// Privacy

Privacy policy

AlpenRiderChain is a self-custody app: we collect as little data as possible and all important keys live on your device — not with us.

// What we process

  • Account: Email, Username, optional Telefonnummer (Notfall-Kontakt deiner gespeicherten Person).
  • GPS-Daten: Track points are processed during a ride for pass validation. Immediately after ride completion, timestamps and all sensor data are stripped from every point. Only the route line (coordinates, altitude) is kept for the rider's personal ride review — accessible only with the rider's login, never public. It is stored until the rider deletes it. Aggregated values (distance, elevation gain, crossed passes) remain. Full deletion is available at any time via in-app data deletion.
  • Live-Tracking (optional): Only when the rider actively starts a live link are positions transmitted — end-to-end encrypted. The server stores only encrypted position data; decryption is possible only for holders of the shared link containing the key. Tracks end automatically when the day pass expires.
  • Stellar Wallet: Public key is stored in our DB. Private key stays exclusively on your device.
  • Nostr Identity: Nostr public key (npub) is stored in the DB for NIP-58 badge awards. Private key stays on your device.
  • Sensoren: Barometer, accelerometer and magnetometer run locally on the device only (pressure-based elevation, compass reference) — raw sensor data is neither transmitted nor stored; only the computed elevation gain feeds into ride aggregates. Speed, g-force, lean angle and light sensor are not collected. Single exception: the optional CrashGuard (SOS) stores one event (time, position, peak g) when a crash is detected, to notify your emergency contacts.
  • Push-Token: Apple/Google Push-Token für ARC-Claims, RC-Conversion und Achievements.

// What we DO NOT do

  • We do not sell or rent data — for any purpose.
  • We do not run ad tracking (no Google Analytics, no Facebook pixels).
  • We cannot recover your Stellar/Nostr private keys — they live exclusively on your device.

// What goes public on-chain

  • Stellar Mainnet: ARC Token-Transfers, Soulbound-Token Mints, Soroban-Events. Bound to your public key — pseudonymous but publicly traceable.
  • Nostr: NIP-58 Badge-Awards nur wenn du sie aktiv im Shop kaufst und mit deinem nsec Kind 30008 signierst. Replikation auf öffentliche Relays. Deletion can be requested via NIP-09 — but public relays and third-party clients are not required to honour it. Do not rely on deletability: only publish what may stay public.

// Your rights

Under DSG (CH) and GDPR (EU) you have the right to access, rectification, erasure, restriction, objection and data portability. Write to us at hello@alpenriderchain.ch. Account deletion in the app: Profile → Settings → Delete account.

// Third parties

  • Stellar Horizon (horizon.stellar.org): Public blockchain — public keys + asset operations.
  • Nostr Relays (strfry, damus, nos.lol): Public NIP-58 events.
  • Hostpoint (Switzerland): Web hosting + MongoDB.
  • Apple / Google: Push notifications + app distribution.
  • Sentry: Crash and error diagnostics for the app (technical error data, no GPS tracks, no content).
  • Expo / EAS (expo.dev): Delivery of app updates (OTA).
  • Mapbox: Map tiles — loaded/proxied server-side for map rendering in app and web.

// Last updated: 2026-09-13

← Home