Privacy policy
The short version
- Your travel data lives on your own Run·dere server, the one you (or someone you trust) set up and run. The app talks only to the servers you add to it.
- We don't run accounts, analytics, advertising or tracking. The app contains no third-party analytics, advertising or crash-reporting code.
- We never see your trips, bookings, journal or location. The one exception is the optional demo server, which holds only sample data and is wiped every night.
This policy covers the Run·dere app for iPhone and iPad (“the app”), this website (rundere.app), and the Run·dere demo server (demo.rundere.app). “We” and “us” means the Run·dere developer. “Your server” means any Run·dere server you add to the app.
How Run·dere is set up
Run·dere is self-hosted software. There is no central Run·dere service that stores your information. When you use the app, it connects directly to the server address you enter in its settings. Whoever operates that server (usually you) controls the data on it and is responsible for it. If you use a server run by someone else, such as a friend or family member, their practices apply to what you store there.
The app
What the app sends, and where
The app sends information only to your server, over the connection you configure. This includes your sign-in, the trips, activities, captures, packing lists and journal entries you view or change, and any files you choose to share with it. We don't receive a copy.
What stays on your device
| Data | Why | Where |
|---|---|---|
| Sign-in tokens for your server | Keep you signed in | The iOS Keychain |
| Server addresses and connection settings | Know which server to talk to and how to trust its certificate | App storage on the device |
| A read-only copy of your trips | Let you read your trips offline | App storage on the device, kept separately for each server and person |
| App preferences | Remember your settings | App storage on the device |
Signing out clears your saved session and the offline copy on this device. Deleting the app removes everything it stored on the device.
Permissions the app may ask for
- Face ID or Touch ID, if you turn on the app lock. iOS handles the check. The app only learns whether it succeeded; it never receives your face or fingerprint data.
- Location, while using the app, only if you allow it. The app uses it to add where you are to a new journal entry, which is saved to your server. To show a short place name such as “Old Town, Albuquerque”, the app asks Apple Maps to look up that spot. Turn off Add my location when writing an entry, or deny the permission, and none of this happens.
Apple services the app uses
Maps and place-name lookups in the app are provided by Apple Maps. To show a map or look up a place, your device sends the request to Apple, and Apple's privacy policy applies to that. Web links you open from the app load in Safari's in-app browser, which follows your Safari settings.
Your server
Your server may connect to other services to do its work, depending on how its operator has set it up. For example, it may look up weather, exchange rates, places, routes or web search results, or use a language model to help process captures and research. Those connections are configured by, and are the responsibility of, the server's operator. We don't receive the data involved.
If you connect an AI assistant (such as Claude) to your server, you choose what it can access when you sign in to approve it. The trip data it reads or changes is then handled by that assistant's provider under their privacy policy. You can disconnect it at any time under Account → Connected apps on your server.
The demo server
The demo server at demo.rundere.app lets you try the app without setting up your own server. We operate it.
- It comes with sample trips. Anything you add is visible to other people using the same demo account, and the whole server is reset to the sample data every night.
- Please don't enter real personal information, such as real bookings, contact details or journal entries.
- The demo server doesn't send what you enter to any outside service, including language models.
- Like most web servers, it keeps short-lived technical logs (IP address, time, and the request made) to keep it running and to prevent abuse. We keep these logs for no more than 14 days.
This website
rundere.app is a static website hosted by Netlify. It sets no cookies and uses no analytics. Its fonts and images are served from this site, not from third parties. Netlify processes standard request information, such as your IP address, to deliver the pages and protect the service; see Netlify's privacy policy.
The sign-in page at rundere.app/auth/callback exists only to hand you back to the app after you sign in to your server. It doesn't read, store or forward anything in the link it receives.
Children
Run·dere isn't directed at children under 13, and we don't knowingly collect information from them.
Your choices and rights
Because your travel data is on your server, you can view, export, correct or delete it there, or ask your server's operator to do so. For anything we hold (only demo-server logs and any emails you send us), you can ask us to access or delete it by writing to the address below. Depending on where you live, laws such as Canada's PIPEDA or the EU and UK GDPR may give you further rights, and you can complain to your local data-protection authority.
Changes to this policy
If we change this policy, we'll update the date at the top of this page. If a change affects what the app does with your data, we'll also note it in the app's release notes.
Contact
Questions about privacy: privacy@rundere.app.