Privacy Policy

Last updated: June 2026 · Version 2.1 · Effective immediately

We built TorQ-Haus for car enthusiasts. We collect only what we need to run the app, we don't sell your data, and we don't serve ads.

What's new in v2.1 (June 2026)

What's new in v2 (June 2026)

1. What We Collect

Data Why Where stored
Email address Account authentication Firebase Auth
Display name Shown on your profile and posts Firebase Firestore
Username Your @handle in the community Firebase Firestore
Profile photo Shown on your profile and posts Firebase Storage
Car details Build tracking and community features Firebase Firestore
Mod, maintenance & performance data Core app functionality Firebase Firestore
Performance verification photos Proof attached to verified runs — visible to you only Firebase Storage (private path)
Verification photo (temp, AI scan) Sent to Anthropic API to extract split times — not stored by Anthropic Transmitted only, not retained by Anthropic
Report submissions Content moderation Firebase Firestore (admin-only)
FCM push token Push notifications only Firebase Firestore (private, owner-only)
Device locale Auto-detect measurement units On device only, never sent
Crash reports Fix bugs and improve stability Firebase Crashlytics (anonymous)
App attestation Security — verify requests come from the real app Firebase App Check / Google Play Integrity
Live GPS coordinates (Cruising Mode only, active cruise only) Show your position to your crew on the convoy map during a cruise Firebase Realtime Database (crew-scoped, wiped on cruise end). See section 4c.
Saved route (Cruising Mode, opt-in per cruise) Let you review your own drive after the cruise (distance, duration, top speed, map) Firebase Storage under your uid only. See section 4c.

2. What We Don't Collect

3. How We Use Your Data

4. Profile Photos

Photos you upload are stored in Firebase Storage at a path only accessible to you and the app. Your photo URL is stored in your Firestore profile and displayed to other authenticated users. You can remove your photo at any time from Profile → tap your avatar. When you delete your account, your photo is permanently deleted.

4a. Public Build Pages (Pro feature)

If you have an active Pro subscription and tap "Share build page" in the app, the page at torqhaus.app/build/@username renders the following from your account, with no authentication required:

The page reads the same Firestore documents the rest of the app already uses; it does not collect anything new. Make your profile private (Profile → Edit build profile → toggle off "Public profile") to disable the page — it will show a "private" message instead of your data.

4b. Vendor / Product Links

When you save a vendor URL on a wishlist item and later tap "View product page" or "Open link", TorQ-Haus opens that URL in your device's browser via the system's external launcher. We don't proxy these requests; we don't log the click; we don't share that you tapped a link. The destination site is operated by whoever owns it, and their own privacy practices apply once you arrive there.

4c. Cruising Mode location data

Cruising Mode is the only feature in TorQ-Haus that transmits your live GPS coordinates to our servers. Strict rules apply because we treat location as the most sensitive category of data we process.

When we collect it

What we collect

Sample cadence: roughly once every 3 seconds while moving, once every 10 seconds while stationary.

Who can see it

When it gets deleted

Saved routes (opt-in per cruise)

What we never do with cruise location

5. Firebase & Google Services

TorQ-Haus is built on Google Firebase. Firebase processes data in accordance with Google's privacy policies. We use:

5a. Publicly readable Firestore collections

To support unauthenticated web visitors landing on a build page, a small set of Firestore paths are configured for public read. This is the same data already shown to other signed-in users today; the new aspect is that no sign-in is required to read it:

Private data — including push tokens, fuel receipts, service receipts, FCM tokens, VINs, and the legal-acceptance log — remains owner-only.

Google's privacy policy: policies.google.com/privacy

6. AI Run Verification (Anthropic API)

When you use the AI verification scan feature to scan a Dragy screenshot or drag strip time slip, your image is sent to the Anthropic API for processing:

Anthropic's privacy policy: anthropic.com/privacy

7. Performance Verification Photos

Verification photos (Dragy screenshots and time slips) you attach to runs are stored in Firebase Storage. They are visible only to you within the app — they are not shared publicly or shown to other users unless you explicitly share them. When you delete a run, the associated verification photo is permanently deleted.

8. Reports

When you submit a report on a post, Q&A question, answer, or listing, we collect: your user ID, the reported content ID, the reported user ID, report type, and timestamp. This data is stored in Firebase Firestore and is readable only by TorQ-Haus administrators. It is used solely for moderation purposes and is never shared publicly.

9. RevenueCat

Subscription management is handled by RevenueCat. RevenueCat receives your app user ID and subscription status. They do not receive your email or personal details. RevenueCat's privacy policy: revenuecat.com/privacy

10. News Aggregation

The news feed fetches publicly available RSS feeds from automotive media outlets every 6 hours. We do not track which articles you view. Article content is sourced from third-party publishers — TorQ-Haus does not own or store full article text, only headlines, summaries, and links.

11a. Legal-Acceptance Log

When we update the Privacy Policy or Terms of Service in a meaningful way, we bump a version number and prompt you in-app to review and accept. When you accept, we record:

The log is stored at users/{uid}/legalAcceptances/{entryId} and is owner-readable / write-once. We keep this record as proof that you reviewed the current policies — it's purely for legal-compliance purposes and is never shared, sold, or used for analytics.

11. Data Retention

12. Your Rights

13. Children's Privacy

TorQ-Haus is not directed at children under 13. We do not knowingly collect data from children under 13. If you believe a child under 13 has created an account, contact us at hello@torqhaus.app.

14. Security

15. Changes to This Policy

We may update this privacy policy. We'll notify you of significant changes via the app. The "last updated" date at the top always reflects the most recent version.

16. Contact

Privacy questions or data requests: hello@torqhaus.app


© 2026 TorQ-Haus · Terms · Privacy