Privacy Notice
Privacy for boletar.
Last updated: July 16, 2026
This notice explains how boletar handles data for the iOS app, website, waitlist, support,
and app recovery features. boletar is a private trip-planning tool for European porcini
scouting. It predicts conditions and planning windows; it does not identify mushrooms as
safe to eat.
What we collect
- Email address and message contents when you join the waitlist or contact support.
- Precise or approximate location, selected pins, dates, and scan parameters when you request predictions, area scans, time scans, or offline planning.
- Private Logbook entries, found or absent records, notes, and planning snapshots are stored encrypted on your device. If you enable Private Vault backup, the app sends only an encrypted archive ciphertext; the server does not receive the separate archive encryption key.
- Device identifiers, recovery key metadata, purchase entitlement state, and app settings needed to operate private vault restore, wallet recovery, and App Store access.
- Technical request data such as IP address, user agent, request time, endpoint, and diagnostic events needed to operate, secure, and debug the service.
How we collect it
- Data you enter or generate in the app, including manual pins, private found or absent records, and notes.
- Permission-based iOS location access only when you use the location control. Search and manual pins work without location access.
- Server requests made by the app to generate predictions, sync encrypted Private Vault ciphertext, or restore wallet and subscription state.
- Apple StoreKit for purchases, subscriptions, receipts, and subscription management.
- Mapbox for map rendering and map attribution; Mapbox may process map interaction and telemetry data under its own terms and privacy practices.
- Website hosting, email, form-processing, and infrastructure providers that process data on our behalf.
Why we use it
- To generate Boletar predictions, ranked planning pockets, timing guidance, offline planning packs, and private scouting history.
- For Pro users who enable Private Radar, to apply a bounded on-device calibration using only that user's own found and careful-miss records.
- To keep your exact forest pins private and tied to your own archive instead of publishing them as public hotspots.
- To provide encrypted private vault backup, restore, wallet continuity, customer support, abuse prevention, diagnostics, and service security.
- To provide paid Pro Monthly and Pro Annual access through the App Store and help you restore eligible planning access.
Prediction data sources
Boletar's public prediction model uses commercial-use climate, land, terrain, soil, and
public occurrence signals as planning inputs. Predictions are decision-support guidance for
trip planning and do not guarantee mushroom presence, safety, edibility, or legal access.
Boletar is not affiliated with the data providers listed below.
- Climate and recent weather: Copernicus Climate Data Store / ERA5-Land.
- Land cover and tree cover: Copernicus Global Land Cover and ESA WorldCover.
- Terrain: NASA / USGS SRTM.
- Soils: ISRIC SoilGrids.
- Public occurrence records: GBIF.org, filtered to CC0 / CC BY records.
Public Radar and Private Radar
Free users receive the shared Public Radar model. Pro users can consent to Private Radar,
a bounded calibration layer calculated on the device from only that user's own found and
absent records. Private pins, misses, notes, and trip history are not public-model training
inputs, are not published as hotspots, and are not used to change another user's forecast.
No photo or authenticity review is required. The user controls the accuracy of each pin,
date, outcome, and search-effort record. Private calibration cannot bypass forest or season
eligibility gates.
Private Vault backup is off by default. When enabled, the app encrypts the archive with a
key that is separate from the server authentication secret; the server stores ciphertext
and does not receive the archive encryption key. A portable archive export contains exact
pins and notes and should be kept only in trusted encrypted storage.
Sharing and retention
We do not sell personal data and we do not use your precise forest pins for third-party ad tracking.
We share data only with service providers needed to run boletar, such as hosting, support, Apple
StoreKit, Mapbox, payment and subscription infrastructure, or when required by law. Local-only app
data remains encrypted on your device unless you enable encrypted Private Vault backup, contact support,
or request a server-backed prediction or account feature. Found and absent records are not sent as public
feedback and never enter the Public Radar model.
We keep app and support data only as long as needed for the feature, security, legal, and support
purposes described above. Encrypted vault or recoverable wallet data is retained until you delete it,
disable the feature where available, or ask us to remove server-side records that we can reasonably
identify.
Your choices
- You can use manual pins without granting location permission.
- You can keep found and absent records local-only; no photo or review is required.
- You can optionally enable encrypted Private Vault backup and disable it again in the app.
- You can manage Pro Monthly and Pro Annual subscriptions in your Apple App Store account settings.
- You can request access, correction, deletion, restriction, or export of personal data by emailing support@boletar.com.
Legal basis and contact
For users in the European Economic Area and the United Kingdom, we process data to provide the
requested app service, perform purchases and support, protect the service, comply with legal
obligations, and, where required, based on your consent for optional location access or encrypted backup.
For privacy requests, contact support@boletar.com.