Introduction
Welcome to Roadfolio, developed and operated by Moon Company LLC ("we," "our," or "us"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application ("Roadfolio" or the "App"). By using Roadfolio, you agree to the collection and use of information in accordance with this policy.
If you do not agree with the terms of this Privacy Policy, please do not use the App.
How We Use Your Information
1. To Provide the App's Core Features
- Authenticate your account (Firebase Auth)
- Store and sync your vehicle data (WatermelonDB + optional Firebase cloud backup)
- Track maintenance history, fuel economy, and trip logs
- Calculate statistics (MPG, maintenance costs, trip distances)
- Generate reports (PDF, CSV exports)
- Send maintenance reminders (local notifications via Notifee)
2. To Manage Subscriptions
- Verify your subscription tier (FREE, TRAVELER, PREMIUM, FLEET, LIFETIME)
- Enable or restrict features based on your account tier
- Display subscription paywalls and process in-app purchases via Superwall
- Optimize paywall experiences through A/B testing
- Sync subscription status with App Store/Play Store
3. To Improve the App
- Analyze app usage patterns (Firebase Analytics)
- Identify and fix bugs (Firebase Crashlytics)
- Understand which features are most valuable to users
- Optimize user experience and performance
4. To Communicate with You
- Send transactional emails (password resets, account confirmations)
- Provide customer support
- Notify you of important updates or changes to the App
We will NEVER send marketing emails without your explicit consent.
Data Storage and Security
Local Storage
- Primary Storage: All data is stored locally on your device using WatermelonDB (SQLite database)
- Offline-First: The App works fully offline; internet is not required for core features
- Device Security: Data is protected by your device's security features (passcode, biometrics)
Cloud Backup (Optional - Premium/Fleet Tiers Only)
- Firebase Cloud Storage: If you enable cloud backup, your vehicle data is encrypted and stored in Firebase Cloud Storage
- Encryption: Data is encrypted in transit (HTTPS/TLS) and at rest
- Access Control: Only you can access your backed-up data using your authenticated Firebase account
Security Measures
We implement industry-standard security practices:
- Encryption: All data transmitted between your device and our servers uses HTTPS/TLS encryption
- Authentication: Passwords are hashed and never stored in plain text (Firebase Authentication)
- Access Controls: Strict access controls ensure only authorized users can access their own data
- Regular Updates: We regularly update dependencies and security patches
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
Data Sharing and Third-Party Services
Third-Party Services We Use
We integrate with the following third-party services. Each has its own privacy policy:
-
Firebase (Google)
-
Superwall
-
Apple App Store / Google Play Store
- Service: Payment processing for in-app purchases
- Privacy Policies:
-
NHTSA API (National Highway Traffic Safety Administration)
We Do NOT Share Your Personal Data
- No Selling: We will never sell, rent, or trade your personal information
- No Third-Party Marketing: We do not share your data with advertisers or marketing companies
- No Social Sharing: Vehicle data, photos, and records are private and never shared publicly
Legal Requirements
We may disclose your information if required to do so by law or in response to:
- Valid legal requests (subpoenas, court orders, government investigations)
- Protection of our rights, property, or safety
- Enforcement of our Terms of Service
- Prevention of fraud or illegal activity
Your Data Rights
Access and Control
You have full control over your data:
- View Data: All your data is accessible within the App
- Edit Data: You can modify or update any vehicle records, maintenance logs, fuel fill-ups, or trips
- Delete Data: You can delete individual records or entire vehicles at any time
- Export Data: Export your data in CSV, PDF, or Car Swap (.carswap) formats
Account Deletion
You can delete your account at any time:
- Open Roadfolio → Settings → Account
- Tap "Delete Account"
- Confirm deletion
What happens when you delete your account:
- Your Firebase account is permanently deleted
- Cloud backup data (if any) is permanently deleted from Firebase
- Local data remains on your device until you uninstall the App
- Active subscriptions are NOT automatically cancelled (you must cancel via App Store/Play Store)
- This action is irreversible
Data Portability
You can export your data in the following formats:
- CSV: Comma-separated values for easy import into spreadsheets
- PDF: Detailed or condensed vehicle history reports
- Car Swap Package (.carswap): Complete vehicle transfer package with all photos and records
Opt-Out of Analytics
While Firebase Analytics is enabled by default, we collect only anonymous usage data. If you wish to limit data collection:
- Disable analytics via your device's app permissions (if available)
- Contact us at support@roadfolio.app to request analytics opt-out
Children's Privacy
Roadfolio is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. We will delete such information from our servers.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we do:
- The "Last Updated" date at the top will be revised
- We will notify you via in-app notification or email (for significant changes)
- Continued use of the App after changes constitutes acceptance of the new policy
We encourage you to review this Privacy Policy periodically.
International Data Transfers
Roadfolio uses Firebase, which is operated by Google. Your data may be transferred to and stored on servers located outside your country of residence, including the United States. By using Roadfolio, you consent to the transfer of your data to countries with different data protection laws than your own.
Firebase complies with applicable data protection regulations, including GDPR (for European users) and CCPA (for California users).
California Privacy Rights (CCPA)
If you are a California resident, you have the right to:
- Know: What personal information we collect and how it's used
- Access: Request a copy of your personal information
- Delete: Request deletion of your personal information
- Opt-Out: Opt out of the sale of your personal information (Note: We do NOT sell personal information)
To exercise these rights, contact us at support@roadfolio.app.
European Privacy Rights (GDPR)
If you are in the European Economic Area (EEA), you have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate personal data
- Erasure: Request deletion of your personal data ("right to be forgotten")
- Restriction: Restrict processing of your personal data
- Portability: Receive your data in a structured, machine-readable format
- Object: Object to processing of your personal data
- Withdraw Consent: Withdraw consent at any time
To exercise these rights, contact us at support@roadfolio.app.
Summary (TL;DR)
- What we collect: Email, vehicle data you enter, photos you upload, location (only for trips), anonymous usage analytics
- How we use it: To provide the App's features, manage subscriptions, improve performance, fix bugs
- Who we share with: Firebase (Google), Superwall, Apple/Google (for payments) — we NEVER sell your data
- Your control: You can view, edit, export, or delete your data anytime
- Security: Data is encrypted, stored securely, and protected by industry standards
- Kids: Not for children under 13
- Changes: We'll notify you of significant policy updates