VANISM

Privacy Policy

Last updated: July 28, 2026

Summary

Vanism is a travel OS with an optional GPS-verified treasure hunt. Most of your trip data lives on your device. Some features send limited data to our servers (and to third-party processors we use) so those features can work. We do not sell your data. We do not use it for advertising.

Cloud Copilot and other AI features only share personal data with third-party model providers after you grant an in-app permission. You can revoke that permission anytime in Settings → AI Copilot data sharing.

Contact: Jaqueline@vanism.ai

Data We Store On Your Device

Stored in a local SQLite database on your phone (deleted when you uninstall the app):

  • Trip log — latitude/longitude, timestamp, stop type, optional cost, reverse-geocoded place name
  • Vehicle & rig profile — name, nickname, MPG, tank/water/power, sleeps, hookup preference
  • Trip plans, budget entries, achievements, quest progress, Dragon balance cache
  • App settings — Challenge Mode, Community Posts, World Map opt-in, AI data-sharing consent, language, etc.

Data We Send Off-Device

Copilot (C3I) — requires in-app permission

Before the first cloud Copilot, Scout, Max, quest-dispatch, or AI moderation request, Vanism shows a permission sheet that explains what data is sent and that it goes to OpenRouter and underlying model providers. Cloud AI calls do not run until you tap Allow. You can turn sharing off later in Settings (Local Core offline intelligence remains available).

When you have allowed sharing and send a Copilot message (or use Scout / related AI features), the app may send:

  • Conversation text and a random device identifier
  • Rig profile summary (if you filled it in)
  • Recent completed trips (origin → destination + month — not exact dates or coordinates)
  • Achievement names and point total
  • Active plan summary, van vitals (water/power/fuel), budget remaining
  • Location — live GPS if you granted permission, otherwise your last logged spot (lat/lng, place name, age)
  • Optional intelligence brief derived from that context

This goes to our server, which uses OpenRouter (and underlying model providers such as Anthropic, Google, OpenAI, and DeepSeek) to generate a reply. We do not use Copilot content for advertising.

Economy (Dragon / ROAD)

Mint and spend requests send your device identifier, earn type, and — for location-tied earns — GPS coordinates, timestamp, and whether the fix was mocked. Used to credit/debit virtual Dragon balance and prevent abuse. Dragon is earned virtual currency; it is never sold for real money in the app.

Challenge awards

GPS-verified landmark awards send device identifier, achievement id, coordinates, timestamp, and mocked flag so the server can check you were actually there.

Community (when Community Posts is on)

Posts, map presence (fuzzed to roughly a 15-mile grid when World Map is opted in), convoy location shares, and moderation classification may send device identifier, trail name, rank label, text, and approximate location you choose to share. AI-assisted moderation classification only runs when AI data sharing is allowed.

Continuity / Sign in with Apple

Optional. May store a profile id, Apple subject identifier, devices linked to that profile, and email if Apple provides it. Used to restore your rider across phone and Expedition Desk.

Telemetry & crash reporting

Optional privacy-safe funnel events (device identifier + event name/value — no GPS in the event value) may be written to our analytics store. If crash reporting (Sentry) is enabled in a build, crash diagnostics may include device/app metadata needed to fix bugs.

Purchases

Subscriptions go through Apple via RevenueCat. We receive entitlement status, not your full payment card details.

Location Permission

Vanism requests When In Use location to log stops, verify challenge awards, and power optional nearby alerts. You can decline and still use planner, budget, and Copilot with last-known or manual context. World Map presence is off until you opt in. Cloud Copilot location context is only shared with third-party AI after the separate AI data-sharing permission.

Children's Privacy

Vanism is not directed at children. You must be 13+ (or the relevant minimum age in your country). We do not knowingly collect data from anyone under that age.

Third-Party Services

  • OpenRouter — routes permitted Copilot / Scout / Max / moderation / quest requests to model providers. See openrouter.ai/privacy.
  • Model providers (via OpenRouter) — may include Anthropic, Google, OpenAI, and DeepSeek, depending on which model answers.
  • Supabase — cloud database for community posts, rooms, and telemetry. See supabase.com/privacy.
  • Upstash — Redis for token balances, rate limiting, and anti-cheat. See upstash.com/privacy.
  • Vercel — API hosting. See vercel.com/legal/privacy-policy.
  • RevenueCat / Apple — subscriptions and TestFlight distribution. See apple.com/privacy.

Data Deletion

Local data is removed by uninstalling the app. Continuity / Apple-linked profile: Settings → Your Account → Delete Account (purges server profile and Apple mapping). You may also contact Jaqueline@vanism.ai with a device id or profile details to request server-side deletion.

Changes

We will update this policy and the "last updated" date when collection practices change.

Contact

Jaqueline@vanism.ai

© 2026 Lokes One. All rights reserved.

Back to Vanism