Privacy Policy
The short version: Coordinate does not collect or store your personal information on any server we run. Your location, meetup preferences, and settings live on your device. When you use the app, some information is sent directly to Google (for maps and place data) and, on iOS, to Apple (for turning a GPS fix into an address). We do not run a backend that logs, tracks, or profiles you.
1. Who we are
Coordinate is developed and published by Mitch Rappard, an independent developer. This policy explains what happens with the information the Coordinate mobile application (the "App") processes when you use it. If you have questions about this policy, contact us at [email protected].
2. What the App does with your data
Coordinate helps two people find a fair place to meet in the middle. It does this without a server we run: all state stays on your device, and where information leaves your device, it goes directly to Google, Apple, or the recipient of an invite you send.
Here is exactly what happens with each type of information:
- Your location. When you tap "Use my current location," the App asks the operating system for your GPS coordinates. Those coordinates are used only in that session — to search for meeting spots and to build an invite. They are not stored on your device beyond the current session unless you send an invite or complete a meetup (in which case they are stored on your device as history).
- The addresses you search for. As you type an address, the App sends your query to Google Places to fetch suggestions. When you pick a place, the App asks Google for its coordinates. These queries are sent directly to Google's servers over HTTPS and are handled under Google's privacy policy.
- Your name (optional). If you set your name in Settings, it is stored on your device and included in invites you send so recipients know who is asking. We never receive it.
- Your meetup preferences. Your chosen travel mode, category, and preferred maps app are stored on your device only.
- Invite links. When you send an invite, the App encodes your location, chosen category, travel mode, an expiry timestamp, and (if set) your name into the URL. The message goes through your device's built-in Messages app to the recipient you pick. We do not see the message or the payload; the payload also does not reach the server hosting the invite fallback page because it lives in the URL fragment (browsers never send URL fragments to servers).
- Meetup history. The App keeps a small local history of your recent meetups on your device so you can see them later. This is not sent anywhere.
3. Third-party services
Coordinate connects directly to a small number of third-party services. Where information is sent to them, it is governed by their own privacy policies.
- Google Maps Platform (Places API, Routes API, Maps SDK). Receives your search queries, your location when you use address search or "Find meeting spots," and information about places you view. See Google's privacy policy.
- Apple (iOS location services, reverse geocoding, and App Store in-app purchases). Turns a GPS fix into a human-readable address on your device. When you buy Remove Ads, the transaction is handled entirely by Apple's StoreKit — the payment, receipt, and your Apple ID never touch Coordinate or any server we run. Coordinate stores only a small local flag on your device to remember that Remove Ads is active. See Apple's privacy policy.
- Cloudflare. Hosts the static
getcoordinate.appwebsite — the invite fallback page for recipients without the app, and this privacy policy. Cloudflare's standard access logs may record IP addresses of visitors to this website. See Cloudflare's privacy policy. - PostHog (product analytics). We send a small set of anonymous events — for example, "the user tapped Find meeting spots" or "results were shown" — so we can see whether features work as intended and where users get stuck. Events do not include the addresses you searched, the coordinates the app used, or the contents of any invite you sent. PostHog assigns your installation a random ID; it is not linked to your identity or any account. See PostHog's privacy policy.
- Google AdMob (advertising). We display a small banner ad below the meeting-spot results in the free version of the App so we can offer it at no cost. Ads are requested in non-personalized mode: Coordinate does not present iOS's tracking prompt, and the ads you see are not tailored based on your activity in other apps. To serve an ad, the Google AdMob SDK needs some information about your device (device model, general iOS version, coarse network information, an AdMob-assigned identifier that is not the iOS advertising identifier). AdMob does not receive the addresses you searched, the coordinates the app used, the contents of any invite you sent, or your location. See Google's advertising privacy notice. You can remove ads entirely with a one-time in-app purchase; when Remove Ads is active, the AdMob SDK does not load or make any network calls.
We do not use crash-reporting or session-recording SDKs in the App. If that changes in a future version, this policy will be updated before the new version is released.
4. What we do not do
- We do not have user accounts. There is nothing to log into.
- We do not run a backend server that stores your location, contacts, messages, or activity.
- We do not ask you to allow tracking across apps. The App does not present iOS's App Tracking Transparency prompt, and Google AdMob is configured for non-personalized ads. Coordinate does not read your IDFA (iOS advertising identifier).
- We do not sell or share your personal information for cross-context behavioral advertising, and we do not exchange it for monetary or other valuable consideration. Under California law (CCPA/CPRA), we do not "sell" or "share" personal information.
- We do not knowingly collect information from children under 13. See below.
5. Retention
Information on your device is kept until you delete it (by removing an entry, clearing history, resetting the App, or uninstalling the App). Information sent directly to third parties (Google, Apple, Cloudflare) is retained according to their policies — we do not control it.
6. Children
Coordinate is not directed at children under 13, and we do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided information through the App, contact us at [email protected] and we will do what we can to help; because we do not run a server, in most cases the answer is simply to uninstall the App.
7. Your rights
Because Coordinate does not store your personal information on any server we control, most requests to access, correct, delete, or export your data can be resolved by using the App itself or removing it from your device. Where applicable law gives you additional rights, we will honor them:
- Everyone. Uninstalling the App deletes all data the App stored on your device. You may also clear individual meetup history entries in the App.
- Users in the European Economic Area, United Kingdom, and Switzerland (GDPR/UK GDPR). You have the right to access, correct, delete, and port information about you; to object to processing; and to lodge a complaint with a supervisory authority. Because we operate no server that holds your data, most of these rights are exercised by managing the App on your device. To make a written request, contact [email protected]. Our lawful basis for processing information you provide through the App is your consent (when you grant location access) and our legitimate interest in providing the App's core function (finding meeting places).
- Users in California (CCPA/CPRA). You have the right to know what personal information is collected, the right to delete it, the right to correct it, and the right to opt out of "sale" or "sharing" for cross-context behavioral advertising. We do not sell or share personal information as defined by California law, so no opt-out is needed. To exercise other rights, contact [email protected].
8. International transfers
The third-party services listed above (Google, Apple, Cloudflare) are global providers and may process data in countries other than yours, including the United States. Their handling of that data is governed by their own privacy policies and safeguards.
9. Security
All connections the App makes to third-party services (Google, Apple, Cloudflare) use HTTPS. Because the App does not run its own server, we do not hold your personal information ourselves; you should refer to the security disclosures of the third-party services above for how they protect data on their systems.
10. Changes to this policy
If we make material changes to this policy, we will update the "Last updated" date at the top of this page and, where reasonable, note the change in the App or on the App Store listing.
11. Contact
Questions or requests about this policy can be sent to [email protected].