Back to Home

Privacy Policy

Last Updated: February 11, 2026

Thank you for using ClimbPin. We understand the importance of your personal information and health data. This Privacy Policy explains how ClimbPin ("the App", "we", "us", or "our") collects, uses, and protects your information when you use our iOS app and Apple Watch extension.

By using ClimbPin, you agree to this Privacy Policy. If you do not agree, please stop using and uninstall the App.

1. Information We Collect

ClimbPin is a local-first application. Your core climbing data is stored on your device. Some optional features (such as gym submission and iCloud backup) require network connectivity and account sign-in, but your training data never leaves your device by default.

1.1 Sensor & Health Data

  • Source: Apple Watch sensors, HealthKit
  • Data: Heart rate, calories burned, workout duration, elevation changes, acceleration data
  • Note: We do not access HealthKit data until you grant permission

1.2 Training Records

  • Source: Your input within the App
  • Data: Session dates, route names, grades, completion status, notes, locations, and photos you choose to add

1.3 Body Metrics & Preferences

  • Source: Your input
  • Data: Age, sex, resting heart rate, preferred grading system, app settings

1.4 Diagnostic Logs

  • Data: Anonymous technical logs for troubleshooting sync and performance issues
  • Note: These contain no personally identifiable information

1.5 Purchase Records

  • Source: In-app purchases (Apple StoreKit)
  • Data: Tip count, cumulative amount, and last tip date (local statistics)
  • Note: Payment processing is handled entirely by Apple. We do not collect any payment card numbers or Apple ID information

1.6 Account & Gym Data

  • Source: Apple Sign-In, gym information you submit within the App
  • Data: Email and display name associated with your Apple ID (obtained only on first sign-in), gym name, address, GPS coordinates, notes
  • Note: Sign-in is optional and only required for gym submission. Login credentials are securely stored in device Keychain

We DO NOT collect: Contacts, messages, microphone recordings, advertising identifiers, or location data (unless you manually enter it for a route).

2. How We Use Your Information

All data processing happens locally on your device for the following purposes:

  • Core Features: Collect sensor data on Watch, sync to iPhone, calculate training metrics (TRIMP, heart rate zones, route progress), and display in Logbook, Dashboard, and Project views
  • Data Export: Generate CSV/JSON files when you request export for personal backup or sharing
  • Troubleshooting: Use anonymous logs to diagnose sync or performance issues
  • Purchase Records: Record tip count and amount locally, used only to display thank-you messages
  • Account & Gym: Verify your identity for the gym submission feature, and upload gym information to the cloud for other climbers to search and use

We DO NOT use your data for advertising, profiling, automated decision-making, or any purpose unrelated to climbing training.

3. Permissions

ClimbPin requests the following permissions only when needed:

Permission Purpose Required
HealthKit (Read/Write) Read/write workouts, heart rate, energy data Optional
Motion & Fitness Collect Watch sensor data (altimeter) Optional
Photo Library Attach photos to routes or sessions Optional
Location (When In Use) Add location to routes Optional

You can revoke any permission at any time in iOS Settings > Privacy & Security. Denying a permission may limit related features but will not affect other functionality.

4. Data Sharing & Disclosure

We DO NOT sell, rent, or share your personal information with advertisers, analytics providers, or other third parties.

Data may only be shared in these cases:

  1. Your Export/Share Actions: When you export CSV/JSON files, you control where to save or share them. ClimbPin does not automatically upload these files.
  2. HealthKit Sync: With your permission, workout data is written to Apple Health, governed by Apple's privacy policy. You can manage or delete this data in the Health app.
  3. Gym Submission: When you submit gym information, it is uploaded to our cloud service (Supabase, servers located in Mumbai, India) for other users to search. Approved gym information is visible to all users. You can edit your submitted gyms within the App; to delete, please contact us.
  4. iCloud Backup: If you enable iCloud backup, training records (including timestamps, elevation, routes, and statistics) are synced to your Apple iCloud private database, accessible only by your iCloud account. Photos sync identifiers only by default; enabling "Backup Original Photos" uploads photo originals. You can disable this feature at any time in Settings.

When using the gym submission feature, your gym data is transferred to overseas servers (India). iCloud backup data storage location is determined by Apple. Other than these, we do not proactively transfer data across borders or publicly disclose personal information.

5. Data Storage & Security

  • Storage Location: Data is stored locally on your device (iPhone database, Watch cache, UserDefaults, Keychain) and optionally in HealthKit. When using gym submission, gym data is stored on cloud servers; when using iCloud backup, training records are stored in Apple iCloud.
  • Security Measures: We rely on iOS/watchOS system-level encryption, app sandboxing, and Face ID/Touch ID protection. Watch-iPhone communication is encrypted by Apple.
  • Retention: You control how long data is kept. Delete individual records, clear Projects, revoke HealthKit access, or uninstall the App to remove all local data. We do not retain deleted information.
  • Error Handling: If data corruption or sync failure is detected, the system rolls back operations to prevent unauthorized copying or leakage.

6. Your Rights

You have the following rights regarding your personal data:

Right How to Exercise
Access & Correction View or edit records in Logbook, Session Detail, and Project pages; update body metrics in Settings
Deletion Delete individual records, remove Projects, clear Logbook, or uninstall the App; delete Health data in Apple Health
Data Portability Export CSV/JSON files from Settings
Withdraw Consent Revoke HealthKit, Photos, or Location permissions in system Settings or the App
Lodge a Complaint Contact us via email; we will respond within 15 business days
Account & Gym Data Sign out to clear local credentials; edit submitted gyms; request account and gym data deletion via email

If you believe your rights have been violated, you may also file a complaint with your local data protection authority.

7. Children's Privacy

ClimbPin is designed for adults and experienced climbers. We do not knowingly collect data from children under 13.

Health and body metrics are considered sensitive personal information and are only processed with your explicit consent.

8. Policy Updates

We may update this Privacy Policy due to feature changes, legal requirements, or business needs. Updates will be communicated through:

  • The "About" section in App Settings
  • Our official website
  • App update release notes

For significant changes (expanded permissions, new data types), we will seek your explicit consent. If you disagree with updates, you may stop using and uninstall the App.

9. Contact Us

If you have questions, suggestions, or complaints about this Privacy Policy or your personal data, please contact us:

Email: [email protected]

We will acknowledge receipt within 2 business days and provide a response or solution within 15 business days. To protect your information security, we may request identity verification before processing your request.

感谢您使用 ClimbPin。我们深知个人信息和健康数据对您而言的重要性。本隐私政策说明了当您使用我们的 iOS 应用和 Apple Watch 扩展时,ClimbPin("本应用"、"我们")如何收集、使用和保护您的信息。

使用 ClimbPin 即表示您同意本隐私政策。如不同意,请停止使用并卸载本应用。

一、我们收集的信息

ClimbPin 是一款本地优先的应用。核心攀岩数据存储在您的设备上。部分可选功能(如岩馆提交、iCloud 备份)需要网络连接和账户登录,但您的训练数据默认不会离开设备。

1.1 传感器与健康数据

  • 来源:Apple Watch 传感器、HealthKit
  • 数据:心率、卡路里消耗、训练时长、海拔变化、加速度数据
  • 说明:在您授权之前,我们不会访问 HealthKit 数据

1.2 训练记录

  • 来源:您在应用内的输入
  • 数据:训练日期、线路名称、难度、完成状态、备注、位置以及您选择添加的照片

1.3 身体指标与偏好设置

  • 来源:您的输入
  • 数据:年龄、性别、静息心率、首选定级系统、应用设置

1.4 诊断日志

  • 数据:用于排查同步和性能问题的匿名技术日志
  • 说明:这些日志不包含任何可识别个人身份的信息

1.5 购买记录

  • 来源:App 内购买(Apple StoreKit)
  • 数据:赞赏次数、累计金额、最后赞赏日期(本地统计)
  • 说明:支付处理完全由 Apple 负责,我们不收集任何支付卡号或 Apple ID 信息

1.6 账户与岩馆数据

  • 来源:Apple 登录、您在应用内提交的岩馆信息
  • 数据:Apple ID 关联的邮箱和显示名称(仅首次登录获取)、岩馆名称、地址、GPS 坐标、备注
  • 说明:登录为可选功能,仅在使用岩馆提交时需要。登录凭证安全存储在设备 Keychain 中

我们不会收集:通讯录、短信、麦克风录音、广告标识符或位置数据(除非您为线路手动输入位置)。

二、我们如何使用您的信息

所有数据处理均在您的设备本地完成,用于以下目的:

  • 核心功能:在 Watch 上收集传感器数据,同步到 iPhone,计算训练指标(TRIMP、心率分区、线路进度),并在 Logbook、Dashboard 和 Project 视图中展示
  • 数据导出:当您请求导出时,生成 CSV/JSON 文件供个人备份或分享
  • 故障排查:使用匿名日志诊断同步或性能问题
  • 购买记录:在本地记录赞赏次数和金额,仅用于显示感谢信息
  • 账户与岩馆:验证您的身份以使用岩馆提交功能,将岩馆信息上传到云端供其他攀岩者搜索和使用

我们不会将您的数据用于广告、用户画像、自动化决策或任何与攀岩训练无关的目的。

三、权限说明

ClimbPin 仅在需要时请求以下权限:

权限 用途 是否必需
HealthKit(读写) 读写训练记录、心率、能量数据 可选
运动与健身 收集 Watch 传感器数据(高度计) 可选
相册 为线路或训练添加照片 可选
位置(使用时) 为线路添加位置 可选

您可以随时在 iOS 设置 > 隐私与安全中撤销任何权限。拒绝权限可能会限制相关功能,但不会影响其他功能。

四、数据共享与披露

我们不会向广告商、分析服务商或其他第三方出售、出租或分享您的个人信息。

数据仅在以下情况下可能被共享:

  1. 您的导出/分享操作:当您导出 CSV/JSON 文件时,由您控制保存或分享的位置。ClimbPin 不会自动上传这些文件。
  2. HealthKit 同步:经您许可后,训练数据会写入 Apple Health,受 Apple 隐私政策约束。您可以在健康应用中管理或删除这些数据。
  3. 岩馆提交:当您提交岩馆信息时,该数据会上传到我们的云端服务(Supabase,服务器位于印度孟买),供其他用户搜索使用。审核通过的岩馆信息对所有用户可见。您可以在应用中编辑已提交的岩馆;如需删除,请联系我们。
  4. iCloud 备份:若您开启 iCloud 备份功能,训练记录(包含时间、高度、线路、统计数据)会同步到 Apple iCloud 私有数据库,仅您的 iCloud 账户可访问。照片默认仅同步标识符;开启「备份原始照片」会上传照片原件。您可以随时在设置中关闭此功能。

使用岩馆提交功能时,您的岩馆数据将传输至境外服务器(印度)。iCloud 备份数据的存储位置由 Apple 决定。除此之外,我们不主动进行跨境数据传输或公开披露个人信息。

五、数据存储与安全

  • 存储位置:数据存储在您的设备本地(iPhone 数据库、Watch 缓存、UserDefaults、Keychain)以及可选的 HealthKit 中。使用岩馆提交功能时,岩馆数据存储在云端服务器;使用 iCloud 备份时,训练记录存储在 Apple iCloud。
  • 安全措施:我们依赖 iOS/watchOS 系统级加密、应用沙箱和 Face ID/Touch ID 保护。Watch 与 iPhone 之间的通信由 Apple 加密。
  • 数据保留:由您控制数据保留时长。删除单条记录、清除 Project、撤销 HealthKit 访问或卸载应用即可删除所有本地数据。我们不保留已删除的信息。
  • 错误处理:如果检测到数据损坏或同步失败,系统会回滚操作以防止未授权的复制或泄露。

六、您的权利

您对个人数据享有以下权利:

权利 行使方式
访问与更正 在 Logbook、训练详情和 Project 页面查看或编辑记录;在设置中更新身体指标
删除 删除单条记录、移除 Project、清空 Logbook 或卸载应用;在 Apple Health 中删除健康数据
数据可携带 从设置中导出 CSV/JSON 文件
撤回同意 在系统设置或应用中撤销 HealthKit、照片或位置权限
投诉 通过邮件联系我们;我们将在 15 个工作日内回复
账户与岩馆数据 退出登录清除本地凭证;编辑已提交岩馆;通过邮件请求删除账户和岩馆数据

如果您认为您的权利受到侵犯,也可以向当地数据保护机构投诉。

七、儿童隐私

ClimbPin 专为成年人和有经验的攀岩者设计。我们不会故意收集 13 岁以下儿童的数据。

健康和身体指标属于敏感个人信息,仅在您明确同意的情况下处理。

八、政策更新

我们可能会因功能变更、法律要求或业务需要更新本隐私政策。更新将通过以下方式通知:

  • 应用设置中的「关于」部分
  • 我们的官方网站
  • 应用更新说明

对于重大变更(扩展权限、新数据类型),我们将征求您的明确同意。如果您不同意更新内容,可以停止使用并卸载本应用。

九、联系我们

如果您对本隐私政策或您的个人数据有任何问题、建议或投诉,请联系我们:

电子邮件:[email protected]

我们将在 2 个工作日内确认收到,并在 15 个工作日内提供回复或解决方案。为保护您的信息安全,我们可能在处理请求前要求身份验证。