Your data stays private
bloodless.org is designed around a simple principle: your medical data never leaves your device unless you choose to share it.
How it works
Browser-only storage
Your Directive data is stored in your browser's local storage. It never touches a server. No database. No cloud sync.
No accounts required
You don't create a login, enter an email, or register. There's nothing to hack because there's no account to target.
No tracking
No analytics cookies, no behavior tracking, no ad networks. We don't know who you are or what choices you make.
Optional encryption
If you choose to encrypt your Healthcare Agent's contact information, it's protected with a passcode before being included in your QR code. Even if someone scans the code, they can't see your agent's details without the passcode.
You control your data
In Settings, you can:
- Export your data — download everything as a JSON file
- Delete everything — wipe all local data with one click
- View consent records — see what you've agreed to and when
Offline access & your privacy
Your Directive is stored directly on your device — that's what makes offline access possible. When you open Bloodless without internet, your data loads from your phone's local storage, not from a remote server. This means:
- No server dependency — your private medical information is readable even if our servers are down or you have no signal
- Your device, your data — the local copy belongs to you and never leaves your device unless you choose to sync
- Automatic sync — if you have an account, changes sync to the server when connectivity returns, so your other devices stay current
What about the QR code?
When you generate a QR code or shareable link, that data is accessible to anyone with the link (and passcode, if encrypted). This is intentional — the whole point is that a doctor or first responder can access your Directive in an emergency. But it only contains what you choose to include.