VER 1.0 // GREAT BRITAIN // RECORD OF EFFORT
Privacy Policy
Effective Date: Feb 2026
This Privacy Policy describes how Northing Technical Limited ("we," "us," or "our") collects and processes data for forensic verification through the Northing mobile application. The service is strictly limited to the geography of Great Britain (England, Scotland, Wales).
01. Scope
This policy applies to all users of the Northing app. We process data solely for the purpose of verifying summit attempts against our ledger.
02. Data Collection & Source
We only ingest data that you explicitly authorise via our Ingestion Protocols:
- Strava Bridge: With your consent, we pull raw GPS and barometric streams via the Strava API.
- File Audit: We process .GPX or .FIT files that you manually select from your device storage.
03. Purpose of Processing
We process this data for a single purpose: Forensic Verification. Our system analyses raw GPS/Barometric streams to verify the integrity and "human-origin" of an activity.
- We do not sell your data.
- We do not use your data for advertising.
- We do not share raw biometric data with third parties unless required by law.
04. Data Retention & Security
Security: All data is encrypted in transit using TLS 1.3 and encrypted at rest using AES-256.
Retention: Forensic logs are kept only as long as necessary to maintain the "verified" status of your record. You may request full data deletion at any time within the app settings.
05. Third-Party API Data
When you connect your Strava account, we receive a one-time authorisation to access your activity files. We strictly adhere to the Strava API Conditions, ensuring that your data remains private and is used only for the services you have requested.
06. Contact
For data inquiries or deletion requests, contact:
Email: hello@northing.app