brieflylost

Privacy Policy

Last updated: 26 April 2026

1. Who we are

This Privacy Policy explains how brieflylost (“we”, “us”, “our”) collects and uses your personal information when you use the brieflylost mobile app and related services (together, the “Service”).

The data controller is brieflylost. Contact: [email protected].

If you have any questions about this policy or your data, email us at the address above.

2. What information we collect

We collect the minimum information needed to run the Service.

Information you provide

Information collected automatically

We do not collect: contacts, calendar events, photos, microphone input, or advertising identifiers. We do not show ads.

3. How we use your information

We use the information we collect to:

We rely on the following lawful bases under UK GDPR:

4. Who we share information with

We do not sell your data. We share it only with the service providers we need to run the Service:

ProviderWhat they receiveWhy
Google Firebase (Authentication)Email, account IDSign-up and sign-in
OpenAIYour route query text and approximate location contextGenerating natural-language route plans
RevenueCatAnonymous account ID, subscription stateManaging premium subscriptions
Apple App Store / Google PlayPayment detailsProcessing subscription payments (we never see your card)
Stadia MapsMap tile requests including approximate locationDisplaying the map
Google Cloud (Cloud Run, Firestore)Account ID, route metadata, usage countersRunning our backend and storing usage quotas

Each of these providers acts as a processor or independent controller under their own terms. We have agreements in place that require them to protect your data.

We may also disclose information if we are required to by law, court order, or to protect the rights, property or safety of brieflylost, our users, or others.

5. International transfers

Some of our processors (notably OpenAI, RevenueCat, Apple, and Google) are based outside the UK and the EEA. When data is transferred internationally, we rely on the safeguards each provider offers — most commonly Standard Contractual Clauses approved by the UK Information Commissioner’s Office (ICO) or equivalent.

6. How long we keep your data

7. Your rights

If you are in the UK or EEA, you have the right to:

You can delete your account directly inside the app: open the account menu and tap Delete Account. To exercise any other right, email [email protected]. We will respond within one month.

8. Children

brieflylost is not directed at children under 13. We do not knowingly collect personal information from anyone under 13. If you believe a child has given us personal information, please contact us and we will delete it.

9. Security

We protect your data with industry-standard measures: TLS encryption in transit, encryption at rest for our databases, restricted internal access, and regular security reviews. No system is perfectly secure, however, and we cannot guarantee absolute security.

10. Changes to this policy

If we make material changes, we will update the “Last updated” date at the top of this page and, where appropriate, notify you in the app or by email before the changes take effect.

11. Contact us

For privacy questions, requests, or complaints: [email protected]