PlantRoam is operated by Lee Williams LLC. This policy describes the mobile application’s actual data practices. Contact support@plantroam.com.
Information and purposes
- Account data. An email address and Supabase authentication identifiers support sign-in, session security, Saved synchronization, corrections, and deletion. Most users sign in with a one-time email link. Limited pre-created accounts may use a password processed directly by Supabase; PlantRoam does not receive or store that password in its application database.
- Saved places. Anonymous selections remain on the device. Signed-in Saved place identifiers may be stored in Supabase and merged with device selections.
- Recent activity. Recent searches and recently viewed places are stored locally, are bounded, and can be cleared in Settings. Full search history is not sent to an analytics service.
- Location. With permission, foreground precise location is used to show nearby places and distance. It is requested in context, is not used for background tracking, and destination search works without it. PlantRoam does not retain location history.
- Corrections and operations. Submitted correction text, evidence references, moderation state, and limited security or audit records may be retained to protect place data, resolve disputes, prevent abuse, and document decisions.
- Diagnostics. Sentry may receive privacy-minimized errors, app version, platform, environment, and static route context. Replay, advertising analytics, precise location, request bodies, authentication tokens, search text, screenshots, and unnecessary identifiers are disabled.
Providers and disclosure
PlantRoam uses Supabase for authentication, database, access controls, and backend logs; Resend for authentication email; Sentry for sanitized error monitoring; Expo/EAS for signed builds; and platform or open geographic services for maps, directions handoff, and place attribution. These processors receive information only as needed to provide and secure the service.
PlantRoam does not sell personal information and does not use it for cross-app advertising tracking. External websites, phone, email, maps, and directions are governed by their providers’ policies.
Retention and deletion
Local searches, views, and anonymous Saved data remain until cleared, removed, reinstalled, or deleted by the operating system. Account-linked Saved data remains while an account is active. Account deletion removes the authentication identity and private user-linked data and invalidates sessions. Corrections may be retained only in anonymized form when needed for listing integrity. Minimal security, legal, backup, and audit records may be retained where necessary; provider backups expire under provider schedules.
Security and choices
PlantRoam uses encrypted transport, row-level access controls, environment isolation, least privilege, secret scanning, and controlled production access. No system is perfectly secure. Users may deny location, clear local activity, sign out, or delete their account.
Children, changes, and rights
PlantRoam is a general-audience discovery service and is not directed to children under 13. It does not knowingly collect children’s personal information. Material changes will be posted with a revised date. Requests are handled under applicable law; identity verification may be required to protect an account.