Privacy Policy
Privacy at a Glance
Across Us shares city-level presence with accepted friends and the trip and flight information you choose to add with authorized trip members. City geocoding is performed on-device; we do not collect a continuous GPS trail. We do not sell personal data, track you across apps, or serve ads.
1. Scope & Core Principles
This policy covers the Across Us iOS app, Widgets, and supporting backend services. Across Us operates on the principle of mutual consent and minimal data retention.
2. Information We Process
- Account & Authentication: Your account identifier associated with Sign in with Apple, your provided display name and username, avatar palette, and authentication/session information. These records are linked to your account, not anonymous. We do not request your phone address book or phone number.
- City-Level Presence: Coarse city name, country code, and state or administrative region when available, resolved on-device (e.g., "New York, NY, US"). State or region helps distinguish places with the same name and choose regional artwork. It follows the same friend-sharing controls as your city. Precise coordinates used by Apple's CoreLocation stay strictly on your iPhone and are never sent to our servers.
- Friend Connections & Preferences: Friend requests, accepted friends, per-friend sharing toggles, and notification settings.
- Personal Travel Plans: Future cities, country and administrative-region information, time zones, travel dates, chosen friend audiences, plan-browsing consent, and reminder preferences. Plans are private by default. Upcoming matches require accepted friends to share eligible plans with each other. If you separately allow selected friends to view a plan, those friends can browse its full city and dates in Friend plans without a matching plan of their own. Existing plans do not gain this permission automatically. Joining a shared Trip does not automatically share a personal plan.
- Trips & Flights: Trip names, destinations, dates, membership and invitations; the flights you add, including flight number, travel date, airports, scheduled/updated times and status. Shared trip content and any previously submitted coordination notes or check-ins may be stored with the trip. Each signed-in member manages their own flight information.
- Flight Queries: Flight number and departure date used to look up flight information, cached provider responses, and request counts used to enforce service limits.
- Notifications & Devices: Installation identifier, APNs device token, delivery records, and notification preferences, including per-trip flight alerts and flight-planning reminders. When you open Trips, we store your device’s time zone and app language to schedule morning reminders at 9 AM in your local time. APNs tokens are encrypted by our backend before database storage.
- Service Operation: Authentication, request/error and security records needed to operate the service, diagnose failures and prevent abuse. The app does not include advertising or cross-app tracking.
3. How We Use Information
We use this information to authenticate accounts, maintain friend connections and sharing choices, display city presence and Widgets, synchronize shared trips across devices, process invitations, retrieve flight information, and deliver permitted notifications. Live flight alerts are optional and off by default for each trip. After you open Trips, flight-planning reminders can remind you each morning when an upcoming trip is missing your outbound flight; other trip members can also send limited reminders. You can turn these planning reminders off for each trip. Missing flight details do not tell us whether you have bought a ticket. Flight checks are periodic, not continuous; confirm travel decisions with your airline.
4. Data Sharing & Third Parties
- Accepted Friends: See your profile identity and the city presence you permit them to see. Selected friends can also browse a future plan when you explicitly enable plan browsing. You can change the audience, disable browsing, or delete the plan; subsequent reads enforce the updated permissions. Publishing a plan does not send an announcement to all friends. City-sharing settings control city presence, not personal plans or information you separately share within a trip.
- Authorized Trip Members: Can see the shared trip, participant identities and added flight details. Pausing city sharing does not automatically remove previously shared trip or flight content.
- Apple: Provides Sign in with Apple and Apple Push Notification service (APNs).
- Cloud Infrastructure (Supabase): Encrypted database storage and serverless edge functions.
- Flight Data (AeroDataBox through RapidAPI): Our server sends the requested flight number and departure date to obtain flight schedules/status. This lookup does not send your profile name, Apple account identifier or APNs token. The provider also receives technical request information from our server.
We do not sell, rent, or monetize your personal data in any way.
5. Account Deletion & Your Rights
You can pause city sharing, change notification preferences, and edit or remove your own flights using the app. Account deletion is available at You → Delete account and removes the authentication account and account-linked city, friendship and device records.
Shared trip records are separate: participant display information and previously added itineraries may remain in shared trips for other members after account deletion. Remove your own flights before deleting your account if you do not want them retained. Already delivered notifications or copies made by recipients cannot be recalled.
Records are retained to provide these features until removed through the applicable controls; operational records and infrastructure backups may remain subject to their retention cycles. For privacy or shared-record removal requests, contact us through our Support page.
隐私政策
隐私要点速览
Across Us 向已接受的好友共享城市级状态,并向有权访问行程的成员共享你主动添加的行程和航班信息。城市地理编码在设备上完成,我们不收集连续 GPS 轨迹,不出售个人数据,不进行跨 App 追踪,也不展示广告。
1. 适用范围与核心原则
本隐私政策适用于 Across Us iOS App、小组件及后台服务。Across Us 始终遵循“双向同意、极简收集、零精准追踪”原则。
2. 我们处理的信息
- 账户与身份认证: 与 Apple 登录关联的账户标识符、你提供的显示名称与用户名、头像配色,以及认证和会话信息。这些记录关联至你的账户,并非匿名数据。我们不索取手机通讯录或手机号。
- 城市级状态(Presence): 在设备上解析的城市、国家代码、可用时的州或行政区,以及更新时间。州或行政区用于区分同名地点和选择地区图标,遵循与城市相同的好友分享控制。精准 GPS 坐标保留在设备端,不上传服务器。
- 好友关系与偏好: 好友申请、好友列表、单人/全局共享开关及小组件隐私模式。
- 个人未来计划: 未来城市、国家与行政区信息、时区、出行日期、选择的好友分享范围与提醒偏好。计划默认仅自己可见;未来同城匹配要求已接受的好友双方相互分享符合条件的计划。加入共同 Trip 不会自动共享个人计划。
- 行程与航班: 行程名称、目的地、日期、成员和邀请;你添加的航班号、出行日期、机场、计划与更新后的时间及状态。共享行程内容及此前提交的集合备注或签到信息可能随行程保存。每位已登录成员管理自己的航班信息。
- 航班查询: 用于查找航班信息的航班号与出发日期、缓存的供应商结果,以及用于限制服务用量的请求次数。
- 通知与设备: 安装标识符、APNs 推送令牌、投递记录及通知偏好,包括逐行程的航班提醒。APNs 令牌由后端加密后存入数据库。
- 服务运行: 用于运行服务、排查故障及防止滥用的认证、请求、错误和安全记录。App 不包含广告或跨 App 追踪。
3. 信息的使用目的
信息用于账户认证、维护好友和共享设置、展示城市状态与小组件、跨设备同步共享行程、处理邀请、查询航班信息及发送允许的通知。每个行程的航班提醒由用户自愿开启,默认关闭。航班检查是周期性的,并非连续实时追踪;请以航空公司信息确认出行安排。
4. 信息共享与第三方服务
- 已接受的好友: 可见你的资料身份及你允许共享的城市状态。城市共享设置不控制你另外在行程中共享的信息。
- 有权访问行程的成员: 可见共享行程、参与者身份及所添加的航班详情。暂停城市共享不会自动移除已经共享的行程或航班内容。
- Apple: 提供 Apple 登录与 APNs 推送基础设施。
- 云端服务(Supabase): 提供加密数据库与无服务器计算支持。
- 航班数据(通过 RapidAPI 使用 AeroDataBox): 后端发送所查询的航班号和出发日期以获取时刻及状态,不会在此查询中发送你的显示名称、Apple 账户标识或 APNs 令牌。供应商也会接收来自后端的技术请求信息。
我们绝不出售、出租任何个人数据,亦不用于广告投放。
5. 你的权利与一键注销
你可以在 App 中暂停城市共享、调整通知偏好,以及修改或删除自己的航班。通过 You(个人)→ Delete account(注销账号) 删除账户,会移除认证账户及与账户关联的城市、好友和设备记录。
共享行程单独保存:注销账户后,参与者显示信息及此前添加的行程航班仍可能保留在其他成员的共享行程中。如果不希望保留自己的航班,请先删除航班再注销账户。已经送达的通知或接收者保存的副本无法撤回。
相关记录会为提供上述功能而保留,直至通过相应操作移除;运行记录与基础设施备份可能按各自保留周期继续保存。如需咨询隐私或移除共享记录,请通过支持页面联系我们。