBC.
Back to home