Guide bloodless.org
← Overview

Your data stays private

bloodless.org is designed around a simple principle: your medical data never leaves your device unless you choose to share it.

How it works

Browser-only storage

Your Directive data is stored in your browser's local storage. It never touches a server. No database. No cloud sync.

No accounts required

You don't create a login, enter an email, or register. There's nothing to hack because there's no account to target.

No tracking

No analytics cookies, no behavior tracking, no ad networks. We don't know who you are or what choices you make.

Optional encryption

If you choose to encrypt your Healthcare Agent's contact information, it's protected with a passcode before being included in your QR code. Even if someone scans the code, they can't see your agent's details without the passcode.

You control your data

In Settings, you can:

  • Export your data — download everything as a JSON file
  • Delete everything — wipe all local data with one click
  • View consent records — see what you've agreed to and when

Offline access & your privacy

Your Directive is stored directly on your device — that's what makes offline access possible. When you open Bloodless without internet, your data loads from your phone's local storage, not from a remote server. This means:

  • No server dependency — your private medical information is readable even if our servers are down or you have no signal
  • Your device, your data — the local copy belongs to you and never leaves your device unless you choose to sync
  • Automatic sync — if you have an account, changes sync to the server when connectivity returns, so your other devices stay current

What about the QR code?

When you generate a QR code or shareable link, that data is accessible to anyone with the link (and passcode, if encrypted). This is intentional — the whole point is that a doctor or first responder can access your Directive in an emergency. But it only contains what you choose to include.