This Privacy Policy explains how City AED B.V. processes personal data when you use the AEDradar app, website and related services. AEDradar helps users locate public AEDs, call emergency services, access CPR support and add, edit or claim AED listings.

1. Who is responsible?

City AED B.V. is the controller for the processing described in this policy.

City AED B.V.
Binnendelta 11H
1261 WZ Blaricum
The Netherlands
Chamber of Commerce: 66448077
Email: contact@aedradar.org
Telephone: +31 (0)85 130 9126

2. What data do we process?

Location data

With your permission, AEDradar may use your current, potentially precise, location to show nearby AEDs, calculate distances, centre the map and provide location-based functions. Depending on the function, location data may be processed on your device and through technical providers for maps, geocoding, routing or infrastructure. You can deny or withdraw location access in your device settings; some functions may then be unavailable or less accurate.

Account and contact data

If you create an account or contact us, we may process your name, email address, authentication data, account ID, organisation details, correspondence and information needed to assess an AED ownership claim.

Contributions and AED data

When you add, edit or claim an AED, we process the information you provide, such as location, address, access, opening hours, status, device information, explanations and any submitted photographs or proof of custodianship. AED information is intended to be shown publicly. Do not submit personal data, access codes or sensitive information that should not be public.

Technical and usage data

We may process IP address, device and app identifiers, operating system, app version, language, timestamps, actions, error messages, crash and performance data to secure, troubleshoot and improve the service. The precise data depends on the app version and technical services enabled.

Emergency calls

If you call an emergency number through AEDradar, the call is handled by your telephone, mobile provider and the relevant emergency service. City AED B.V. does not listen to or record the content of that call. Those parties process data under their own terms and privacy policies.

3. Purposes and legal bases

  • Performance of a contract: providing the app, account, AED search and management functions.
  • Consent: location access and other device permissions that require consent. You may withdraw consent through your device.
  • Legitimate interests: security, fraud and abuse prevention, support, quality control, error analysis and service improvement, balanced against your privacy rights.
  • Legal obligation: where applicable law requires us to retain or disclose data.

4. Who receives data?

We do not sell personal data or use it for cross-app advertising tracking. We may share data with carefully selected processors for hosting, databases, authentication, email, customer support, mapping, geocoding, routing, push notifications, security, analytics and crash reporting. They may process data only for the contracted service and must apply appropriate safeguards.

Public AED information and an organisation custodian’s name may be visible to other users where necessary for the service. We may disclose data to authorities where legally required, to protect rights and safety, or during a corporate reorganisation or transfer subject to appropriate safeguards.

5. Transfers outside the EEA

Some providers may process data outside the European Economic Area. Where this occurs, we use a valid transfer mechanism, such as an adequacy decision or European Commission-approved Standard Contractual Clauses, with supplementary measures where required.

6. Retention

We retain personal data only as long as necessary for its purpose, taking account of legal retention duties, security, disputes and backups. Account data is generally retained while your account is active and then deleted or anonymised within a reasonable technical period. Support and log data is retained for a shorter period unless needed for security or a legal obligation. Public AED facts you contributed may remain after account deletion where they are no longer linked to you and remain necessary for the reliability of the public AED network.

7. Account and data deletion

You may request deletion of your account and associated personal data through any deletion function available in the app or by emailing contact@aedradar.org from your account email address with “AEDradar account deletion” as the subject. We may request reasonable information to verify your identity. Data we must retain by law or need for legal claims may be temporarily excluded.

8. Your privacy rights

Under the GDPR, where applicable, you may request access, correction, deletion, restriction, portability and object to processing. You may withdraw consent at any time. Send requests to contact@aedradar.org. You may also complain to the Dutch Data Protection Authority or your local EEA supervisory authority.

9. Security

We use appropriate technical and organisational measures to protect personal data. No digital service is completely risk-free. Protect your account and report suspected misuse promptly.

10. Children

AEDradar is a public-safety service and is not specifically directed at children. Where consent is required for an account or processing and the user cannot legally provide it, consent from a parent or legal guardian is required. Contact us if you believe we process a child’s data without a valid legal basis.

11. Third-party services and links

Maps, telephone functions, app stores and external links are partly provided by third parties. Their own privacy policies apply to their processing. This policy covers only processing for which City AED B.V. is responsible.

12. Changes and contact

We may update this policy when AEDradar or applicable law changes. The current version appears on this page; we will provide appropriate notice of material changes. Send questions or privacy requests to contact@aedradar.org.