VoyaMate · Privacy

How VoyaMate processes your travel data.

Information about the processing of personal data in the VoyaMate app for iPhone and iPad.

1. Summary

  • VoyaMate contains no advertising and no analytics or tracking SDKs.
  • Travel and location analysis takes place on your device.
  • Automatic GPS samples are not stored permanently. When you deliberately select a place, its name and coordinates can be saved.
  • Synchronization through your private iCloud database is optional.
  • Complete data archives are created only at your request and can optionally be protected with a password.

2. Data processed and purposes

Journeys and settings

VoyaMate stores travel information that you enter or confirm, including destinations, countries and regions, time periods, type of travel, means of transport, notes, home country, home airport and display settings. This data is used for the map, calendar, statistics and yearly reviews.

Location

If you enable automatic location detection, VoyaMate processes location events provided by iOS to recognize stays in countries and regions. Automatically collected raw coordinates are processed temporarily on the device and are neither stored nor sent to a geocoding service. The derived country or region and the time period are stored.

VoyaMate uses Apple Maps through MapKit for map views and the optional place search. Apple may process the search term, the visible map area, your interaction with the map and – depending on your iOS permission – your approximate or precise location. Once you select a result, VoyaMate stores only the place name, country or region and coordinates; it does not retain an Apple Maps identifier. Country and territory matching then takes place locally. See Apple Maps & Privacy for more information.

Photo library

When you voluntarily use photo import, VoyaMate reads the capture date and saved location of the photos you grant access to. Countries are matched offline on your device. Image contents are neither loaded for travel detection nor uploaded. Local photo identifiers remain in memory only during the check; only a non-reversible fingerprint, the number of matching photos and the detected time range for each group are stored permanently.

Travel expenses and documents

Expenses, currencies, categories, business or personal classifications, optional profile details for exports, and boarding passes, receipts, invoices, bookings or other documents that you import or scan are stored with their files in the app’s private storage.

Manual expense exports are created when you request them and are shared through the iOS option you select. If you enable “Also save expense exports to iCloud Drive”, VoyaMate additionally places the PDF, CSV or Excel files you select in the visible “Export Expenses” folder in iCloud Drive. If you explicitly enable automatic iCloud export, VoyaMate also keeps a complete Excel or CSV file up to date in the visible VoyaMate folder in your iCloud Drive.

Identity documents and visas

Passports, identity cards, residence permits, driving licences and other identity documents managed in this area remain exclusively on the relevant device. When you voluntarily use the camera scanner, VoyaMate uses Apple system functions locally to read the machine-readable zone of a passport, identity card or residence permit, or selected fields on the front of a card-format driving licence. The captured page or front side is processed only temporarily and then discarded; unlike a receipt scanned under “Travel expenses and documents”, it is not retained as a document file.

The document type, label, nationality, issuing country, expiry date and reminder details can be stored in local app storage. An optional document number is stored under a document-specific identifier in the device-only iOS Keychain, is not synchronized through iCloud and is shown only after device authentication. Travel data used for visa and stay calculations follows the other storage and iCloud settings.

Widgets

For widgets, VoyaMate creates a reduced summary in the protected shared app area containing the year, visited country codes, country and day counts and a locally rendered map. Amounts, merchants, receipts, document details, passport data and coordinates are not passed to the widget extension.

App protection

If you enable Face ID, Touch ID or your device passcode for protection, authentication is handled by iOS. VoyaMate does not receive biometric data.

3. Storage and iCloud

By default, VoyaMate can operate entirely locally. If you enable “Sync with private iCloud”, travel and stay information including coordinates you deliberately saved, settings, daily expense reports, expenses, and stored boarding passes, receipts, invoices, bookings and other travel documents including their files are synchronized between your devices through your private CloudKit database. Passports, identity cards, residence permits, driving licences and other identity documents managed under “Identity documents”, including their numbers, remain exclusively local on each device.

Apple encrypts third-party app data in iCloud in transit and on its servers. Under Standard Data Protection for iCloud, Apple holds the required encryption keys. Advanced Data Protection for iCloud, which you can optionally enable, extends end-to-end encryption to additional iCloud data; for CloudKit, this particularly includes appropriately protected fields and assets. VoyaMate does not control the protection level of your Apple Account and does not add its own end-to-end encryption layer to CloudKit synchronization. Processing is governed by the terms of your Apple Account, and the developer does not operate a separate server for this app data. Apple provides more information in its iCloud data security overview.

The separately enabled automatic expense export writes an Excel or CSV file that you can see in iCloud Drive. For manual expense exports, you can additionally save selected PDF, CSV and Excel files in the visible “Export Expenses” folder. These regular expense exports are not automatically protected with the data archive password.

Complete data archives

At your request, VoyaMate creates a complete data archive containing journeys and stays, synchronizable settings, saved places and place visits including coordinates you deliberately saved, daily expense reports and expenses, and imported or scanned travel documents together with their files. Local identity documents, their metadata and document numbers, and the local nationality selection are expressly excluded from the data archive.

When private iCloud synchronization is enabled, VoyaMate stores the archive directly in the visible VoyaMate folder in iCloud Drive. Otherwise, you can enable private iCloud synchronization or use the iOS sharing interface to select a destination for that archive yourself. The restore function reads the latest archive stored in the VoyaMate folder in iCloud Drive and merges its data back into app storage.

If you enable “Protect data archives with a password”, VoyaMate adds password protection to newly created data archives. An archive protected this way cannot be restored without the password that was used. If the option is not enabled, the archive file does not receive this additional password protection. Password protection applies only to the complete data archive and not automatically to PDF, CSV or Excel expense exports.

VoyaMate can store the archive password as a synchronizable item in iCloud Keychain. With iCloud Keychain enabled, Apple synchronizes Keychain contents between your trusted devices with end-to-end encryption. The password is not sent to the developer, and Apple cannot access it in plain text. This synchronized archive password is technically and logically separate from the document numbers of your identity documents, which remain in the Keychain of the individual device. Apple provides more information in its iCloud Keychain security overview.

Visible files in iCloud Drive

Data archives and expense exports in iCloud Drive are subject to the iCloud protection level of your Apple Account. Under Standard Data Protection, iCloud Drive files are encrypted in transit and on Apple’s servers while Apple holds the keys. With Advanced Data Protection enabled, iCloud Drive files are end-to-end encrypted. If you subsequently transfer files to another location or service through a sharing interface, that destination’s privacy and retention terms also apply.

VoyaMate does not integrate advertising, analytics or profiling providers. Map views and the optional place search are provided through Apple Maps and MapKit.

4. Legal bases

Where processing falls within the scope of the GDPR, processing required for app features you use is based on Article 6(1)(b) GDPR. Optional access to location, photos and camera, as well as iCloud synchronization that you enable, is based on your consent under Article 6(1)(a) GDPR where consent is required. Processing technically necessary for security and reliable operation is based on Article 6(1)(f) GDPR. You can change system permissions in iOS at any time.

5. Retention and deletion

App data remains on the device while you keep the relevant entries or the app’s local storage. Linked travel documents are removed when you delete their journey or expense. Saved place visits form a separate history and are not removed automatically when you delete a linked journey or saved place. When you delete a local identity document in the app, VoyaMate also removes its saved document number and related reminders.

To stop private iCloud synchronization, turn it off in VoyaMate and fully restart the app. You can then manage the cloud data through the iCloud storage settings of your Apple Account.

Manually created data archives, additional PDF, CSV or Excel copies and automatically updated expense exports remain at the selected destination or in iCloud Drive until you delete them there yourself. Deleting or importing an archive does not automatically remove the archive file or any other stored data.

The archive password remains in iCloud Keychain if you merely disable password protection for new archives, so that archives protected with that password can still be opened. You can explicitly delete it from iCloud Keychain under “iCloud & data backup”. With iCloud Keychain enabled, the deletion is synchronized between your devices. Archives that already exist are not modified when you change or delete the stored password and continue to require the password used when each archive was created.

Removing the app deletes local app storage on the relevant device, but it does not automatically remove CloudKit data, files in iCloud Drive or Keychain contents. If you also want the associated Keychain data to be removed deliberately, delete identity documents and the archive password in the app before removing VoyaMate. Files that you transferred to another destination or service through the iOS sharing interface are subject to that destination’s own deletion options and terms.

6. Your rights

Where the legal requirements are met, you have rights of access, rectification, erasure, restriction of processing, data portability and objection. You may withdraw consent at any time with effect for the future. You also have the right to lodge a complaint with a data protection supervisory authority.

Because the developer has no access to app data stored locally or in your private iCloud database, the developer cannot view or technically change this data on your behalf. This does not affect your statutory rights or your ability to contact the controller.

7. Effective date and changes

Effective: August 22, 2026. This policy will be updated if the features or data processing activities change materially.

8. Controller

Controller
Fabian Vocke
Am Autobahnzubringer 1
76709 Kronau
Germany

Email
privacy@mate.build