Skip to content

Privacy Policy

Effective: 2 October 2026

This policy explains what Backpack Weight Tracker collects, why, who it is shared with, and what you can do about it. It is written to be read, not to be survived.

Who we are

Backpack Weight Tracker (“the app”, “we”, “us”) is operated by Fisher Bricker, in Oregon, United States. Contact us through the support page.

What we collect

Your account. Email address and a handle, so you can sign in and other people can find you. Sign-in is handled by Firebase Authentication. If you sign in with Apple or Google, we receive what that service passes us, usually an email address and a name. With Sign in with Apple you can choose to share a private relay address instead of your real one. We also record which version of the Terms of Service you accepted, and when.

What you put in the app. Gear (names, categories, weights, prices, notes and purchase links), trips, packs, meal plans, food, fuel, resupply points, itineraries, trip notes, and the location you choose for a trip. Routes you plan, meaning the points you place on the map and the path between them. Posts, forum discussions, comments and reactions, and the photos and videos you attach to them. What you link to a post: a copy of one of your trips (the details you choose to show, such as its numbers, its gear list and its route) and of the gear you spotlight. A post’s sound, if you add one: a recording you make in the app, or the sound taken from one of your own videos. Your display name and profile photo. Items you save for later, including routes you save from other people’s posts.

Body measurements, if you enter them. Height, body weight, birthdate and biological sex. These are used for one thing: estimating how many calories a day of walking with a given pack weight is likely to burn. Your birthdate is also used to confirm you meet the minimum age. They are stored separately from your profile, they are never shown to other people, and they are never sold or used for advertising.

Who you are connected to. Your friends, the people you follow and who follow you, the trips you share, the gear you have claimed a share of, and the friends you tag on a post as having been there.

Your weight and trip history. Your profile keeps a history of your base weight, a short summary of recently finished trips (name, date, distance and climb), and the achievements you have earned.

Notifications. If you allow notifications, your phone is given a push token by Firebase Cloud Messaging, which we store with your account so notifications reach that phone; it is removed when you sign out. We store which kinds of notification you have switched on or off in Settings, a record of which notifications were sent to you so none is sent twice, and your Activity list: the title and text of each notification and what it is about, so you can find it again in the app.

Device checks. We use Apple’s App Attest to confirm requests come from a genuine copy of the app, and Apple’s DeviceCheck to recognise a device that has previously been banned. Neither reveals who you are, and neither can be used to track you across other apps.

Crash reports. When the app crashes, or a sync keeps failing, Firebase Crashlytics sends us a report: the app version, device model, iOS version, and what the app was doing at the time. Reports are not linked to your account. We use them only to find and fix problems.

App configuration. The app checks Firebase Remote Config for settings such as the oldest version we still support. This uses an identifier Firebase assigns to the installation, not your account.

Advertising data. The app shows ads through Google AdMob. If you allow tracking when iOS asks, AdMob may use your device’s advertising identifier to personalise ads. If you decline, you see the same number of ads, chosen without it. See how Google uses information.

Your microphone is used only while you record a sound for a post, and only after iOS asks your permission. Nothing is recorded at any other time.

We do not use your contacts, your camera, Apple Health or motion data. Photos and videos are chosen with the iOS picker, which gives the app only the items you pick.

Location

Your device’s location is used to show where you are on a map, and to record a route while you are recording one, including in the background if you allow it. A recorded route stays on your phone. It leaves only if you export or share the GPX file yourself, or share the route on a post.

Routes you plan are sent to our servers so the path between your points can be worked out along trails and roads, and so its height and climb can be measured. A planned route is saved with its trip, synced to your other devices, and visible to the people on that trip.

Routes you share on a post. When you link a trip to a post, you choose whether to share its planned route or its recorded route, or neither. A shared route is copied into the post and can be seen by everyone who can see the post. By default the first and last 500 metres are cut off the shared copy, along with any points and markers there, so it does not show where you started, for example your home; you can turn that off for a trailhead. Anyone who can see the post can save a copy of the route to their own private list and plan a trip from it. They are not told who else saved it, and you are not told who saved yours.

A trip’s location is the place you pick in the app’s location search. It is stored with the trip, and it is sent to the US National Weather Service to fetch that trip’s forecast and alerts. Location search itself is provided by Apple Maps.

Maps you look at. When a map is on screen, your phone fetches the map data for that area. Our servers give your phone a short-lived link, and the map data itself is delivered by Cloudflare. Cloudflare sees your phone’s IP address and which parts of the map it asked for, which shows roughly where on the map you were looking. It is not told who you are: the link carries no account, name or trip.

Offline maps. When you download a map for a trip, the area you asked for is sent to our servers so the download can be cut to size. The prepared download is kept for up to 60 days so it can be fetched again.

Sounds you post. A recording, or the sound taken from one of your videos, is stripped of the details stored inside the file, including any location, before it is uploaded, and our servers strip it again after upload.

Photos and videos you post. Photos are re-saved by the app before upload, which removes any location or camera details stored inside them. Videos have the details stored inside the file, including the place they were recorded, removed by the app before upload and again by our servers after upload. Videos posted before this was in place have been cleaned the same way.

We do not track your location in the background for any other purpose, and we do not use it for advertising.

How we use it

We do not sell personal information, and we do not use your gear, trips, routes, posts or body measurements to target ads.

Gear suggestions

The app can suggest lighter or better-suited gear. By default these suggestions are made by our servers using Google’s Gemini service: when you ask for them, the name, category, weight and price of each item in your gear list are sent to Google to produce them. We keep a record of how each of your item names was classified, so the same item is not sent again every time. Nothing else about you, such as your name, email, trips or location, is included.

If you choose instead to add your own Anthropic or OpenAI API key, your gear list is sent from your phone directly to that provider, under your own account with them, and is subject to their terms and privacy policy. It does not pass through us. Your key is stored in your phone’s keychain and is never sent to us.

Some gear shows a link to buy it from Amazon. Tapping one sends the item’s name to Amazon as a search. We may earn a commission from qualifying purchases made through those links.

Who we share it with

If the app is ever sold or transferred, your information would move with it, under a policy at least as protective as this one.

What other people can see

Where it is stored

Google Firebase, on Google Cloud infrastructure in the United States. Data is encrypted in transit and at rest. The app is offered in the United States and Canada. If you are in Canada, your information is stored and processed in the United States and is subject to the laws there.

Map data, which contains nothing about you, is also kept with Cloudflare and delivered from its network. A request for it may be handled by a Cloudflare data center near you.

No method of storage or transmission is completely secure, but we protect your information with industry-standard measures, including access rules that limit what each account can read and write.

How long we keep it

Until you delete it. Deleting an item deletes it. Deleting your account is covered below. The exceptions are these:

When a post or comment is removed because enough people reported it, we do not delete it immediately. It is held for review so a mistaken report can be corrected. While it is held:

Deleting your account

Settings → Delete Account. It is immediate and cannot be undone. It removes your account, profile, handle, photo, gear, trips, planned routes, meal plans, itineraries, friendships, invitations, your posts and comments and the routes shared on them, the routes you saved from other people’s posts, the sounds you added to posts, and the photos you attached to trips and forum discussions.

It also removes the photos and videos attached to your posts and gear showcases, your achievement share images, your saved items, your push tokens, notification settings, Activity list and notification history, your entry in other people’s follower and following lists, and the records we keep about your gear suggestions and upload limits.

A few things deliberately survive, and none of them identifies you:

Reports you filed about other people are kept, because they are records about those people rather than about you.

Your rights

Wherever you live, you can:

California, Oregon and other US states with privacy laws. You have the rights above, and the right to opt out of the “sale” or “sharing” of personal information and of targeted advertising. We do not sell personal information. Personalised advertising through AdMob can count as “sharing” or targeted advertising under some of these laws; turning off tracking in iOS Settings opts you out of it. We will not treat you differently for using any of these rights. If we turn down a request, you can ask us to reconsider, and we will explain our answer.

Canada. You have the rights above under PIPEDA and applicable provincial law, and you can complain to the Office of the Privacy Commissioner of Canada.

To make a request, contact us through the support page. We will confirm the request comes from the account holder and respond within 30 days. You can use an authorised agent, who will need your written permission.

Beta testing

Before the app is on the App Store, it is available as a beta through Apple’s TestFlight. If you take part, Apple shares with us the email address or name you joined with, the feedback and screenshots you send through TestFlight, and crash and usage information about the beta, under Apple’s TestFlight terms. We use it only to improve the app. Everything else in this policy applies to the beta in the same way.

Children

You must be 13 or older to use the app. We ask for a birthdate when you set up your profile, and an account that gives an age under 13 is deleted rather than kept. If you believe a child under 13 has given us information, contact us and we will delete it.

This website

These pages are hosted on GitHub Pages. They set no cookies and run no analytics or advertising. GitHub may record your IP address and browser details in its own server logs when you visit, under GitHub’s privacy statement.

Changes

If this policy changes in a way that matters, we will tell you in the app before the change takes effect, rather than quietly updating this page. The effective date at the top always shows the current version.

Contact

Support page.