Allanfa is an exit route planner for workers who need a shared view of floor movement without a named organizer. Separate observations remain sealed until a threshold opens one evacuation planning model.
RECORD WHAT YOU CAN VERIFY
Enter the normal occupied headcount and usable clear widths for a main work aisle, stair, and final exit door. Each invite controls one sealed slot, so repeated entries from one invite replace that slot instead of increasing the threshold.
OPEN ONLY TOGETHER
An Allanfa floor uses nine separate invite slots and opens after six valid installation-bound observations. One installation can claim only one slot for a floor. Each slot must be refreshed across at least 24 hours; duplicate installation tags and identical activity histories count once. A new floor also remains sealed for at least 24 hours. Before opening, the app shows no participant list and no contribution progress count. Every relay record has the same fixed size and is addressed by a random mailbox code.
READ THE ROUTE MODEL
When the floor opens, Allanfa combines the structured measurements into an egress capacity estimate. The Floor view shows:
- Estimated occupied headcount
- Modelled floor-clear time and uncertainty range
- Ranked doorway, corridor, and stair bottlenecks
- Approximate people-per-minute capacity for each constrained segment
- Queue estimates tied to upstream demand
- Possible route matches kept separate for explicit review
- Observed width ranges when measurements conflict
- A visual route band that pinches at the limiting segment
TEST ONE PHYSICAL CHANGE
The Change view runs a counterfactual against the current model. It identifies the single width adjustment with the largest modelled reduction while holding headcount and other route measurements fixed. This makes the assumption visible and keeps the comparison focused.
SHARE BY QR CODE
A creator keeps one of nine slots and prepares eight separate colleague invites. After sharing, the creator erases those eight Shamir shares and retains only its own share plus share-free deletion capabilities; erased invites cannot be displayed again. Colleagues scan one invite with the optional camera flow, add a structured observation, and seal it. Camera frames are processed on the device and are not saved or uploaded. A full invite code can also be entered manually.
DESIGNED FOR UNCERTAIN OBSERVATIONS
Measurements from different people will not always agree. Allanfa keeps the observed low and high widths, uses them in repeated simulations, and widens the displayed range instead of silently averaging a contradiction away. It presents an estimate with evidence, not a pass/fail safety verdict.
DATA AND ACCESS CONTROLS
Allanfa does not use named accounts, profiles, advertising, analytics, location, contacts, or notifications. Floor records are encrypted before transmission and stored as independent 4,096-byte relay objects. If a request fails, the already sealed record stays in protected local storage for retry or removal. Relay objects expire after 45 days. A creator can delete the floor, and a participant can withdraw only their slot before clearing the device.
Optional App Lock supports two independent methods: fingerprint or face through Android BiometricPrompt, and a dedicated Allanfa PIN. The Allanfa PIN is separate from the device PIN. Local backup is disabled.
IMPORTANT LIMITS
Allanfa is a planning aid. It is not an evacuation alarm, building-code certificate, official inspection, or replacement for emergency services, workplace procedures, or qualified safety professionals. Do not use its estimate as the only basis for a safety decision.
SUPPORT
Privacy policy: https://privacy.saifullah.ai/allanfa.html
Child Safety Standards: https://privacy.saifullah.ai/allanfa/child-safety
Contact:
[email protected]Combine sealed floor observations into one shared exit bottleneck analysis.