Data Use Policy

How Glider uses your data

Effective:

A plain-English breakdown of every type of data Glider collects, why we collect it, and how it maps to Apple's App Privacy nutrition label. For full legal terms including GDPR and CCPA rights, see the Privacy Policy.

Data linked to you

Data associated with your account or device identity.

Data What it is Why we collect it Apple label
Email address The email you register with Account creation, login, and session management. Required to use the app. Contact Info
User ID A unique identifier assigned by Supabase when your account is created Links your trip data across devices and sessions; required for auth and collaboration Identifiers
Precise location Your GPS coordinates — while the app is open (foreground) and optionally while it's closed (background) Map views, nearby place discovery, destination weather, and trip-context features. Fully optional — revoke any time in iOS Settings. Location
Contacts Names and contact details from your device address book Only accessed when you tap invite or share. Used on-device to pick who to invite. Never stored on our servers. Contacts
Trip content Itineraries, bookings, checklists, contributions, decisions, notes, and messages you create in a trip Core app functionality — storing, syncing, and sharing your trip data with collaborators you invite User Content
Expense amounts Dollar amounts you enter for trip budgets and cost-splitting Trip expense tracking and group split features. We do not collect payment card numbers or process payments. Financial Info

Data not linked to you

Data collected without being tied to your identity.

Data What it is Why we collect it
Security telemetry Browser environment signals and CAPTCHA tokens from Cloudflare Turnstile during sign-in Bot prevention and sign-in security. Processed by Cloudflare; not linked to your Glider account.
Rate-limit logs IP address, request timestamp, and endpoint retained briefly on our backend Detecting and preventing API abuse. Automatically purged within 30 days. Not used for advertising.

Tracking

CategoryStatus
Data used to track you across other apps or websitesNone
Third-party advertising SDKNone
Analytics or crash-reporting SDKNone
Data sold to third parties or data brokersNone
Apple Advertising Identifier (IDFA) usedNo
App Tracking Transparency (ATT) prompt shownNot applicable — no tracking

Third-party services

ServiceWhat they receiveTheir policy
Supabase Account data (email, user ID) and all trip content you create supabase.com/privacy
Cloudflare Security signals during sign-in only. Not linked to your account. cloudflare.com/privacypolicy

Data retention

Data typeHow long we keep it
Account and trip dataUntil you delete your account. Permanently removed within 30 days of a verified request.
Security / rate-limit logsAutomatically purged within 30 days. Not linked to your identity after purge.
Local device cacheControlled by you — removed when you uninstall the app or clear app data in iOS Settings.

Your location controls

What you want to doHow to do it
Disable all location accessiOS Settings → Privacy & Security → Location Services → Glider → "Never"
Allow location while app is open onlyiOS Settings → Privacy & Security → Location Services → Glider → "While Using App"
Allow background locationiOS Settings → Privacy & Security → Location Services → Glider → "Always"
Disable contacts accessiOS Settings → Privacy & Security → Contacts → Glider → toggle off