VenturaPrivacy Policy

Last updated: 2026-09-21

1. Who we are

Ventura is operated by Vasyl Leleka, Jednoosobowa działalność gospodarcza, registered at ul. Raciborska 4/3, 30-384 Kraków, Polska, NIP 6762659137, REGON 527272851.

For anything concerning this policy or your personal data, write to vasialeleka@ukr.net. We answer data-protection requests within one month, as GDPR requires.

2. What Ventura does

Ventura records your drives and turns each one into a *memory*: a route, the photos you attach, and statistics. Recording happens on your phone; the statistics are computed on our servers from the raw GPS trace your phone uploads. There is no "publish" step — a recorded drive becomes a memory automatically, visible to you and to the people you have approved as followers.

Because of what the app is, Ventura necessarily knows where you drive. This policy exists to tell you exactly what happens to that knowledge.

3. What we collect

Location. A GPS trace while you are recording a drive, including while the app is in the background or your screen is locked, if you grant that permission. This is the core of the product; without it there is no memory to build.

Vehicle identifiers. The Bluetooth identifier of a car you pair, so a drive can be attributed to the right vehicle in your garage. These are stored so that only you can read them.

Photos. Images you attach to a drive or a vehicle. We remove embedded location data (EXIF GPS) from photos before storing them.

Account information from your sign-in provider. Ventura signs you in with Google or Apple only — we never see or store a password. From the provider we receive your email address, and your name and profile picture where the provider supplies them. Apple may give you a private relay email address instead of your real one; that works fine with Ventura.

Date of birth. Collected once at sign-up.

Device push token, if you enable notifications.

We do not use advertising or analytics services. There is no Firebase, no Sentry, no Mixpanel, no tracking SDK of any kind in Ventura, and we do not build advertising profiles or sell data. We do not write coordinates to our application logs.

We do look at overall numbers of our own. From the drives already recorded in Ventura we work out how far and how often people drive, what kinds of places they stop at, and how reliably recording performs, so we can see how the app is used and what to improve next. This stays with us: no other company is involved, nothing extra is collected from your phone for it, and the figures describe patterns across many people rather than you. You can object to this — see §9.

4. Why we collect it, and our legal basis

PurposeData usedLegal basis (GDPR Art. 6)
Record a drive and compute its statisticsGPS traceContract — 6(1)(b)
Attribute a drive to a carBluetooth identifierContract — 6(1)(b)
Show your drives to followers you approved, with route ends trimmedTrimmed route, city namesContract — 6(1)(b)
Name a drive "City → City"First and last coordinate of the tripContract — 6(1)(b)
Run your accountEmail, name, pictureContract — 6(1)(b)
Confirm you are old enough to use VenturaDate of birthLegal obligation — 6(1)(c)
Send notifications you switched onPush tokenConsent — 6(1)(a)
Keep the service secure and workingTechnical logs without coordinatesLegitimate interest — 6(1)(f)
Understand how Ventura is used and improve itDrive statistics, stops and vehicle details already storedLegitimate interest — 6(1)(f)

You can withdraw consent for notifications at any time by turning them off; it does not affect anything else.

5. Who can see your drives

The route is shortened before it is ever saved — including for you. Ventura removes a stretch from the beginning and the end of every drive at the moment it is processed, and only the shortened route is stored. There is no fuller copy kept anywhere, so no request, mistake or breach can produce one. This is why your own drives are drawn shorter than the distance shown beside them: the distance is measured from the complete recording, the line is not.

You choose how much is removed — at least 100 m, 200 m, 500 m or 1 km at each end, in your profile settings. "At least" is exact wording: a little more is removed than you pick, randomised per drive, because a fixed distance can be measured across several drives and used to work backwards to the exact point. Changing the setting applies to drives you record afterwards; drives you already have keep the setting they were saved with, so lowering it can never uncover your history. For the same reason a single drive can carry a different distance from the one shown in your settings today: each drive records the distance it was actually saved with. One case creates that difference deliberately — a drive too short to remove your chosen distance from both ends. There we ask you first, and either remove less (with your agreement, and the drive keeps that smaller distance) or show the drive with no route at all. We never quietly remove less than you asked for.

The complete recording — the raw GPS trace the route is calculated from — is kept privately for 30 days and then deleted. It is never shown to anyone, and it is included in your data export while it exists.

We want to be precise about how far this protects you: it makes your start and end points *harder to determine*, and it is on by default for everyone. It is not anonymity, and we do not claim it is. Someone who can see many of your drives may still be able to narrow down an area. Trim your circle of followers accordingly — that remains the strongest control you have.

Nobody who is not an approved follower sees anything. A public profile only means follow requests are accepted automatically; it does not make your drives visible to the open internet.

Stops and photos inside a trimmed stretch are not shown to other people, and photos taken there are shown without any map or location.

Place names stay at city level — "Kraków → Praha", never a street address.

6. Who we share data with

We do not sell your data and we do not share it with advertisers. These are the only third parties involved in running Ventura:

RecipientWhat it receivesWhy
SupabaseAccount record, drive data, route geometry, raw GPS traces, photosDatabase, authentication and file storage
OpenStreetMap Foundation (Nominatim)The first and last coordinate of a processed driveTurning coordinates into a city name for the drive's title
OpenFreeMapYour IP address, and which map tiles your screen asks forServing the base map you see
ExpoPush token and notification textDelivering push notifications

The requests to OpenStreetMap are made by our servers, not by your phone, so your device's IP address is never revealed to them. Map tiles are the exception: those your device fetches directly, which is why OpenFreeMap sees your IP address and the area of the map you are looking at.

These providers process data on our instructions under data-processing agreements.

We will add a payment provider (Stripe) to this list when paid plans launch. As long as Ventura sells nothing, no payment company receives anything about you.

7. International transfers

Ventura's database, authentication and file storage run in Supabase's eu-west-3 region (Paris, France) — inside the European Economic Area. Your account, your drives, your routes, your raw GPS traces and your photos are stored there.

Two things do leave the EEA:

  • Supabase Inc. is a United States company. Although your data is stored in

France, its staff may access it for support and operational reasons. Supabase offers Standard Contractual Clauses for this, and we rely on them.

  • Expo, which delivers push notifications, operates from the United States.

It receives your device's push token and the text of the notification — nothing about where you drive. We rely on Standard Contractual Clauses here too.

Nominatim is run by the OpenStreetMap Foundation on servers in Europe. OpenFreeMap serves tiles from a network with nodes in several countries; a tile request carries your IP address and nothing else about you.

8. How long we keep data

Your drives, photos and account data are kept for as long as your account exists. Ventura does not delete your memories on its own — not on downgrade, not after inactivity.

If you delete your account:

1. It is frozen immediately — your profile, garage and drives disappear from everyone else's view at once. 2. You have 30 days to change your mind, and can cancel the deletion in that window. 3. After 30 days we permanently delete your stored files and then your account record. This is not reversible and we keep no copy.

One honest caveat: deleted data can persist in our encrypted database backups for a limited period, until those backups are rotated in the ordinary course of business. It is not accessible in the product and is not used for anything.

If you have paid for a subscription, we keep the minimum billing records that tax and accounting law requires us to keep, even after account deletion.

9. Your rights

Under GDPR you may ask us to:

  • give you a copy of your data (Art. 15) — download it yourself from

account settings on the website, at any time and free of charge, or write to vasialeleka@ukr.net;

  • correct anything inaccurate (Art. 16) — most fields you can edit yourself

in your profile;

  • delete your data (Art. 17) — available directly in account settings, see

§8;

  • receive your data in a portable format (Art. 20) — the same export gives

you machine-readable JSON with your drives, routes and files;

  • object to or restrict certain processing (Arts. 18, 21).

You also have the right to complain to a data protection authority. In Poland that is the *Prezes Urzędu Ochrony Danych Osobowych* (uodo.gov.pl); you may also complain to the authority where you live.

10. Age

Ventura is for people aged 16 and over. We ask for your date of birth when you create an account, and accounts are not available to anyone younger.

We chose a single age for everyone rather than the lowest each country allows. Sixteen is the digital-consent age in Poland, where Ventura is established, and it is the highest any EU country sets, so one rule covers everybody — and it means we never have to collect or verify a parent's consent, which would mean collecting *more* personal data about *more* people, including the parent.

If we find that an account belongs to someone under 16, we delete it and the data with it. If you believe a child has created an account, write to vasialeleka@ukr.net and we will look into it.

Ventura is a record of drives, and in most of the countries we operate in you cannot hold a car licence before 17 or 18 in any case.

11. Cookies

The Ventura website uses a single essential cookie to keep you signed in. We use no advertising or analytics cookies, which is why you are not shown a cookie consent banner.

12. Security

Data is encrypted in transit and at rest. Raw GPS traces and photos live in private storage reachable only through short-lived signed links. Access rules are enforced in the database itself, so one user's data cannot be read by another. Only our processing backend holds elevated credentials; the phone and web apps never do.

13. Changes to this policy

When this policy changes we update the date at the top, and we tell you in the app if the change is material.

14. Contact

vasialeleka@ukr.net · Vasyl Leleka, ul. Raciborska 4/3, 30-384 Kraków, Polska