Privacy Policy
Last updated: 8 September 2026
This policy explains how Passported uses data for location-based collecting, accounts, purchases, profile sharing, Postcards and product improvement. Contact the Passported team at support@passported.app with questions or requests about your data.
Data We Use
- Location, to validate nearby Charm claims, discover local Globes, support optional discovery alerts, and reduce spoofing.
- Email address, when you sign in with email, Apple, or Google, to authenticate and recover your account.
- User content, such as postcard text/photos and public profile details including username, avatar, collection counts, and passport link.
- Identifiers, including Firebase Auth and RevenueCat customer identifiers for account, entitlement, purchase, and anti-abuse logic.
- Purchase information, to provide subscriptions, Discovery Tokens, and paid digital content.
- Usage information, such as onboarding progress, feature use, paywall views and purchase outcomes, to understand where the app works well and where people encounter problems.
- Technical information, such as app and device information, network requests, security signals and notification tokens, to operate the service, deliver requested notifications and investigate abuse.
Tracking
Passported does not use your data to track you across apps or websites owned by other companies.
Product Analytics
Passported uses Google Analytics for Firebase to measure onboarding, app use, Charm claims, Live Trails, Postcards and purchase flows. Events may be linked to a pseudonymous app or account identifier; they are not necessarily anonymous. Firebase can also collect technical information about the app and device. Analytics helps us understand activation, reliability and conversion; it is not used to serve advertising in Passported.
Purchase and anti-abuse records are also processed by the app backend to provide paid access, maintain token balances and investigate problems. These operational records are separate from product analytics.
Services That Process Data
- Google Firebase provides authentication, database, hosting, storage, backend functions, notifications, app-integrity checks and analytics. See Firebase’s privacy and security information.
- Apple processes App Store purchases. RevenueCat helps validate purchases and manage subscription access using purchase records and customer identifiers. Passported does not receive your payment-card details from Apple.
- Apple or Google processes sign-in information when you choose that sign-in method.
- Requested place discovery and Globe-generation features use place-search and image-generation services, including Google Places and OpenAI. The relevant place or generation request is processed to create the result. Cloudflare stores and delivers generated assets.
These services may process data outside the country where you live. Their applicable data-processing terms and transfer safeguards govern that processing. Contact us for more information about the services used for your request.
Public and Shared Content
Your public passport can include your username, avatar, collection counts and passport link. Content you export or share with other people may be copied or retained by its recipients. Avoid including sensitive personal information in public profile details or shared Postcards.
Location and Notifications
Location is used to find nearby places and validate claims, including distance and location-integrity checks. Background Discovery is optional and can be paused in Profile Settings. You can change location and notification permissions in iPhone Settings. Turning location off limits nearby discovery and location-verified claims. Notification permission is optional and is used for nearby discovery and generation-ready alerts.
The Website
This website does not load Google Analytics, advertising trackers or a marketing-cookie banner. Firebase Hosting processes network information, including IP addresses, to deliver and protect the site. Following an App Store or other external link takes you to a service with its own privacy practices.
Retention and Your Choices
Account and collection data is retained to provide your passport and sync it while you use the service. Purchase, security, support and technical records may need to be kept separately for restoration, fraud prevention, dispute handling or legal obligations. Provider backups and service logs follow their own deletion schedules; account deletion is not a promise that every provider-held record disappears immediately.
You can ask us about access, correction, export, deletion or objection to processing of your personal data. We may need to verify that a request concerns your account. Where applicable, you can also complain to your local data-protection authority; UK users can contact the Information Commissioner’s Office.
Account Deletion
You can request account deletion from Profile Settings in the app or contact support for help. Deleting an account does not cancel an Apple subscription: manage or cancel it separately in your Apple account’s subscription settings. Copies of content you have already exported or shared are not removed from other people’s devices by deleting your account.
Contact
Email support@passported.app with privacy or deletion questions.