Privacy Policy
Last updated July 26, 2026
WALK50K ("we", "us") provides a walking-challenge app that witnesses your effort and issues a verifiable certificate. This policy explains what we collect, why, and the control you have over it. We do not sell your data, and we do not use it for advertising.
Information we collect
- Account. An email address, used to sign in via one-time code. Authentication is handled by our processor, Clerk.
- Health data. Step counts read from HealthKit, used solely to track and verify your challenge progress. We read step data only; we never write to HealthKit.
- Motion data. A live step estimate from the device motion sensor, used to update the on-screen counter. It is not used as the authoritative proof of completion.
- Location. If you grant optional Location access, precise GPS points may be recorded during an active challenge, including while the screen is locked, to draw a route line on your certificate. The points are sent to our API for processing and are retained with the account until account deletion; the public certificate shows only a normalized route shape, not raw coordinates.
- Purchases. Records of in-app purchases made through Apple and the resulting entitlements. The printed certificate feature shown in the app is an informational teaser and is not available to order in this version.
- Leaderboard preference. If you choose to show your name on the public leaderboard, we store that profile preference and use your existing display name beside your verified results. The default is anonymous, and you can turn it off in Account.
- Analytics and diagnostics. A random pseudonymous identifier, approved product events, and sanitized error, crash, and performance data sent to PostHog's EU-hosted project. We do not send HealthKit samples, step counts, GPS points, email addresses, names, verification codes, tokens, RevenueCat payloads, or App Attest material to analytics.
- Diagnostics. If you choose to send a debug report, an on-device log of recent app events.
How we use it
- To run and verify challenges and issue certificates.
- To process in-app purchases and maintain entitlements.
- To publish verified results on the public leaderboard only when you have enabled name visibility.
- To provide support and fix issues you report.
- To understand product usage and investigate technical failures through privacy-safe analytics and error tracking.
HealthKit
Data obtained through HealthKit is used only to provide the core challenge feature. We do not use HealthKit data for marketing or advertising, do not disclose it to third parties for those purposes, and do not store it in iCloud.
Service providers
We share the minimum necessary data with processors who act on our on our behalf: Clerk (authentication), RevenueCat (purchase entitlements), and PostHog (product analytics and error tracking, EU region). RevenueCat and PostHog receive only the data needed for their respective services.
Analytics on this website
This marketing website uses PostHog (EU-hosted) to understand how visitors use the site — page views and general navigation — so we can improve it. This is separate from the app: HealthKit data, location, and other app-specific information described above are never sent to analytics, on the website or in the app. The app disables automatic interaction capture and session replay. We do not use this data for advertising, do not share it with ad networks, and do not sell it.
Retention and deletion
You can permanently delete your account and all associated data at any time from Settings → Delete Account in the app. This erases your attempts, certificates, raw route points, entitlements, analytics identity, and account identity. You may also email us at support@walk50k.com to request deletion.
Children
WALK50K is not directed to children under 13, and we do not knowingly collect their data.
Contact
Questions? Email support@walk50k.com.