Welcome to Trackr. This Privacy Policy explains how TRACKR ("we," "our," or "us") collects, uses, discloses, and protects your personal information when you use our mobile application and services.
TRACKR is the data controller responsible for the collection, processing, and protection of your personal data when you use our application and services.
Legal Entity Name: TRACKR
Data Controller: TRACKR (our company)
Business Address: 10 Modupe St, Idimu, Lagos 102213, Lagos, Nigeria
Contact Email: [email protected]
Website: https://trackr.vigla.tech
Name: Ifeoluwa Adeleke
DPO Email: [email protected]
For privacy inquiries and to exercise your data rights, please contact us using the information above.
We collect and process the following categories of personal and non-personal information when you use our app:
We collect personal identifiers that can be used to identify you:
Important: We collect precise location data when you use our vehicle tracking features. This includes:
This location data is necessary for our core vehicle tracking functionality and is only collected when you have granted location permissions.
We automatically collect technical information about your device and how you use our app:
We collect information about how you interact with our app:
We collect visual content when you use certain features:
Photo and Camera Privacy - Zero Storage/Camera Permissions:
We may collect the following sensitive personal information:
We collect data to diagnose issues and improve app performance:
If you contact us, we may collect:
If you use social login features, we receive:
Information about vehicles you register in the app:
For transparency, we explicitly state that we do NOT collect:
In compliance with Google Play Store requirements, below is an explicit categorization of all data types we collect, organized by Google Play's Data Safety categories:
Data Types Declaration: This section explicitly lists all data types collected by our app, matching Google Play's Data Safety form categories for complete transparency.
✅ Approximate Location
✅ Precise Location
✅ Name
✅ Email Address
✅ User IDs
✅ Phone Number
✅ Purchase History
✅ User Payment Info
✅ Photos
❌ Videos
✅ App Interactions
✅ In-App Search History
✅ Other User-Generated Content
✅ Device or Other IDs
✅ Crash Logs
✅ Diagnostics
✅ Other App Performance Data
✅ Files and Docs
For complete transparency, we explicitly state we do NOT collect the following data types:
| Data Type Category | Collected? | Shared? | Purpose |
| Location (Precise & Approximate) | ✅ YES | ✅ YES | Vehicle tracking |
| Personal Info (Name, Email, IDs) | ✅ YES | ✅ YES | Account, authentication |
| Financial Info (Purchase History) | ✅ YES | ✅ YES | Premium subscriptions |
| Photos | ✅ YES | ✅ YES | Vehicle documentation |
| App Activity & Interactions | ✅ YES | ✅ YES | Analytics, improvement |
| Device IDs | ✅ YES | ✅ YES | Analytics, identification |
| Crash Logs & Diagnostics | ✅ YES | ✅ YES | Bug fixing, stability |
| Videos | ❌ NO | ❌ NO | N/A |
| Audio/Voice Recordings | ❌ NO | ❌ NO | N/A |
| Contacts/Calendar | ❌ NO | ❌ NO | N/A |
| Messages/SMS | ❌ NO | ❌ NO | N/A |
| Health & Fitness | ❌ NO | ❌ NO | N/A |
For users in the European Union, we process your personal data based on the following legal grounds:
We use your information for the following purposes:
Important: We do not sell, rent, or trade your personal information to third parties for monetary or other valuable consideration.
We share information with trusted service providers who assist us in operating our app:
These service providers are contractually obligated to protect your data and use it only for specified purposes.
We may disclose your information if required by law, court order, or governmental authority, or to protect our rights and safety.
In the event of a merger, acquisition, or sale of assets, your information may be transferred. We will notify you of any such change.
You have the right to know whether your personal data is being shared with third parties. Upon request, we will provide you with:
To request this information, contact us at [email protected]
If you are located in the European Union, you have the following rights:
EU Supervisory Authorities: You can find your local data protection authority at: https://edpb.europa.eu/about-edpb/board/members_en
If you are a California resident, you have the following rights:
How to Exercise CCPA Rights: Contact us at [email protected] or [email protected]
If you are a Virginia resident, you have the following rights:
How to Exercise VCDPA Rights: Contact us at [email protected]
If you are located in Brazil, you have the following rights under LGPD:
How to Exercise LGPD Rights: Contact us at [email protected] or our DPO at [email protected]
To exercise any of these rights, please contact us at:
We will respond to your request within 30 days (or as required by applicable law).
You have the right to lodge a complaint with a supervisory authority if you believe we have violated your privacy rights:
While we do not sell personal data or engage in targeted advertising, you can control your data as follows:
To opt-out of any data sharing or selling (which we do not currently engage in): Email [email protected] with subject line "Data Sharing Opt-Out Request"
We retain your personal information for as long as necessary to:
When you delete your account, we will delete or anonymize your personal data within 30 days, except where we are required to retain it by law.
We implement appropriate technical and organizational security measures to protect your data:
However, no method of transmission over the internet is 100% secure. We cannot guarantee absolute security.
Your information may be transferred to and processed in countries other than your country of residence. We ensure appropriate safeguards are in place, including:
Trackr is not intended for users under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.
We share your personal data with the following third-party services to operate our app and provide our services. Below is a comprehensive disclosure of all third-party services, SDKs, API endpoints, and what data is shared with each:
Data Sharing Disclosure: We share your data with third-party service providers ONLY to provide and improve our services. We do NOT sell your personal data to third parties.
Below is the complete list of all third-party Software Development Kits (SDKs) integrated into our app:
| SDK Name | Provider | Purpose | Data Shared |
| Firebase Core SDK | Google LLC | Backend infrastructure | Device info, app version |
| Firebase Authentication SDK | Google LLC | User authentication | Email, name, user ID, tokens |
| Cloud Firestore SDK | Google LLC | Database storage | All user data, vehicle data |
| Firebase Storage SDK | Google LLC | File storage | Photos, images, documents |
| Firebase Analytics SDK | Google LLC | Usage analytics | App interactions, usage patterns |
| Firebase Crashlytics SDK | Google LLC | Crash reporting | Crash logs, stack traces |
| Firebase Performance Monitoring SDK | Google LLC | Performance tracking | App performance metrics |
| Google Maps SDK for Android/iOS | Google LLC | Map display | Location data, map interactions |
| Google Places SDK | Google LLC | Location search | Search queries, location data |
| Geocoding SDK | Google LLC | Address conversion | GPS coordinates, addresses |
| Firebase Installations SDK | Google LLC | Device instance management | Installation IDs, device info |
| Google Play Services FIDO | Google LLC | Biometric authentication | Biometric auth tokens (on-device) |
| ML Kit Barcode Scanning | Google LLC | VIN barcode scanning | Barcode images (on-device) |
| ML Kit Digital Ink Recognition | Google LLC | Handwriting recognition | Digital ink data (on-device) |
| ML Kit Face Detection | Google LLC | Face detection in images | Face detection data (on-device) |
| ML Kit Image Labeling | Google LLC | Image content identification | Image labels (on-device) |
| ML Kit Language ID | Google LLC | Language identification | Text samples (on-device) |
| ML Kit Object Detection | Google LLC | Object detection in images | Object detection data (on-device) |
| ML Kit Smart Reply | Google LLC | Suggested text responses | Message text (on-device) |
| ML Kit Translate | Google LLC | Text translation | Text to translate (on-device) |
| Google Sign-In SDK | Google LLC | Social authentication | Google account email, name, ID |
| Sign in with Apple SDK | Apple Inc. | Social authentication | Apple ID, email, name |
| Google Play Billing SDK | Google LLC | Payment processing | Purchase tokens, subscription status |
| StoreKit SDK (iOS) | Apple Inc. | Payment processing | Receipt data, transaction IDs |
| Cached Network Image SDK | Open Source | Image caching | Image URLs, cached files |
| Lottie SDK | Airbnb (Open Source) | Animation rendering | None (local only) |
| Provider SDK | Flutter Team | State management | None (local only) |
| Shared Preferences | Flutter Team | Local storage | None (device only) |
Total SDKs Integrated: 28 SDKs
SDKs that share data externally: 17 SDKs
SDKs that process data locally only: 11 SDKs (8 ML Kit modules process on-device + Lottie, Provider, Shared Preferences)
Note: Most ML Kit modules (Barcode Scanning, Digital Ink Recognition, Face Detection, Image Labeling, Language ID, Object Detection, Smart Reply, Translate) process data entirely on-device without sending it to external servers, providing maximum privacy for AI/ML operations.
All SDKs listed above are integrated into this version of our app. Each SDK has been carefully selected to provide specific functionality essential to our app's operation. We continuously review our SDK integrations to ensure they meet our security and privacy standards.
If we integrate new SDKs in future versions: We will update this privacy policy to reflect any new SDKs and notify users of changes to our data collection and sharing practices.
Purpose: Backend infrastructure, user authentication, database, file storage, and analytics
Data Shared:
SDKs Used:
Endpoints/Domains:
Privacy Policy: https://policies.google.com/privacy
Purpose: Display maps, geocode addresses, calculate routes, and provide location services
Data Shared:
SDKs Used:
Endpoints/Domains:
Privacy Policy: https://policies.google.com/privacy
Purpose: On-device text recognition for VIN scanning
Data Shared:
SDKs Used:
Note: Image processing happens on-device. Images are NOT uploaded to Google servers.
Privacy Policy: https://policies.google.com/privacy
Purpose: Enable authentication via Google account
Data Shared:
SDKs Used:
Endpoints/Domains:
Privacy Policy: https://policies.google.com/privacy
Purpose: Enable authentication via Apple ID
Data Shared:
SDKs Used:
Endpoints/Domains:
Privacy Policy: https://www.apple.com/legal/privacy/
Purpose: Process premium subscription payments
Data Shared:
SDKs Used:
Endpoints/Domains:
Note: Payment card details are handled directly by Google/Apple. We do NOT store or access your full payment information.
Privacy Policies:
Purpose: Serve and cache vehicle images and app assets
Data Shared:
SDKs Used:
Endpoints/Domains:
Local Processing (No Data Sharing):
Our app may connect to the following domains and endpoints to provide our services:
We share your personal data with the above third-party services for the following purposes:
All third-party service providers are contractually obligated to:
If we add new third-party services or endpoints that process your personal data, we will update this Privacy Policy and notify you through the app or via email. We will obtain your consent where required by law before sharing your data with new third parties.
You have the right to:
To exercise these rights, contact us at [email protected]
Our app requests the following device permissions to provide its features and services. Below is a comprehensive list of all permissions, including why we need them, when they're used, and whether they're required:
Permission Transparency: We only request permissions that are necessary for our app's functionality. You have control over these permissions through your device settings and can revoke them at any time (though this may limit app functionality).
Android Permission: android.permission.ACCESS_FINE_LOCATION
Purpose: To access your device's precise GPS location for real-time vehicle tracking
Why We Need It: Essential for our core vehicle tracking functionality - allows us to track your vehicle's exact location with high accuracy (within meters)
When It's Used: When you enable vehicle tracking or view vehicle location on the map
Data Collected: Precise GPS coordinates (latitude, longitude), altitude, speed, bearing, accuracy
Required: Yes, for vehicle tracking features
Can Be Revoked: Yes, through device settings (will disable vehicle tracking)
Android Permission: android.permission.ACCESS_COARSE_LOCATION
Purpose: To access approximate location (accurate to city block level)
Why We Need It: Fallback for when precise location is unavailable; used for less accurate vehicle location tracking
When It's Used: When GPS signal is weak or as an alternative to precise location
Data Collected: Approximate location coordinates, network-based location
Required: Yes, as fallback for location tracking
Can Be Revoked: Yes, through device settings
Android Permission: android.permission.ACCESS_BACKGROUND_LOCATION
Purpose: To continue tracking vehicle location even when the app is not actively open
Why We Need It: Enables continuous vehicle tracking and real-time monitoring without requiring the app to be open
When It's Used: When you enable continuous/background vehicle tracking
Data Collected: GPS coordinates collected in the background at regular intervals
Required: No, but required for 24/7 vehicle monitoring
Can Be Revoked: Yes, you can limit location to "Only while using the app" in device settings
User Control: Android 10+ users are explicitly prompted to allow background location separately
Android Permission: android.permission.INTERNET
Purpose: To access the internet for all online features
Why We Need It: Essential for connecting to Firebase backend, Google Maps, authentication, and all cloud features
When It's Used: Continuously while the app is running and needs to sync data, authenticate, load maps, etc.
Data Shared: All data sent to/from our backend services (see Section 14 for details)
Required: Yes, app cannot function without internet access
Permission Type: Normal permission (automatically granted, no user prompt)
Android Permission: android.permission.ACCESS_NETWORK_STATE
Purpose: To check if the device is connected to the internet
Why We Need It: Allows app to determine if internet connection is available before attempting to sync data or make API calls
When It's Used: Continuously to monitor network connectivity and provide appropriate user feedback
Data Collected: Network connection status (WiFi, cellular, offline), network type
Required: Yes, for proper error handling and offline mode
Permission Type: Normal permission (automatically granted, no user prompt)
The following permissions are automatically added by our integrated SDKs (Firebase, Google Play Services, etc.) and are required for their functionality. These are "Normal" permissions that don't require user approval:
Android Permission: com.android.vending.BILLING
Purpose: To process in-app purchases and manage subscriptions through Google Play Store
Why We Need It: Required by Google Play Billing Library for premium subscription features
When It's Used: When you purchase premium subscriptions or make in-app purchases
Added By: in_app_purchase Flutter package / Google Play Billing SDK
Permission Type: Normal permission (automatically granted)
Android Permission: android.permission.FOREGROUND_SERVICE
Purpose: To run background location tracking with a persistent notification
Why We Need It: Required for continuous vehicle tracking when app is in background (shows notification)
When It's Used: When you enable 24/7 vehicle tracking - displays persistent notification while tracking
Added By: Firebase SDKs / Location tracking services
Permission Type: Normal permission (automatically granted)
User Visibility: Foreground services always show a notification, so you're always aware when tracking is active
Android Permission: android.permission.WAKE_LOCK
Purpose: To prevent device from sleeping during critical operations
Why We Need It: Ensures location updates and data sync complete even if screen turns off
When It's Used: During active vehicle tracking or data synchronization
Added By: Firebase SDKs (Cloud Messaging, Analytics)
Permission Type: Normal permission (automatically granted)
Android Permission: android.permission.RECEIVE_BOOT_COMPLETED
Purpose: To receive notification when device finishes booting
Why We Need It: Allows app to restart scheduled tasks (like vehicle tracking alerts) after device restart
When It's Used: When device boots/restarts and you have active vehicle tracking enabled
Added By: Firebase SDKs (Cloud Messaging)
Permission Type: Normal permission (automatically granted)
Android Permission: com.google.android.providers.gsf.permission.READ_GSERVICES
Purpose: To access Google Services Framework configuration
Why We Need It: Required by Google Maps, Firebase, and other Google services
When It's Used: Continuously by Google SDKs for configuration and authentication
Added By: Google Maps SDK, Firebase SDKs
Permission Type: Normal permission (automatically granted)
Android Permission: com.google.android.c2dm.permission.RECEIVE
Purpose: To receive push notifications from Firebase Cloud Messaging
Why We Need It: Enables real-time alerts for vehicle events, geofence breaches, maintenance reminders
When It's Used: When you have notifications enabled for vehicle alerts
Added By: Firebase Cloud Messaging SDK
Permission Type: Normal permission (automatically granted)
Android Permission: trackr.com.DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION
Purpose: Internal Android security permission for broadcast receivers
Why We Need It: Automatically added by Android build tools (Android 13+) to secure internal app components
When It's Used: Always present for security purposes (Android 13+)
Added By: Android build system (automatically generated)
Permission Type: App-internal permission (not accessible by other apps)
Important Notes About SDK Permissions:
| Permission | Type | Required? | Purpose |
| Fine Location | Dangerous | Yes | Precise vehicle tracking |
| Coarse Location | Dangerous | Yes | Approximate vehicle location |
| Background Location | Dangerous | No* | 24/7 vehicle monitoring |
| Internet | Normal | Yes | Online features |
| Network State | Normal | Yes | Check connectivity |
*Background location is required only if you want 24/7 continuous vehicle tracking. You can use the app with foreground-only location access.
Additional SDK-Required Permissions: Our app also uses 7 additional "Normal" permissions that are automatically added by Firebase, Google Play Services, and other SDKs (BILLING, FOREGROUND_SERVICE, WAKE_LOCK, RECEIVE_BOOT_COMPLETED, READ_GSERVICES, C2DM RECEIVE, DYNAMIC_RECEIVER_NOT_EXPORTED_PERMISSION). These are documented in detail in Section 15.3 above. These permissions don't require user approval and are industry-standard for apps using Firebase and Google services.
You can control app permissions at any time:
Note: Revoking certain permissions (like location) will disable related features (like vehicle tracking).
For transparency, we explicitly state that we do NOT request:
We use Android's privacy-first approach to access photos and camera without requesting storage or camera permissions.
On Android 13 and newer, we use the built-in Android Photo Picker:
On older Android versions, we use the system photo picker with scoped storage:
For taking new photos, we use the system camera app:
Technical Implementation: The image_picker Flutter package (v1.0.7) automatically selects the appropriate method based on your Android version, always choosing the most privacy-preserving option available. This follows Google Play's Photo and Video Permissions policy and Android's recommended best practices.
When You Use These Features:
We may update this Privacy Policy from time to time. We will notify you of significant changes by:
Your continued use of Trackr after changes constitutes acceptance of the updated policy.
If you have any questions, concerns, or requests regarding this Privacy Policy or how we handle your personal data, please contact us:
TRACKR is the data controller responsible for your personal data.
Legal Entity: TRACKR (our company)
Contact Email: [email protected]
Business Address: 10 Modupe St, Idimu, Lagos 102213, Lagos, Nigeria
Website: https://trackr.vigla.tech
Name: Ifeoluwa Adeleke
Contact Email: [email protected]
You have the right to contact us at any time regarding your personal data, privacy rights, or any concerns you may have about how your information is processed.