1. Scope and operator
This policy applies to the TrackMe Android application (package in.shvms.trackme), the TrackMe iOS application (bundle in.shvms.track-me-ios), the TrackMe website, public Live Share pages, and related account-management services. TrackMe is the product and operator named in this policy.
2. Data we access, collect, or process
Location and ride records
During active tracking, TrackMe handles precise and approximate location, latitude, longitude, altitude, accuracy, speed, heading, timestamps, route points, distance, duration, and related ride statistics. Location is collected only while a ride you started is running; recording can continue when the app is not on screen, but it never starts without a ride you began and never continues after you end one. Android does not use the background-location permission and keeps an active ride in a foreground service with a persistent notification. iOS uses its location background mode only for a rider-started active ride. Outside a ride, TrackMe asks for your location only while the app is open on screen, and only to center the map on you. Those readings are not added to a ride, uploaded, or shared.
Account information
If you choose Google Sign-In, Firebase Authentication provides your display name, email address, account identifier, and authentication/security metadata. An account is optional for local-only recording.
Live Share information
When you start Live Share, the service processes the active session identifier, exact location, speed, heading, battery information, and timestamps needed to show your progress to people holding the link.
Group Ride information
When you create or join a Group Ride, TrackMe processes a group identifier, a membership list of account identifiers, the group's state and expiry time, and a per-member position record. The position, the group's name, and every member's display name and photo are encrypted on your device before they are sent, with a key derived from the invite link. TrackMe's servers store them as data they cannot read. The server does hold, in readable form, the group identifier, which accounts are members, when the group was created, when it expires, and a timestamp for each position so it can tell how recent it is. Group data is held only in short-lived server memory with an expiry, is overwritten rather than appended, and is deleted when the group ends. No group data is written to your cloud ride storage.
Feedback and support
TrackMe processes feedback text and an optional account-deletion reason that you submit. Authenticated feedback is associated with your account identifier so it can be removed with your account.
Analytics and diagnostics
Product events can include screen names, ride and Live Share lifecycle events, identifiers, durations, distances, counts, and interaction data. Current PostHog event payloads do not include raw latitude or longitude. Firebase Crashlytics can process crash reports, non-fatal errors, diagnostic logs, device/app information, and the Firebase user ID when signed in.
Website analytics identifier
The TrackMe website stores a random identifier in your browser's local storage so that repeat visits are counted as one visitor and so we can tell which channel brought you here. It is generated randomly, is not derived from your device, browser, or network characteristics, is not linked to your name, email address, or TrackMe account, and is never shared with other websites or used to follow you across the web. If you arrive through a campaign link, the utm_ values in that address are recorded alongside it. Clearing this website's site data in your browser removes the identifier; a new one is generated on your next visit.
TrackMe does not request the Android SMS permission and cannot send messages on your behalf.
3. How data is used
- Record routes and calculate distance, speed, altitude, duration, maps, charts, and ride summaries.
- Provide optional sign-in, cloud backup, synchronization, data export, and account management.
- Create a time-limited Live Share experience when you explicitly start it.
- Show group members to each other on a map, for as long as a Group Ride you joined is running.
- Protect accounts, prevent abuse, diagnose crashes, measure reliability, and improve product flows.
- Respond to support requests and process account/data deletion requests.
5. Local-first and optional cloud storage
Ride recording is local-first and does not require an account or mobile-data connection. Data remains in the app's local database unless you enable an online feature, such as account sync, Live Share, or cloud export.
When cloud features are used, data is stored within the authenticated user's Firebase namespace or in the limited service record needed for that feature. Public Live Share data is accessible through the unguessable link supplied to you; treat that link as sensitive and share it only with people you trust.
6. Retention, export, and deletion
- Local records: remain on your device until you delete a ride, clear the app's data, uninstall the app, or otherwise remove them, subject to Android or iOS backup and restore behavior.
- Cloud ride/account data: remains while your account and cloud features are active or until you delete it.
- Live Share: remains available only for the session lifetime and stops being public when the session ends or expires.
- Export: signed-in users can request a ZIP containing their profile, ride history, and GPX traces through the Android app or Web account portal.
- Account deletion: TrackMe attempts to delete rides, GPS points, and feedback associated with your user ID, along with any data left behind by an older version of the app, before deleting the Firebase Authentication account. If the cloud purge fails, the account is not silently removed and the app reports the failure so you can retry or contact support.
- Analytics and diagnostics: processor-managed analytics, security, and crash records may follow Firebase or PostHog retention controls and may not be individually accessible through the TrackMe account screen.
You can start account deletion from Android or iOS Settings, or from the Web account portal. For help with a failed request, email the privacy contact below.
7. Security and international processing
TrackMe uses HTTPS/TLS for service traffic, authenticated user namespaces, platform security controls, and restricted database rules. No system can guarantee absolute security, so keep your account and Live Share links private and report suspected misuse promptly.
Firebase and PostHog may process data in countries outside your own. Firebase states that Authentication runs from United States data centers and that other Firebase services may use global infrastructure; the providers' terms and privacy materials describe their safeguards.
8. Device permissions
- Location: route recording, maps, and Live Share. Android also declares foreground-service location; iOS uses its location background mode only during a rider-started active ride.
- Notifications: tracking status, storage warnings, group status, sync, and other operational alerts.
- Vibration and battery controls: tactile feedback and reliable long-running ride recording, where the platform supports them.
Android and iOS present permission controls in system Settings. Denying a permission limits the related feature but does not prevent unrelated local features from working.
9. Your choices and rights
You can use TrackMe without signing in, decline optional permissions, stop Live Share, delete individual rides, export supported data, delete your account, and contact us about access, correction, deletion, or privacy questions. On the website, clearing this site's data in your browser removes the analytics identifier and any recorded campaign values described in section 2, and a new identifier is generated on your next visit. Rights vary by location; TrackMe will respond in accordance with applicable law.
10. Children
TrackMe is intended for an adult audience and is not designed or marketed for children. If you believe a child provided personal data without appropriate authorization, contact us so the matter can be reviewed and addressed.
11. Contact and policy changes
For privacy questions, account-deletion help, or data enquiries, email dev.shvms@gmail.com or use the in-app feedback mechanism.
This policy may change when TrackMe's features, processors, or legal obligations change. Material updates will be reflected by the date at the top of this page and, where appropriate, an in-app or website notice.