Privacy Policy
Last updated 20 September 2026
somewhere (“the app”, “we”, “us”) turns places you save on social media into a personal map. This policy explains what data the app handles, why, and the choices you have. It covers the somewhere iOS app and its share extension.
The short version: the app works without an account and without sharing your data with anyone beyond what’s below. If you create an account, we store your email and the places you save so we can sync them across your devices. We use a product-analytics tool to see how the app is used and to catch errors, but we show no ads, run no advertising or attribution SDKs, and never sell your data.
What we collect
Nothing, until you act. Open the app and use it on one device only, and no personal data leaves your phone — your places live in local storage on the device.
When you choose to use certain features, the following is collected:
- Account & sync (optional). If you create an account to sync across devices, we store your email address and a securely hashed version of your password. If you sign in with Apple or Google instead, we receive a verified identifier and, where available, your email; we do not store your name from those providers.
- Your saved places. When you are signed in, the places you save — name, address, coordinates, the source post link, any notes you add, and the collections you organise them into — are stored on our server so they appear on your other devices. Absent an account, this never leaves your device.
- Shared links. When you share an Instagram or TikTok link into the app, that URL is sent to our server to identify the place it refers to. We keep the resulting place (as one of your saved places, above); we do not build a separate history of the links you share.
- Place search. Text you type to search for a place is sent to Google’s Places API to return matching results. It is used to answer that request and is not retained by us.
- Subscriptions. If you buy somewhere Plus, our payments provider RevenueCat records the purchase and its status so the app can unlock paid features and restore them on a new device. This is tied to an anonymous identifier, not to your account email.
- App usage & error reports. We use PostHog, a product-analytics tool, to record events like saving a place, creating a collection, or an error occurring — counts and category labels only, never a place’s name, address, notes, or your saved content. If you’re signed in, these events are linked to your account (including your email); if you’re not, they’re tied to an anonymous device identifier instead.
We do not collect your device location, your contacts, your photo library, browsing history, or any advertising identifier, and the app runs no advertising or attribution SDKs.
How we use it
- To authenticate you and keep your account secure.
- To sync your places and collections across your devices.
- To turn a shared post or a search into a place on your map.
- To provide and restore your somewhere Plus subscription.
- To understand how the app is used and to find and fix errors, via the product-analytics events described above.
- To respond to you when you contact support.
We do not use your data for advertising or profiling, and we do not sell or rent it.
Who it is shared with
We share data only with the service providers needed to run the app, and only for that purpose:
- Our hosting provider (DigitalOcean) stores the account and sync database.
- RevenueCat processes and stores subscription state.
- PostHog processes and stores app-usage events and error reports, as described above.
- Apple and Google verify sign-in when you choose those methods; Google also returns place search results.
- Apple processes subscription payments through the App Store; we never see your card details.
We may disclose data if required by law, or to protect the rights, safety, or security of our users or the service.
How long we keep it
Your account and saved places are kept for as long as your account exists. When you delete your account, the account record and all places and collections synced to it are permanently deleted from our database. Data held on your own device is removed when you delete the app.
Your choices and rights
- Use the app without an account. Sync is entirely optional.
- Delete your account and data at any time from within the app: Account → Delete account. You can also email us at privacy@somewheremap.app and we will do it for you.
- Access or correct your data. Your places are visible and editable in the app. For a copy of the data associated with your account, email privacy@somewheremap.app.
- Manage your subscription in your Apple ID settings; the app also offers a subscription management screen.
Depending on where you live, you may have additional rights under laws such as the GDPR or the CCPA (to access, correct, delete, or port your data, and to object to certain processing). We honour these requests for all users. Contact privacy@somewheremap.app to exercise them.
Security
Traffic between the app and our server is encrypted in transit (HTTPS). Passwords are stored only as salted scrypt hashes, never in plain text. Sign-in tokens are held in the iOS Keychain on your device.
Children
somewhere is not directed at children under 13, and we do not knowingly collect data from them.
Changes to this policy
If we make a material change, we will update the date at the top of this page and, where appropriate, notify you in the app.
Contact
Questions about this policy or your data: privacy@somewheremap.app.