Privacy Notice

Privacy for boletar.

Last updated: July 16, 2026

This notice explains how boletar handles data for the iOS app, website, waitlist, support, and app recovery features. boletar is a private trip-planning tool for European porcini scouting. It predicts conditions and planning windows; it does not identify mushrooms as safe to eat.

What we collect

How we collect it

Why we use it

Prediction data sources

Boletar's public prediction model uses commercial-use climate, land, terrain, soil, and public occurrence signals as planning inputs. Predictions are decision-support guidance for trip planning and do not guarantee mushroom presence, safety, edibility, or legal access. Boletar is not affiliated with the data providers listed below.

Public Radar and Private Radar

Free users receive the shared Public Radar model. Pro users can consent to Private Radar, a bounded calibration layer calculated on the device from only that user's own found and absent records. Private pins, misses, notes, and trip history are not public-model training inputs, are not published as hotspots, and are not used to change another user's forecast. No photo or authenticity review is required. The user controls the accuracy of each pin, date, outcome, and search-effort record. Private calibration cannot bypass forest or season eligibility gates.

Private Vault backup is off by default. When enabled, the app encrypts the archive with a key that is separate from the server authentication secret; the server stores ciphertext and does not receive the archive encryption key. A portable archive export contains exact pins and notes and should be kept only in trusted encrypted storage.

Sharing and retention

We do not sell personal data and we do not use your precise forest pins for third-party ad tracking. We share data only with service providers needed to run boletar, such as hosting, support, Apple StoreKit, Mapbox, payment and subscription infrastructure, or when required by law. Local-only app data remains encrypted on your device unless you enable encrypted Private Vault backup, contact support, or request a server-backed prediction or account feature. Found and absent records are not sent as public feedback and never enter the Public Radar model.

We keep app and support data only as long as needed for the feature, security, legal, and support purposes described above. Encrypted vault or recoverable wallet data is retained until you delete it, disable the feature where available, or ask us to remove server-side records that we can reasonably identify.

Your choices

Legal basis and contact

For users in the European Economic Area and the United Kingdom, we process data to provide the requested app service, perform purchases and support, protect the service, comply with legal obligations, and, where required, based on your consent for optional location access or encrypted backup. For privacy requests, contact support@boletar.com.