Thrift Map Privacy Policy
Effective date: September 29, 2026
Service owner/contact: Jon, jandlthrift@gmail.com.
Information stored by Thrift Map
The private app stores information its invited users enter or upload, such as saved places, sale details, notes, visit history, preferences, corrections, and user-owned photos or source files. The app also stores Google Place IDs for Google-linked places and an accounting ledger for Google API requests. These records are stored on the deployment owner's server and shared with the other person who has access to the app.
The server keeps backups of app records and user-uploaded files on owner-configured separate storage. Daily backup retention is 30 days; a restored backup may bring back information deleted after that snapshot. Google Places response content and Google photo names or image bytes are not stored in durable app records or backups. The app keeps its owner passphrase verifier separately from the database and excludes it from backups and exports.
Google Maps Platform requests
When a user requests map, place, geocoding, photo, or route features, Thrift Map sends the information required for that request to Google Maps Platform. Depending on the feature this can include a map viewport or center, a place ID, an address, or route origin and destination. Google processes those requests under its Privacy Policy, Google Maps Platform Terms, and applicable service terms. Review Google's Places API policies for its handling and display requirements.
Access, security, and disclosure
The app is intended for two invited users and is reachable only through the owner's Tailscale network. The owner administers the server, its access controls, and its backup storage. Do not enter information that you do not want the other invited user to see. The owner may access server data to operate, back up, or restore the service. The app does not offer a separate sign-in or per-user data boundary.
The owner does not use Thrift Map data for advertising. Information is not sold. The owner may disclose information when required by law or when necessary to protect the service or its users.
Retention and requests
Active records remain until users delete them or the owner removes them. Deleted records can remain in an unexpired backup for up to 30 days and can reappear after a restore. To ask the owner to correct or delete app data, use the contact information above.
Changes and contact
The owner may update this policy when the app or its data practices change. The effective date will be updated at that time. Contact the owner using the information above with privacy questions or requests.