Website privacy policy
The short version. This site sets no cookies, runs no analytics, embeds no trackers, loads nothing from a third-party host, and has no forms. The only data that exists because you visited is the request log our hosting provider keeps in order to serve the page.
Scope
This policy covers this website. The Route Foundry iPhone app has its own policy — see the Route Foundry privacy policy — because it is a different piece of software with different data behaviour. The legal detail behind your rights, including the GDPR-specific information, is on the GDPR and your rights page.
What this website collects
Directly, nothing:
- No cookies. The site sets none, of any kind — not analytics, not preference, not "essential". There is no cookie banner because there is nothing to consent to.
- No analytics. No Google Analytics, no product analytics, no pixels, no heatmaps, no session recording.
- No third-party requests. Fonts are the system fonts already on your device; icons are inline in the page. Your browser contacts no host other than the one serving this site, so no CDN, font host or ad network learns your IP address from your visit.
- No forms. Contact links open your own email client. Nothing is submitted to us through a page.
- No account, no login, no profiling, no advertising, no sale or sharing of personal data.
Server logs
This site is hosted on Firebase Hosting, a Google Cloud service. Like any web server, it records a log entry for each request in order to deliver the page, keep the service running and defend it against abuse. Such an entry typically includes your IP address, the time of the request, the URL requested, the HTTP status returned, and your browser's user-agent string.
We do not build profiles from these logs, do not combine them with any other source, and do not use them for marketing. They are technical records of a service delivering a file. Google processes them as our hosting provider, under its own terms and security practices, on infrastructure that may be outside your country.
Under the GDPR our lawful basis for this narrow processing is legitimate interest — operating and securing a website cannot be done without it. See the GDPR page for the full statement, including international transfers.
If you email us
Email addresses on this site are ordinary mailto: links. When
you write to us, we receive your address, your message, and anything you
attach. Our mail is handled by Google (Gmail) as our email provider.
We use what you send only to answer you. We do not add you to a mailing list, and we send no marketing email. If you attach a route file or a diagnostics report to a support request, we use it only to investigate that request and will delete it once the issue is closed if you ask us to.
Client and business contacts
If you engage us for work, we hold the ordinary business record of that relationship — names, contact details, correspondence, contracts and invoices. That is processed to perform the contract and to comply with Indian tax and accounting law, and is kept for as long as those obligations require. Anything about a client's own systems or users is governed by the contract and any data-processing terms agreed with that client, not by this page.
Retention
| What | How long |
|---|---|
| Hosting request logs | Retained by Google per Firebase Hosting's own retention; we do not export or archive them |
| Support and enquiry email | Kept while the matter is open, then as a record for up to 24 months |
| Files attached to a support request | Deleted when the issue closes, and immediately on request |
| Contract, invoice and tax records | As long as Indian law requires |
Who we share with
We do not sell, rent or trade personal data, and we run no advertising. The only third parties that touch anything are the service providers we use to operate:
- Google — Firebase Hosting (serving this site) and Gmail (our email).
- Apple — only in relation to the App Store distribution of our app, and only as the store operator; Apple's relationship with you there is governed by Apple's terms.
We may also disclose information where the law genuinely requires it. If that ever happens we will tell the person affected, unless we are legally forbidden from doing so.
Security
The site is served over HTTPS only. It is a set of static files with no database, no server-side code and no user accounts, which removes most of the ways a website leaks data in the first place. Our email accounts are protected with strong authentication.
No system is perfectly secure. If you believe you have found a vulnerability in this site or in our software, please write to us — we would rather hear it from you than read about it later.
Your rights
You may ask what personal data we hold about you, ask for it to be corrected or deleted, object to our processing of it, or ask for a copy in a portable form. In practice, unless you have emailed us or engaged us, the answer is that we hold nothing beyond a hosting log entry we cannot link to you by name.
Write to contactnaikprajwal@gmail.com and we will respond within 30 days. The GDPR page sets out these rights in full, including how to complain to a supervisory authority.
Changes
If this policy changes, the effective date at the top changes with it. We do not make a change retroactive, and we will not start collecting something and describe it only afterwards.
Contact
Divith Technologies, Kumta, Karnataka, India.
contactnaikprajwal@gmail.com