VendRoam Privacy Policy
What we collect
Location (vendor)
While a vendor is working their shift, the app sends their precise device location to our servers so it can be shown live on a map to anyone following that vendor. This is a core, always-visible feature — a vendor’s live location is public to their followers whenever they’re on shift.
Location (customer)
While you have the app open, your device’s location is sent to our servers so we can compare it against a followed vendor’s live location and alert you when it’s nearby — including sending you a notification even if the app is closed at that moment. Your location is stored privately per vendor you follow and is never shown to the vendor or to any other customer. It updates only when you follow a vendor, or when you tap “Ping me here” on that vendor’s map screen — not continuously every time the app happens to be open.
Personal info
A vendor’s contact phone number and email are public and shown to anyone following that vendor, since the app’s purpose is letting customers reach the vendor. Separately, if a vendor records a customer’s contact details against a private calendar/party booking, that information is stored privately and is never shown publicly or to any other customer.
Photos
Menu item photos a vendor uploads are stored on our servers and shown publicly on that vendor’s page, as part of displaying their menu.
Device identifier
Each device is given an anonymous, randomly-generated ID (via Firebase Anonymous Authentication) with no personal profile attached. It exists solely so our servers can verify who owns a vendor, or which follower record belongs to your device — there is no login, username, or password anywhere in the app.
Push notification token
To deliver proximity notifications, your device’s push-notification token (via Firebase Cloud Messaging) is stored with your private per-vendor follower record. It carries no personal profile, and is removed when you stop following that vendor or delete your data.
Camera
The camera is used only to scan a vendor’s QR/barcode to follow it. No photo or video is captured, stored, or transmitted from this.
Local storage
The list of vendors you follow, and related local app state, lives on your device and is removed automatically if you uninstall the app.
How we use it
Solely to provide the app’s core features: live vendor tracking, proximity notifications (including ones delivered while the app is closed), event and menu display, and the contact-the-vendor flow for bookings and enquiries.
We do not sell your information, use it for advertising, or share it with data brokers.
Security
All data is sent over encrypted connections (HTTPS/TLS) between the app and our servers.
Third-party services
Google Firebase (Cloud Firestore, Cloud Functions, Cloud Messaging, Anonymous Authentication, and Cloud Storage), the Google Maps SDK, and the Google Play Install Referrer API (used only to auto-suggest following a vendor right after installing from a scanned barcode link).
Your controls
Customers: tap the delete icon next to any vendor in “My Vendors” to stop following it — this removes it from your device and deletes your private data associated with that vendor from our servers immediately, right in the app. To delete your data for every vendor you follow in one action, go to My Vendors → Settings → Danger Zone → “Delete All My Data”. No need to contact us either way. See also our Delete your data page.
Vendors: open Settings → Edit → Danger Zone → “Delete My Vendor” to permanently delete your vendor and everything tied to it (menu, calendar, followers, photos, recovery code), right in the app. This cannot be undone and immediately removes the vendor for every customer following it.
If you need help with something the app’s controls don’t cover, contact cunningcreekstudios@protonmail.com.
Changes to this policy
We may update this policy as the app changes. Material changes will be reflected here with an updated effective date.