RouteGPX Privacy Policy
Updated: July 27, 2026 | Effective: July 27, 2026
Developer Information
Operator: Sichuan Zhangyun Technology Co., Ltd.
Unified Social Credit Code: 915107003271160054
Registered Address: Room 11, 17th Floor, Unit 1, Building 2, No. 1, Section 1, Huafu Avenue, Huayang Street, Tianfu New Area, Chengdu
Welcome to the RouteGPX App. We understand the importance of your personal information and will take appropriate security measures in accordance with applicable laws and regulations to protect it. Please read and fully understand this Privacy Policy before using the App.
1. Personal Information We Collect
In accordance with the Personal Information Protection Law and other applicable regulations, we follow the principles of legality, legitimacy, and necessity, and only collect personal information that is essential for the App's functionality:
| Personal Information Type | Specific Content | Collection Purpose | Usage Scenario | Required |
| Health Data |
Workout records (type, date, duration, distance, calories) |
Display a list for users to select workout records to export |
When users open the App to browse workout records |
Yes |
| Health Data |
Workout route GPS track coordinates (latitude, longitude, altitude, timestamps) |
Generate route data in GPX/FIT export files |
When users export a workout record |
Yes |
| Health Data |
Heart rate data (per-point heart rate values in bpm) |
Embed into GPX/FIT export files (user optional) |
When users authorize on the detail page and choose to embed heart rate in the export |
No (optional feature, authorized on demand) |
Note: All data above is read locally on your device through the Apple HealthKit API and used only in memory. Your workout and health data is never uploaded to any server. GPS tracks constitute precise location information (sensitive personal information), which we only read when you actively export a workout record, and use solely to generate the export file. Heart rate data follows the principle of minimum necessity — it is only read after you actively tap the authorize button on the workout detail page, and you may independently decide whether to include it in the export file.
Information We Do Not Collect
- We do not collect any personal identity information (name, ID number, phone number, etc.)
- We do not collect any device identifiers (IDFA, IDFV, etc.)
- We do not collect any network access records, cookies, or behavioral analytics data
- We do not collect background location information; we only read GPS track coordinates (precise location) when you actively export a workout record, and never access location in the background or without your action
System Permission Requests
To provide the workout route export feature, this App requires the following system permissions. All permissions are requested when the corresponding feature is first used, and you may disable them at any time in System Settings. We follow the principle of minimum necessity, requesting permissions only when the corresponding feature is used.
| Permission | Purpose | Request Timing | Required |
| Workouts (HealthKit Read) |
Access workout records; workout routes are contained within workout records |
When tapping the authorize button on the home page after agreeing to the privacy policy on first launch |
Yes |
| Workout Routes (HealthKit Read) |
Access workout route data for GPX/FIT file export |
Requested together with the Workouts permission |
Yes |
| Heart Rate (HealthKit Read) |
Access workout heart rate records, which can be included in GPX/FIT files |
When tapping the authorize heart rate read button on the workout detail page (on demand) |
No (optional feature) |
| Network Access |
Fetch the latest privacy policy and dual-list content |
When displaying the privacy policy dialog on App launch |
No (displays built-in cached privacy policy) |
Permission Management: You may manage the above permissions in System Settings at any time:
- Health Data: iPhone "Settings" → "Privacy & Security" → "Health" → RouteGPX
After disabling the Workouts or Routes permission, the App will not be able to read workout records and route data; after disabling the Heart Rate permission, export files will not contain heart rate information, but other features will remain unaffected.
2. Storage and Transmission of Personal Information
Local Processing Principle: Your workout and health data is processed and stored locally on your device and will never be uploaded to any cloud server. Specifically:
- Workout records and route data: Read in real time from Apple HealthKit, used only in memory, and released when the App exits
- Heart rate data: Read on demand only during export, not persistently stored
- Health data is not cached to local files
- CoreData/SQLite is not used to store health data
- Your workout and health data is not collected or uploaded to any server
About Network Requests: To allow you to view the latest version of the privacy policy and dual lists, this App will request the latest document content from our official server (https://www.oursapp.com) via Apple system network components (URLSession / WebKit) when displaying relevant pages. This request is solely for fetching document text and does not contain or upload any of your personal information. If the network is unavailable or the request fails, the built-in cached version will be used automatically. Apart from the above, this App does not contain any code that uploads your personal data to any server.
Storage Security: All local data is protected by iOS system-level security mechanisms (data encryption, sandbox isolation).
Data Retention Period:
- Workout records and route data: Used in memory only while the App is running, not persistently stored, no retention period applies
- Exported files (GPX/FIT): Save location is chosen by the user; the App does not hold file references
- User feedback/customer service records: Retained for up to 6 months from the date the feedback is resolved, then deleted or anonymized
3. Use of Personal Information
The personal information we collect is used only for the following purposes:
- Read workout records through Apple HealthKit and display them in a list within the App for user selection
- Read GPS route data of selected workout records to generate GPX or FIT format export files
- Optionally read heart rate data to embed in export files
- Use Apple MapKit to preview workout route maps within the App
We will not use your personal information for any purpose other than those stated above.
Map Rendering Note: When you use the map to preview a workout route, Apple MapKit requests map tiles from Apple servers. This transmits location information of the area you are viewing to Apple in order to fetch the map imagery. This is a data exchange with Apple's system services, and we do not collect or retain your location information through this process.
4. Sharing, Transfer, and Public Disclosure of Personal Information
We commit to:
- Not sharing or transferring your personal information with any third party
- Not publicly disclosing your personal information
- Not integrating any third-party analytics or advertising SDKs
Exported GPX/FIT files are saved and shared at the user's discretion. The App does not hold file references and performs no subsequent processing or transmission of exported files.
Data Exchange with Apple System Services: This App uses Apple system frameworks (HealthKit, MapKit). HealthKit only reads your health data locally on the device; when using MapKit to render maps, location information of the viewed area is transmitted to Apple to fetch map tiles. This location information is used for map display only, and Apple will not use it for advertising or cross-app tracking. Beyond this, we do not transmit your personal information to any third party.
5. Your Rights
In accordance with applicable laws and regulations, you have the following rights:
- Right of Access: You may view your workout records and heart rate data in the Apple Health App
- Right to Copy: You may export your data as GPX/FIT files using the export feature
- Right to Delete: Disabling HealthKit authorization takes effect immediately; no residual data remains in the App
- Right to Withdraw Consent: You may disable HealthKit permissions at any time in System Settings
- Account Deletion: This App does not provide account registration or login functionality and has no account system, therefore account deletion is not applicable; disabling HealthKit authorization is equivalent to ceasing use of the relevant data features
How to exercise the above rights:
- Open iPhone "Settings" → "Privacy & Security" → "Health" → Disable authorization for "RouteGPX"
6. Protection of Minors
This App is not intended for children under 14 years of age. If you are a minor, please read this Privacy Policy under the supervision of your guardian and ensure you have obtained your guardian's consent before using this App.
If your guardian does not agree with your use of our services or the provision of information as described in this Privacy Policy, please stop using this App immediately.
For personal information of minors collected with guardian consent, we will only use or disclose it where permitted by law, with explicit guardian consent, or where necessary for the protection of the minor.
If you are a guardian of a minor and have any questions about the minor's use of this App, please contact us through the contact information provided in this Privacy Policy. If we discover that we have collected personal information of minors without verifiable guardian consent, we will endeavor to delete the relevant data as soon as possible.
7. Personal Information Security Measures
We take the security of your personal information very seriously and have implemented the following measures to protect your data:
- Local Processing: Your workout and health data is processed only in device memory and will not be uploaded to any server; the App only communicates with our official server when requesting the latest policy documents, and such communication does not contain your personal health data
- System Encryption: Leveraging iOS system-level sandbox isolation and file encryption to protect data security
- No Local Caching: Health data is not written to the App sandbox files
- No User Identifiers: IDFA/IDFV are not collected; no user profiling is performed
- No Background Activity: Background Modes are not configured
- Export File Security: Files are delivered through the system share sheet; the App does not hold file references
- Security Assessment: We conduct regular security audits of the App and promptly address potential security vulnerabilities
- Contingency Plan: In the event of a personal information security incident, we will promptly inform you of the basic situation, scope of impact, and remedial measures in accordance with legal requirements, and report to the relevant regulatory authorities
Despite the above security measures, please note that no solution is absolutely secure in an internet environment. If you suspect your personal information may have been compromised, please contact us immediately through the contact information provided in this Privacy Policy.
8. Updates to This Privacy Policy
We may revise this Privacy Policy from time to time. Without your explicit consent, we will not reduce the rights you are entitled to under this Privacy Policy.
When the following major changes occur, we will notify you through an in-App dialog or other prominent means:
- Significant changes to the service model or core functionality
- Changes to the primary parties with whom personal information is shared, transferred, or publicly disclosed
- Significant changes to your rights regarding the processing of personal information and how to exercise them
- Changes to the department responsible for personal information security or contact information
If you continue to use this App after the Policy is updated, it means you fully understand and agree to the updated Privacy Policy. You may view the latest version on this page.
9. Contact Us
If you have any questions, comments, or suggestions regarding this Privacy Policy, or believe your personal information rights have been infringed, you may contact us through the following means:
Developer: Sichuan Zhangyun Technology Co., Ltd.
Personal Information Protection Officer & Reporting Hotline: 028-61340686
Contact Email: ggeyecom@163.com
Contact Address: Room 11, 17th Floor, Unit 1, Building 2, No. 1, Section 1, Huafu Avenue, Huayang Street, Tianfu New Area, Chengdu
ICP Filing Number: 蜀ICP备15024121号
Response Time: We have designated a personal information protection officer. For any questions or complaints, we will respond within 15 days. If you are not satisfied with our response, you may also file a complaint with regulatory authorities such as the Cyberspace Administration, Administration for Industry and Commerce, or the Sichuan Provincial Communications Administration.
10. Dispute Resolution
Any disputes arising from this Privacy Policy or our handling of your personal information may be brought before the Tianfu New Area Primary People's Court of Chengdu by either party.
If any provision of this Privacy Policy is inconsistent with mandatory provisions of laws and regulations, the provisions of the laws and regulations shall prevail.