Data Processing & Retention Policy
iOS Application Only
Version: 3.1.1 | Effective Date: October 12, 2025
Jurisdiction: United Kingdom (England & Wales) | Age Restriction: 13+
1. Who We Are (Data Controller)
Are You Faster CIC
Company Number: 16536715
Registered Office: Unit 82a, James Carter Road, Mildenhall, Bury St Edmunds, England, IP28 7DE
Contact: support@areyoufaster.com
Website: www.areyoufaster.com
2. What This Policy Covers (Plain English)
- What data the AYF iOS app uses
- Why it's used
- How long it stays on your device
- Your privacy rights and how to use them
Important: AYF is designed to work on-device. We don't run a backend for your fitness data. Authentication (Sign in with Apple / Google) is handled by Apple/Google; they are independent controllers for those sign-in events.
3. Lawful Bases (UK GDPR)
- Contract (Art. 6(1)(b)): provide the app's core functions and your account
- Consent (Art. 6(1)(a)): Location and Motion & Fitness permissions. You can withdraw in iOS Settings
- Legitimate interests (Art. 6(1)(f)): on-device performance/security
- Special category data (Art. 9(2)(a)): limited health-related inferences (pace, distance, calories) processed with your explicit consent when you start a run. Delete runs or your account to withdraw
4. Data We Use (On Your Device)
A. Account (from Apple/Google sign-in)
Opaque user ID (provider), email (relay if you choose "Hide My Email"), display name, optional avatar. Tokens are stored in iOS Keychain.
B. Location (during a run only)
GPS samples (lat/long/altitude/accuracy/speed/course/timestamp) and an encoded polyline for the route map. Background location only while a run is active if you've allowed it.
C. Motion & Activity
Activity type and motion samples used transiently to improve GPS/battery. Not stored.
D. Run Stats (derived)
Distance, duration, pace, max speed, calories, start/end times, mode/opponent, outcome, XP earned.
E. Progress & Preferences
XP, level, totals, unlocked achievements, challenge completions, units (km/mi), map style, audio/haptics, accessibility toggles.
We do NOT collect:
- Analytics
- Advertising IDs
- Contacts, calendar, microphone
- Photos (except optional avatar you choose)
- IP/device identifiers for tracking
5. Why We Use It
- Track your run and show maps/stats
- Power the game features (virtual animal opponents, achievements, XP)
- Personalise your in-app experience (preferences, accessibility)
No ads, no third-party analytics, no data brokering.
6. How Long We Keep It (User-Controlled)
- Runs & route data: kept per-run until you delete the run or delete your account
- Profile, progression & preferences: kept for your account lifetime
- No server copies: we don't keep backups. Older data may exist only in your device backups (iCloud/Finder). Remove those if you want a full wipe
- Deleting your account instantly removes profile, runs, samples, achievements, preferences and clears Keychain tokens. This cannot be undone
7. Sharing & Transfers
- Independent controllers: Apple (Sign in with Apple) and Google (Google Sign-In) handle sign-in data under their own privacy policies. We receive minimal fields (e.g., opaque ID, relay email if chosen)
- Maps: Apple Maps tiles are requested by iOS; we don't receive those requests
- Your choice to share: If you export a run placard image, you pick the destination via the iOS share sheet. No auto-sharing
- International transfers: We don't transfer your data to our servers. Authentication requests are handled by Apple/Google with their transfer safeguards (e.g., SCCs/UK data bridge)
8. Your Rights (UK GDPR – Simple Path)
Email support@areyoufaster.com from your sign-in email to:
- Access / Portability: we'll help you obtain a machine-readable copy of your on-device data (e.g., via device backup extraction)
- Rectification: change your display name/avatar in-app
- Erasure: delete runs individually, or delete your account in Settings → Account Management → Delete Account for a full device wipe of app data
- Restriction/Objection: revoke Location and Motion permissions in iOS Settings or stop using the app
We verify identity via your sign-in account. We respond within 1 month (extendable by up to 2 months for complex requests; we'll let you know within the first month).
9. Security (What We Do)
- iOS Keychain for tokens (hardware-backed)
- App sandbox + file-level encryption
- Minimal network surface (auth only)
- Clean cascade deletion to avoid leftovers
Breach notice: If a personal-data incident within our control ever posed risk to you, we'd notify the ICO within 72 hours where required and affected users without undue delay. Our local-only design limits central breach risk.
10. Children
AYF is not intended for under-13s. If you believe an under-13 has used the app, contact us so we can guide a parent/guardian to remove the account and all on-device data.
11. Apple Review – What to Expect (FYI)
- App Privacy label: "Data Not Collected" by the developer (processing is on-device only; no tracking)
- Privacy Manifest: no tracking; declares Location and Motion for core functionality
- Info.plist purpose strings: clear reasons for NSLocationWhenInUseUsageDescription, NSLocationAlwaysAndWhenInUseUsageDescription (if background), NSMotionUsageDescription
- Account deletion: available in-app and described here
- Sign in with Apple: offered when third-party sign-in exists
12. Related Pages
13. Changes
If we update this policy, we'll change the "Effective Date" and show an in-app notice for material changes. You can delete your account at any time.
14. Contact
Support & privacy requests (single address): support@areyoufaster.com
Support page: www.areyoufaster.com/support