Nomad Trials ("we", "our", or "us") operates the Nomad Trials mobile application (the "App").
This page explains what information we collect, how we use it, and your rights.
1. Information We Collect
Account information: When you sign in with Google or Apple, we receive your email address and display name from Firebase Authentication.
Location: We access your device location only when you scan a QR code at a task site, to verify proximity. Location is not stored or tracked in the background.
Photos: If you choose to attach a photo to a completed task, that photo is uploaded to our secure storage (Supabase). You may delete it at any time by marking the task as not done.
Usage data: We collect crash reports and basic analytics via Firebase Crashlytics to improve the app. No personally identifiable information is included in crash reports.
Task completions: We store which tasks you have completed and when, to power your map, rewards, and travel history.
2. How We Use Your Information
To provide and personalise the App experience (your map, rewards, profile).
To verify task completion via QR code and GPS proximity.
To send you rewards and track travel milestones.
To diagnose crashes and improve app stability.
3. Data Sharing
We do not sell or rent your personal data. We share data only with:
Firebase (Google): Authentication and crash reporting.
Supabase: Secure photo storage.
Railway: Backend hosting (your data is stored on Railway's infrastructure).
All third-party providers are bound by their own privacy policies and applicable data protection laws.
4. Data Retention
Your data is retained for as long as your account is active. You may request deletion of your account and all associated data by contacting us at the email below.
5. Children's Privacy
The App is not directed at children under 13. We do not knowingly collect data from children under 13.
6. Your Rights
You may request access to, correction of, or deletion of your personal data at any time by contacting us. If you are in the EU/EEA you have additional rights under the GDPR.
7. Security
We use industry-standard encryption in transit (HTTPS/TLS) and at rest. Photos are stored in a private Supabase bucket accessible only via authenticated requests.
8. Changes to This Policy
We may update this policy from time to time. The "Last updated" date at the top will reflect any changes. Continued use of the App after changes constitutes acceptance.
9. Contact
If you have any questions about this Privacy Policy, please contact us at: iagononaka@gmail.com