Velotale Privacy Policy

Last updated: 28 July 2026

Velotale is an iOS app that builds a personal cycling ride history from Apple Fitness (HealthKit), your photo library, and — if you connect it — your Strava account. This policy explains what data the app handles, where it is stored, and your rights under the EU General Data Protection Regulation (GDPR) and UK GDPR.

Who is responsible

Data controller: Velotale (independent developer).
Contact: contact@velotale.app

The short version

Your rides, routes, health metrics, and photos are processed and stored only on your iPhone. Velotale has no user accounts and operates no server-side database of your rides. We do not sell, share, or analyze your personal data, and we do not use it for advertising or AI training.

Data processed on your device only

Data our server processes

Strava-specific terms

Legal bases

We process data with your consent (HealthKit, Photos, and Strava permissions you grant and can revoke at any time) and, for the minimal server functions above, on the basis of our legitimate interest in operating and securing the service (Art. 6(1)(f) GDPR).

Retention

Sharing

We do not sell or share personal data with third parties. The only parties that process data are Apple (HealthKit, Photos, geocoding — on device), Strava (when you connect it, under Strava's own policy), and our EU hosting provider (DigitalOcean) for the minimal server functions above.

Your rights

Under GDPR/UK GDPR you have the right to access, rectify, erase, restrict, object to processing of, and port your personal data, and to lodge a complaint with your supervisory authority. Because ride data lives on your device, most of these rights can be exercised directly in the app; for anything else contact contact@velotale.app.

Children

Velotale is not directed at children under 16.

Changes

We will post any changes to this policy on this page and update the date above.