Privacy Policy

Walk Anywhere · GeoStride — last updated 3 September 2026

GeoStride turns your everyday step count into progress along a real walking route between two places you choose. This policy explains exactly what the app collects, where it goes, and how to delete it.

Your health data is never used for advertising — not as a targeting parameter, not shared with ad networks, not sold. This is a hard rule in how the app is built, not just a promise.

Who we are

This app is operated by Ayush Patidar. For any privacy question or request, contact apatidar.work@gmail.com.

What the app collects

Health and fitness data

With your permission, GeoStride reads two things from Health Connect: your step count and your walking and running distance. Access is read-only — the app never writes to Health Connect, and never reads in the background. These are the only health permissions requested, and the app cannot function as described without them.

Account data

If you create an account, we store your email address and an account identifier. Passwords are handled by our authentication provider and are never visible to us.

Journey data

The start and destination you choose, the route between them, your milestones, and your daily progress along it.

Friends data

Friends is opt-in. Nothing is shared until you create or join a group. When you do, the members of that group can see your display name, your chosen emoji, and your daily step counts. Nothing else — not your route, not your location, not your distance.

Purchase data

If you subscribe, our payments provider tells us whether your subscription is active. We never see or store your card details.

If you have an account, we also give our subscription provider (RevenueCat) your email address and the name you signed up with, so that we can find your subscription if you write to us about it. They are not used for advertising and are not sold. Without an account, nothing identifying is sent.

Notifications

Notifications are opt-in and require an account. If you turn on streak reminders in Settings and grant the notification permission, the app registers a push token for your device and stores it against your account, along with your device's time zone and your reminder on/off setting. The time zone is read from your device's clock so the reminder arrives in your evening rather than ours — it is not a location and is never geolocated. The reminder itself contains no personal data: every device receives the same generic message. Turn reminders off in Settings, or revoke the notification permission in Android settings, and the token is no longer used.

What we do not collect

Where your data goes

Your journey is stored on your device. When you are signed in, it is also backed up to our servers so it survives reinstalling the app or changing phones. The following services receive data:

ServiceWhat it receivesWhy
Supabase Account email, journey and milestone data, daily progress (date, steps, distance), and — only if you use Friends — display name, emoji and daily step counts. If you turn on notifications: your device push token, time zone, and reminder setting Account backup, the Friends leaderboard, and sending streak reminders
OpenRouteService The coordinates of the start and destination you chose. Sent once, when a journey is created To calculate the walking route
Photon (Komoot) The place name you type into the search box To find matching places
OpenFreeMap Map tile requests, which necessarily reveal your IP address and the area of the map being viewed To draw the map
RevenueCat and Google Play An account identifier, your subscription status, and — if you have an account — your email address and the name you signed up with To know whether your subscription is active, and to find your subscription if you contact us about it
Expo and Google (Firebase Cloud Messaging) Only if you turn on notifications: your device push token and the generic reminder message. These are the services that carry a notification from our servers to your phone To deliver streak reminders
PostHog (EU servers) Crash and error reports: the type and message of the failure, where in the app it happened, your account identifier, and basic app and device information such as app version and operating system. No step count, distance, journey progress, or anything derived from them — numbers that could be a measurement of your walking are stripped from error messages before they are sent So we find out when the app breaks on a real phone. Without it, a failure that the app recovers from is invisible to us

PostHog is configured so that it does not record your screen and does not capture what you tap. Its servers are in the European Union.

Advertising

GeoStride is free to use and supported by banner advertising, shown on the Home and Activity screens. Subscribers see no ads.

Advertising providers may collect device and advertising identifiers to serve and measure ads. No health data — no step count, no distance, and nothing derived from either — is ever passed to an advertising provider, whether as a targeting parameter, a user property, or in any other form.

How long we keep it, and how to delete it

Data we hold is kept for as long as your account exists. Deleting your account deletes it.

Children

GeoStride is not directed at children under 13, and we do not knowingly collect data from them.

Your rights

You can access, correct, export or delete your data by contacting us at apatidar.work@gmail.com. Account deletion is also available directly in the app, without needing to ask.

Changes to this policy

If this policy changes materially, we will update the date at the top and, where the change affects how your data is used, notify you in the app.