PRIVACY POLICY

Privacy Policy

Effective: 2026-07-19 / Revised: 2026-07-20

This policy explains how the developer (the “Provider”) of the iOS application “Train Net” (the “App”) handles user information.

In short — Using the App requires signing in with Apple or Google. Ride records are stored on your device and, linked to your account, on the Provider’s servers, so they carry over when you switch or add devices. Meanwhile, your raw GPS trace is discarded on the device once ride segments have been determined and is never sent to the server. Every user appears on the ranking, anonymously — rank and distance only.

01Principles

  • We collect only the minimum information needed to provide and improve the App.
  • Location processing is completed on the device; detailed movement traces are never transmitted externally.
  • What we store on the server is limited to the finished result — the segments, dates and distances you rode — plus any notes or photos you add yourself.
  • There is no feature that shows other users anything that identifies you, such as your name or a picture. The ranking covers every user, but only your rank and distance are listed, anonymously.
  • Every third-party service (SDK) the App uses, and what it receives, is disclosed in this policy.

02Location data

  1. Purpose — Location data is used solely to determine which railway segments you rode. It is never used for, or shared with, advertising or analytics.
  2. How it flows — The GPS trace between start and stop is processed on the device, and the raw trace is discarded once ride segments have been determined. Only the result — which segments of which lines you rode — is kept.
  3. Background use — While recording, the App may request “Always” or “While Using” location permission so tracking continues with the screen off. No positioning occurs while you are not recording.
  4. Your control — You can change location permissions at any time in iOS Settings.

03Information we process

InformationSourcePurpose / storage
Location (while recording only)Device GPS etc.Ride segment detection. Processed on device; raw trace discarded after detection
Account information (identifier, email address)Apple / Google sign-inIdentity verification and restoring your log. Never used for advertising or analytics
Ride records (segments, dates, distance)Generated as detection resultsLog, map and statistics display. Stored on device and in your account (Provider’s servers)
Notes, photos & train details (optional)Entered or selected by youFor reviewing your rides. Stored on device and in your account. Visible only to you
Amount paid (optional)Entered or selected by youTotalling your travel spending, per currency. Stored on device and in your account. Visible only to you
Purchase information (receipt, anonymous ID)App Store / RevenueCatVerifying and restoring paid plan purchases (Ad-Free / Pro)
Usage and crash dataFirebase SDKImproving features and fixing bugs. Never includes location or personally identifying content
Advertising identifiers (IDFA) etc.Google Mobile Ads SDKServing ads. Personalization only with your consent (ATT)
Problem reports and line data contributions (optional)Your input or selectionInvestigating problems and correcting line data. The text, any attached image and device information (model, OS and app version) are stored on the provider's servers

04Account and data storage

  1. Sign-in — Using the App requires signing in with an Apple or Google account. The Provider never receives your password — only an ID and email address used to identify you.
  2. What we store — Ride records (the segments, dates and distances you rode), along with any notes and photos you add, are stored linked to your account. This means that after switching devices or reinstalling the App, signing in with the same account picks up right where you left off.
  3. Where it’s stored — Records and notes are stored in Google Firestore (Japan region); photos are stored in Cloudflare R2. Both are kept in private storage, configured so that only your own account can retrieve them.
  4. Provider access — The Provider does not view the contents of your stored records, except when investigating faults, responding to abuse, or as required by law.

05Rankings and community stats

  1. Ranking — Every user of the App appears on the ranking, anonymously. Only your rank and total distance ridden are shown — never your name, email address, or the specific segments you rode, so other users cannot tell whose record it is.
  2. Popular lines & segments — We show only how many people have ridden a line or segment. Counts are aggregated once a day and never include information that could identify an individual user.
  3. Notes and photos stay private — Your notes and photos are never shown to other users.

06Third-party services (SDKs)

The App uses the following services. For details of what each receives, see their privacy policies.

ServicePurposePolicy
Firebase Authentication (Google)Sign-in and identity verificationGoogle Privacy Policy
Cloud Firestore (Google)Storing and syncing ride records and notesGoogle Privacy Policy
Firebase Analytics / Crashlytics (Google)Usage measurement and crash reportingGoogle Privacy Policy
Cloudflare R2Storing photosCloudflare Privacy Policy
Google AdMobServing adsGoogle Advertising Policy
RevenueCatIn-app purchase managementRevenueCat Privacy Policy
Sign in with AppleSign-inApple Privacy Policy

Analytics events are limited to aggregate values (durations, segment counts) and line codes. Station names, notes, photos and location itself are never sent.

07Ads and tracking consent

  1. The App may show ads to support its free features.
  2. Personalized ads that involve tracking across apps and websites are shown only with your permission via iOS App Tracking Transparency (ATT). If you decline, non-personalized ads are shown instead.
  3. You can change ATT permission at any time in iOS Settings → Privacy & Security → Tracking. In some regions, a consent dialog required by law (such as GDPR) is shown.

08Retention and deletion

  • Ride records are stored on your device and in your account until you delete them. You can delete individual records at any time within the App, and deletions sync to any other device signed in to the same account.
  • Deleting your account can be done within the App (My Page). This removes your account, ride records, notes and photos from the server, as well as your entry on the ranking. This action cannot be undone.
  • Simply deleting the App does not remove data stored on the server. If you want to erase everything, delete your account before deleting the App.
  • Crash and usage data is deleted automatically according to Google’s retention periods.
  • Problem reports and line data contributions are kept without a set time limit so that the app and its data can be improved. If you delete your account, the link between the report and your account is removed and any attached image is deleted, but the text remains as an anonymous record. We do not send individual replies.

09Sharing with third parties

The Provider does not sell or provide user information to third parties except as required by law. Transmissions to the SDKs listed in this policy are limited to what each service needs to function.

10Children’s privacy

The App is not directed at children under 13, and we do not knowingly collect personal information from children.

11Changes to this policy

Material changes to what we collect or why will be announced on this site or in the App. The latest version is always published on this page.

12Contact

For questions about this policy or your data, please use the contact listed on the Support page.