Privacy Policy

Last updated: 27 July 2026

1. Controller

Nuancebit GmbH

Brahmsstraße 4, 37085 Göttingen, Germany

Managing Director: Cornelius Brosche

Email: info@nuancebit.com

Legal notice (Impressum): https://nuancebit.com/impressum/

2. Summary

Parcourse is local-first: your workouts, your profile, your Apple Health data and all camera and pose data stay on your device.

Data only leaves your device when you actively use a feature that involves other people — a challenge, a leaderboard, a station review or a published run. Each of these features has its own consent, which you can withdraw individually (Profile → Privacy & Data).

There is no user account with a name and password: the app signs you in anonymously. We only know your name and email address if you enter them yourself into a brand’s prize-draw form.

3. What stays on the device

This data is never transmitted to us or to third parties:

  • Camera image and pose data. Form analysis runs entirely on-device via Apple’s Vision framework. No video, no single frame and no body point is uploaded or stored.
  • Apple Health data (e.g. heart rate, calories from Health).
  • Your profile: age, gender, height, weight, activity level.
  • Your workout history, achievements, streaks and map cache.
  • Run Reel videos — these are created on the device; only what you share yourself is shared.

4. What leaves the device — and when

Only when you actively use the respective feature:

  • Challenge participation → display name, progress and score. Visible to other participants and to the organising brand.
  • Completed workouts → exercise, repetitions, duration, calories, form score. Only transmitted if you take part in at least one challenge or have enabled “Local Legends”.
  • Location (GPS coordinates) → only if you enable “Local Legends”. Without this consent, coordinates are removed before upload.
  • Published runs → title, stations with coordinates and the complete recorded route. Public runs are visible to all signed-in users.
  • Leaderboard entry → your public name, time, repetitions, form score. Only after explicit confirmation on the results screen.
  • Run logs (attempts) → split times per station. Saved automatically after a run on a published run.
  • Public name (handle) → discoverable worldwide as soon as you set one. Friend requests and invitation codes contain this name.
  • Station reviews → name, star rating and your comment text, publicly visible.
  • Check-in / presence at a station → name, coordinates and time, visible to other signed-in users.
  • A brand’s prize-draw or lead forms → exactly the fields shown in the form (e.g. name, email, phone). This data goes to the respective brand.

5. Who can see your data

Honesty matters more here than reassurance:

  • Public leaderboards, public runs, station reviews, Local Legends and presence indicators are visible to all signed-in users — not only to your friends.
  • “Friends” leaderboards are currently filtered on the device. Do not regard them as a technical access barrier.
  • Brands (tenants) see the participation data of their own challenges and branded runs, as well as the form data you have filled in yourself.
  • Private runs and their logs are visible only to you.

If you do not want something to be public, do not enable the respective feature — or withdraw it under Profile → Privacy & Data.

6. Legal bases

  • Art. 6(1)(b) GDPR (performance of a contract) — provision of the app’s core functionality on the device.
  • Art. 6(1)(a) GDPR (consent) — every feature that transmits data to our servers or to brands: challenges, leaderboards, Local Legends, station reviews, lead forms, usage statistics.
  • Art. 9(2)(a) GDPR (explicit consent) — insofar as workout data qualifies as health data, we obtain consent per feature before data leaves the device. There is no blanket consent at installation.
  • Art. 6(1)(f) GDPR (legitimate interest) — crash reports for troubleshooting; can be switched off at any time.

Every consent can be withdrawn at any time with effect for the future (Art. 7(3) GDPR): Profile → Privacy & Data.

7. Storage location and transfer to the USA

Our database (Google Firestore) is located in the European Union (multi-region “eur3”).

Part of the server-side processing — such as deleting your account and preparing statistics — currently runs on Google servers in the USA. This is based on the EU-US Data Privacy Framework (adequacy decision of the EU Commission of 10 July 2023) and on standard contractual clauses.

We say this explicitly, because a blanket statement that “all data stays in the EU” would not be true for these processing steps.

8. Processors and integrated services

  • Google Firebase (Google Ireland Ltd. / Google LLC) — database, anonymous sign-in, server-side functions. Processor.
  • Firebase Crashlytics — crash reports (technical data: device model, operating system, stack trace). Active by default, can be switched off.
  • Firebase Analytics — pseudonymous usage statistics. Off by default, only after explicit consent.
  • Apple — maps (MapKit), Apple Music / now-playing display, App Store delivery.
  • OpenStreetMap / Overpass API — retrieval of sports and fitness stations in your vicinity. A map section is transmitted, with no reference to the user.
  • YouTube (Google) — trainer videos are embedded. On playback, Google receives your IP address and access data.
  • Spotify — only if you actively connect Spotify in order to control music.
  • Awin — affiliate links in product recommendations. A connection is only established when you tap; the redirect takes place in the browser.
  • Instagram / Meta — only if you share a Run Reel to your story yourself.
  • Brands (tenants) as separate controllers for their challenges, branded runs and prize-draw forms.

9. Retention periods

  • On the device: until you delete the data or uninstall the app.
  • Workout and challenge data on the server: until the respective consent is withdrawn or the account is deleted.
  • Run logs with GPS track: automatically deleted after 18 months.
  • Records of consent: retained as evidence and pseudonymised when the account is deleted (Art. 17(3)(e) GDPR).
  • Crash reports: 90 days at Google.

10. Deleting your account

Profile → Account → Delete account.

This deletes: your user document including check-ins and location data, your workouts on the server, your published runs including run logs and leaderboard entries, your public name (the name becomes available again), your friendship data and invitation codes, your station reviews, presence and Local Legends entries, as well as your form data from prize draws.

What remains: entries in leaderboards of challenges and branded runs remain as a ranking, but pseudonymised — others see “Deleted user” there instead of your name. This preserves the traceability of the results for the remaining participants (Art. 17(3)(b) GDPR). Pseudonymised records of consent likewise remain.

Important: because the app works without a user account, your access is tied to this device. If you delete the app and reinstall it, the previous access cannot be restored.

11. Your rights

You have the right of access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction (Art. 18), data portability (Art. 20) and objection (Art. 21), as well as the right to withdraw consent at any time (Art. 7(3)).

For access and data portability, write to us at info@nuancebit.com. We reply within one month.

Note: because the app works anonymously, we need the user identifier from the app in order to assign your request (Profile → Privacy & Data).

12. Right to lodge a complaint

You can lodge a complaint with a data protection supervisory authority, in particular with the one responsible for us:

Die Landesbeauftragte für den Datenschutz Niedersachsen, Prinzenstraße 5, 30159 Hannover

poststelle@lfd.niedersachsen.de

13. Children and young people

The app is intended for people aged 16 and over. Features that require consent — public name, friends list, leaderboards and location-based features — require this minimum age (Art. 8 GDPR).

14. Changes to this policy

We update this policy when the app changes. The version displayed in the app at the time is authoritative.

Website version: https://parcourse.ai/datenschutz

Privacy Policy · Parcourse