Privacy Policy
CarMap Link (“the App”, “we”, “our”) respects your privacy. This policy describes the data we collect, how we use and store it, the partners who assist us, and the choices available to you.
1. Data We Collect
- Tesla Account Tokens & Profile: access token, refresh token, token expiry, and Tesla user identifier (email or sub) obtained through Tesla OAuth. Tokens are stored in encrypted secure storage on your device.
- Navigation Information: destinations you search or send to your vehicle, coordinates selected on the map, and recent drive history saved on your device.
- Location Data: your current GPS location (when permission is granted) to center the map and send navigation commands. We do not track location in the background outside of navigation requests.
- Usage Quota Data: Tesla user ID and remaining free quota stored in our Supabase database to manage trial usage and subscription status.
- Device & Diagnostics: basic device metadata, crash logs, and analytics events collected via Firebase Analytics/Crashlytics to maintain service quality.
- Push Notification Tokens: APNs/FCM tokens used to deliver alerts about navigation status or account events.
- In-app Purchase Records: subscription purchase receipts and transaction identifiers processed through Apple to unlock unlimited navigation.
2. How We Use Data
- Authenticate with the Tesla Fleet API and maintain your session.
- Send navigation, GPS, and waypoint commands to your Tesla vehicle at your request.
- Display maps, nearby places, and localized search results using Google Maps and Places APIs.
- Manage free trial quotas, subscription status, and billing records.
- Provide push notifications and respond to customer support inquiries.
- Improve stability through crash reports and analytics.
3. Sharing & Processors
We do not sell personal data. We share information only with trusted processors necessary to operate the App:
- Tesla, Inc.: Tesla Fleet API receives navigation commands containing your selected destination and vehicle identifier.
- Google: Maps, Places, Geocoding APIs and Firebase services (Analytics, Crashlytics, Messaging).
- Supabase (PostgreSQL & Auth): stores Tesla user ID and remaining quota for the free trial/subscription system.
- Vercel: hosts the API endpoints that proxy Tesla credentials and quota management.
- Apple: processes App Store purchases and maintains subscription receipts.
Navigation history is stored locally on your device. We do not transmit it to other parties except when you explicitly send a destination to Tesla.
4. Retention & Deletion
- Tesla tokens remain on your device until you sign out or delete the App.
- Quota data in Supabase is retained while you use the App and deleted within 30 days of an account deletion request.
- Analytics and crash logs are retained according to Firebase default lifetimes (up to 26 months) and aggregated thereafter.
- Deletion requests: contact gunnylove@gmail.com and we will remove server-side data within 30 days.
5. Your Rights
- Access, correct, or delete your information by emailing us.
- Withdraw optional permissions such as location or notifications through your device settings.
- Unsubscribe from in-app purchases through your Apple ID settings.
6. Children
The App is intended for users eligible to hold a Tesla account (typically 14+ or as defined by local law). We do not knowingly collect data from children below the minimum age.
7. Security
We protect data with encrypted network connections (HTTPS), secure token storage, access controls, and regular monitoring of backend services.
8. Contact
Email: gunnylove@gmail.com