DSPFY
Privacy Policy
Effective date: June 10, 2026
Last updated: June 10, 2026
DSPFY is operated by FY Network, Inc., a Delaware corporation with principal operations in New Jersey. This policy tells you what information we collect when you use the DSPFY app, how we use it, and what rights you have over it.
We wrote this for caregivers, not lawyers. If anything is unclear, email us at admin@fynetwork.com.
Who this service is for
DSPFY is a professional tool for adults who work as caregivers, specifically Direct Support Professionals and similar roles. The app is not directed at or intended for anyone under 18 years old. If you are under 18, do not use the app.
What we collect
We collect the following information when you create and use a DSPFY account. Every item in this list is linked to your account. None of it is used for advertising or tracking.
Contact information
- Your full name
- Your phone number (used for account identity and verification)
- Your email address (collected if you sign in with Apple; may be used for account communications)
Location
- Your county (coarse location, stored in your profile to show nearby opportunities)
- Your home location coordinates (stored in your profile to support distance-based matching)
- Your GPS coordinates at the time you send an availability ping (sent only if you grant location permission; used to surface your availability to nearby providers)
Account identifiers
- Your DSPFY user ID (your internal account identifier, assigned at registration)
- Your device push token (used to send you notifications through Apple Push Notification service)
Professional and employment information
- Your employment type, transportation status, and the services you are qualified to provide
- Credential metadata from your vault: credential type, status (active, expiring, expired), expiration date, and issuer. The actual credential documents themselves are reviewed and verified separately; only the metadata fields above are stored on our servers.
- Job application records you submit through the app: job title, provider name, source, and any notes you choose to add
- FCRA authorization record: the disclosure version you accepted and the timestamp of your consent (required by federal law when a background check authorization is involved)
- Professional reference lifecycle metadata: the relationship label you assign to a reference contact and the status of that reference request. Your reference contact's own personal information is never sent to our servers.
Your availability schedule
- Your weekly availability pattern, including the schedule windows and mode you set
- Availability overrides you add
Notes you write (optional)
- Short notes you attach to an interest signal (your optional message when you signal interest in a provider)
- Notes you attach to a job application
What stays on your device
Some data never leaves your phone. We do not receive it, store it on our servers, or have any access to it.
Visit notes.
The text of every visit note you dictate or edit, including the original transcript, the polished version, and the structured output, stays on your device. Nothing you document about a visit is transmitted to DSPFY. This is a deliberate design choice and a core part of how the app is built.
Voice recordings.
Audio files are stored on your device only, protected by the iOS file protection system, and excluded from iCloud backup. We never receive audio.
Mileage entries.
Mileage logs are stored on your device only.
Paycheck scenarios.
Any paycheck calculations or scenarios you run stay on your device only.
This will change only if we add a server-side sync feature for any of these categories. If we do, we will update this policy before that feature ships and notify you.
How we use your information
We use the information above only to operate the app. Specifically:
- To create and maintain your account
- To calculate and display your readiness score and progress
- To show you care opportunities that match your profile, credentials, availability, and location
- To send you push notifications about availability pings, opportunity matches, and account activity
- To process job applications you submit through the app
- To maintain the professional reference workflow
- To comply with legal obligations, including FCRA requirements for background check authorization records
We do not use your information for advertising. There are no ads in DSPFY and there never will be.
Automated profiling and opportunity matching
DSPFY calculates a readiness score based on your profile, credentials, and activity. This score, combined with your availability and location, determines which care opportunities are surfaced to you and which providers can see your profile when they search for available caregivers.
Under the New Jersey Data Privacy Act (effective July 1, 2026), this constitutes automated profiling used in furtherance of decisions that produce legal or similarly significant effects, because the matching directly affects your access to job opportunities.
You have the right to opt out of this profiling. To do so, email admin@fynetwork.com with the subject line “Opt out of profiling.” We will remove your profile from the matching engine. You can still use the app to manage your credentials, log notes, and track mileage, but you will no longer appear in provider searches or receive matched opportunities. You can reverse this decision at any time by emailing us again.
What we do not do
- We do not sell your personal information to anyone.
- We do not share your information with advertising networks or data brokers.
- We do not use cross-app tracking or build behavioral profiles for advertising purposes.
- We do not use analytics SDKs (no Firebase Analytics, Mixpanel, Amplitude, Segment, or similar tools are in the app).
- We do not collect financial account numbers, credit card data, or bank details.
- We do not collect your contacts list, browsing history, or search history.
Who processes your data
We use the following third-party services to operate DSPFY. Each receives only what is necessary to do its job.
| Service | Role | What it receives |
|---|---|---|
| AWS Cognito | Account authentication | Your phone number or Apple user ID, used to verify identity and manage session tokens |
| Vercel | Web hosting | Web traffic to the DSPFY provider portal; your IP address for standard request handling |
| Neon | Database (hosted Postgres) | All server-stored account data listed in the “What we collect” section above |
We do not have any other analytics, advertising, or data-enrichment processors.
Security
Your data is stored in encrypted databases. Traffic between the app and our servers uses HTTPS. Your account requires authentication on every request. Sensitive data, including your Cognito credentials, is stored in the iOS Keychain, which uses hardware-backed encryption on supported devices.
No security system is perfect. If you believe there has been unauthorized access to your account, email us at admin@fynetwork.com immediately.
Data retention
We keep your account data for as long as your account is active.
When you delete your account, we permanently delete all of the data listed in the “What we collect” section. This includes your profile, credentials, applications, interest signals, availability records, device tokens, and all associated records. The deletion is complete and irreversible.
We retain a limited set of audit log records after deletion, with your identity removed from them. Specifically, security and compliance audit log entries are retained for six years as required by applicable law (including HIPAA-adjacent audit requirements for systems that handle authorization records). These retained records cannot be linked back to you by name or contact information.
How to delete your account
Open the app, go to Settings, then Account, then Delete Account. You will be asked to confirm. Once you confirm, all of your data is permanently deleted from our servers. This cannot be undone.
After deletion, your account session is invalidated immediately.
Your rights
You have the following rights regarding your personal information:
Access.
You can request a copy of the personal information we hold about you. Email admin@fynetwork.com with the subject line “Data access request.”
Correction.
You can update most of your profile information directly in the app. For information you cannot edit yourself, email admin@fynetwork.com.
Deletion.
You can delete your account at any time using the in-app option described above. You can also email admin@fynetwork.com to request deletion.
Portability.
You can request a copy of your data in a portable format. Email admin@fynetwork.com with the subject line “Data portability request.”
Opt out of profiling.
As described in the automated profiling section above, you can opt out of the readiness score and opportunity matching engine. Email admin@fynetwork.com with the subject line “Opt out of profiling.”
New Jersey residents.
Under the New Jersey Data Privacy Act, NJ residents have the rights listed above plus the right to opt out of the sale of personal data (we do not sell data, so this is not applicable) and the right to opt out of targeted advertising (we do not run targeted advertising, so this is not applicable).
We will respond to rights requests within 45 days. We do not charge a fee for these requests.
Children
DSPFY is a professional tool for adults employed or seeking employment in caregiving roles. We do not knowingly collect information from anyone under 18. If you believe a minor has created an account, email us at admin@fynetwork.com and we will delete it.
Changes to this policy
When we make material changes to this policy, we will update the “Last updated” date at the top and, where appropriate, notify you through the app or by email. The most current version is always at dspfy.net/privacy.
Continued use of the app after a policy update constitutes acceptance of the updated terms.
Contact
FY Network, Inc.
1010 Justin Court
Flemington, NJ 08822
Email: admin@fynetwork.com
For all privacy requests, use the email address above. We respond within 45 days.