Privacy Policy
Effective June 15, 2026
This Privacy Policy describes how Stomped collects, uses, and protects your information when you use the Stomped mobile and web applications (the "Service"). We have written it in plain English.
In summary: we collect only what is needed to operate and improve the Service, we store it under your account, and we do not sell your data or share it with advertisers. Inside the iOS app we measure product usage with Google's Firebase Analytics — with no advertising and no advertising identifier — and also keep a first-party copy in our own database. Our public website uses Google Analytics to measure site traffic. You can export or delete your information at any time.
1. Who we are
The Service is operated by Stomped ("we," "us," "our"). For questions about this policy, contact us at privacy@stomped.app.
2. Information we collect
We collect the following categories of information:
- Account information — your email address and password. Passwords are stored only as salted, computationally slow hashes (bcrypt); we never have access to the plaintext.
- Display name — an optional name you can set. It is visible to your friends. You can change or remove it at any time.
- Location data — we capture your device's GPS coordinates to render the map, record the areas you have walked, and identify the neighborhoods and cities you have visited. With your permission, recording continues while the app is in the background or your screen is locked, so your walks keep recording on the move. If you additionally turn on Passive Tile Capture (off by default), recording can also continue while the app is closed. You can revoke location access at any time through your device's system settings, and turn Passive Tile Capture off at any time in the app's Settings.
- Place information — the names, regions, and boundaries of neighborhoods and cities you have visited. These are retrieved on your behalf from Mapbox based on your current location.
- Friend connections — the friendships you have established through the app, which allow you and your friends to view each other's progress.
- Saved-tile photos — optional images you choose to attach to tiles you save (up to six per tile). They are stored privately under your account and are deleted when you delete your account.
- Diagnostic reports — when the Service encounters an error or performance issue, we record a short report. Reports are scrubbed of personal information on your device before being transmitted.
- Usage and device information — to understand how the Service is used and to improve it, we record coarse product events (for example: opening the app, viewing a screen within the app, granting or declining a permission, setting your profile, adding a friend, saving a tile, or receiving a milestone notification) together with basic device details (make, model, operating-system version, and app version), a random per-installation identifier, and a per-session identifier that groups events within a single app launch. These events never include your location, the specific tiles or places you have saved, your display name, your friends' identities, or any other personal content.
- Marketing and waitlist emails — if you choose to join a waitlist or ask to be notified about new features (for example, the Android waitlist on our website), we collect the email address you give us, with your consent, and use it only to send the updates you requested. You can ask us to remove it at any time by emailing privacy@stomped.app.
We do not collect your phone number, date of birth, or physical address.
3. How we share information
Your information is shared only with the service providers required to operate the Service:
- Supabase hosts the database and authentication layer and synchronizes your data across your devices. Supabase's infrastructure is located in the United States.
- Mapbox provides map rendering and reverse geocoding. When the Service identifies your current neighborhood or city, your coordinates are sent to Mapbox.
- Apple facilitates universal-link resolution when a friend-invite link is opened on iOS.
- Hosting infrastructure — our web application and supporting services run on cloud hosting providers (currently Railway) located in the United States, which process requests made to our website — including any contact or waitlist form you submit — on our behalf.
- Postmark delivers email on our behalf. When you submit our website contact form, the name, email address, and message you enter are sent to Postmark so we can receive and reply to your email.
- Google Firebase Analytics measures how the iOS app is used. The coarse product events and basic device details described above are sent to Firebase, a Google service, so we can understand usage trends and improve the app. We do not enable Firebase's advertising features, no advertising identifier (IDFA) is collected, and the data is not used for advertising or sold.
- Google Analytics measures aggregate traffic on our public website pages (for example, the home and contact pages). This website tag is not loaded in the mobile app or on signed-in pages, and we do not use it for advertising.
We do not use advertising networks, attribution platforms, or data brokers. The in-app usage analytics described above are kept in our own first-party database (hosted by Supabase) and, on iOS, are also processed by Google Firebase Analytics as described above; we use them solely to operate and improve the Service and never sell them. We do not sell your personal information.
4. Information visible to other users
Stomped is not a social network. Information is shared between users only in the following ways:
- Your friends can always see your display name (if you have set one), the percentage of each neighborhood and city you have explored, the list of neighborhoods you have stomped in, your total number of unlocked tiles, and your current day-streak. Several sharing controls, all off by default, let you reveal more: "Share my tiles with friends" shows friends the individual map tiles you have unlocked, drawn faintly on their own map (a coarse approximation when zoomed out, your actual tiles when zoomed in); "Share my activity with friends" shows whether you have stomped recently and, if so, in which neighborhood; and marking an individual saved tile as shared reveals that tile's location, title, and note. Friends never see your continuous walking routes, the order in which you unlocked tiles, your email address, or your precise GPS coordinates.
- Tapping a map tile — if any of your friends have also unlocked the tile you tap, their display-name initials are shown to you; likewise, your initials are shown to a friend who taps a tile you have both unlocked. This tile-by-tile presence among friends is always visible and is not changed by the sharing controls above — it reveals only that a specific friend unlocked that specific tile, never your walking routes, a community-wide total, or any non-friend's identity.
5. Data retention
- Account data and exploration history are retained for the life of your account. You may delete them at any time.
- Diagnostic reports are deleted fourteen days after they are created.
- Usage-analytics events are deleted three hundred sixty-five days after they are created.
- Friend-invite links expire fourteen days after creation. Until then, a link can be used by more than one person.
- Marketing and waitlist emails are retained until you ask us to remove them or we discontinue the list.
6. Your rights and controls
Within the app's Settings screen you can:
- Export your unlocked map tiles as a JSON file.
- Delete your account. This permanently removes the data associated with your account and cannot be reversed. Anonymous, aggregate statistics that cannot be linked back to you (such as the community tile counts described above) may be retained.
You may also revoke location access, disable milestone notifications, or disable passive tile capture at any time.
You can also view your own explored map — your unlocked map tiles and saved tiles (their titles and notes, but not their photos), for your account only — by signing in at stomped.app, in addition to viewing it in the app.
To request access, export, or deletion by email, contact privacy@stomped.app from the address associated with your account. We will respond within thirty days.
California residents
If you are a California resident, you have the right to know what personal information we collect about you, to request its deletion, and to be free from discrimination for exercising these rights. We do not sell personal information.
7. Security
All communication between your device and our servers is protected by HTTPS. Passwords are stored as salted bcrypt hashes. Database access is restricted at the row level, so each user can only read and write data associated with their own account.
If a security incident affects your information, we will notify you by email and take reasonable steps to address it promptly.
8. Children
The Service is intended for users aged thirteen and older. If you are a parent or guardian and believe a child has created an account without your consent, please contact us at privacy@stomped.app and we will remove the account.
9. International users
Our servers are located in the United States, so if you use the Service from elsewhere your information is transferred to and processed in the United States. We take steps intended to protect your information when it is transferred. If you are in the EU or UK and have questions about this transfer or the basis for processing your information, contact us at privacy@stomped.app.
10. Changes to this policy
We may update this policy from time to time. When we do, we will update the effective date above, and for material changes we will provide notice within the app. Continued use of the Service after an update constitutes acceptance of the revised policy.
11. Contact
For questions about this policy or how we handle your information, contact us at privacy@stomped.app.