MapMeet by AlyaskaTeam

Legal

Privacy Policy

Effective 11 August 2026 · Version 1.1

MapMeet is a map of things happening near you. To do that, it has to know a few things about you. This page explains exactly what those things are, who can see them, who else we send them to, and how to get them back or get rid of them.

The short version.

1. Who we are

MapMeet is operated by AlyaskaTeam ("AlyaskaTeam", "we", "us", "our"), based in Ukraine. For data protection purposes AlyaskaTeam is the controller of the personal data described in this policy.

Registered address: 7D Halytska Street, Ternopil, 46001, Ukraine

Contact for anything in this policy — questions, requests, complaints:

This policy covers the MapMeet mobile apps for iOS and Android and the MapMeet web app. It does not cover other websites or services that MapMeet links to.

2. What's in this policy

  1. Who we are
  2. What's in this policy
  3. What we collect
  4. Location, specifically
  5. What we deliberately don't collect
  6. Why we use it, and our legal basis
  7. Who can see what, inside the app
  8. Who we share data with
  9. Where your data is stored
  10. How long we keep it
  11. Your rights
  12. Deleting your account
  13. How we protect your data
  14. Children
  15. Changes to this policy
  16. Complaints

3. What we collect

3.1 Information you give us when you sign up

3.2 Information you choose to add to your profile

All of these are optional. You can leave them blank, and you can change or remove them at any time in the app.

3.3 What you do in the app

3.4 Content you create

Chats are not end-to-end encrypted. Messages are encrypted in transit and at rest, but they are stored in a form we could technically access. We only do so where we have to: to investigate a report, to comply with a legal obligation, or to fix a fault you have reported to us.

3.5 Safety and moderation data

3.6 Feedback you send us

If you use Send Feedback in Settings, we receive your message, any photos or videos you attach, and the account you sent it from, so we can reply.

3.7 Notifications

If you allow push notifications, we store a push token issued by Expo's push service for your device, so we can deliver alerts about messages and events. Turning notifications off in your device settings stops delivery; you can also disable them inside MapMeet.

3.8 Technical information

Like any online service, our hosting provider records technical data as part of running the servers: IP addresses, timestamps, request paths and error traces. These logs are kept for a limited period and used for security, abuse prevention and debugging — not for profiling you.

4. Location, specifically

This is the part people most want to be clear about, so here it is in detail.

Location dataWhat happens to it
Your device's current position Requested only while you are using the app, and only after you grant permission. Used on your device to centre the map and to filter the "Nearby" list by distance. Not sent to our servers and not stored in your profile. We do not track you in the background and never build a location history.
An event you pin on the map Stored as coordinates and an address, and shown to everyone who can see that event. That is the whole purpose of pinning it.
A location you send in a chat Stored as coordinates in that conversation and visible to its members until the message is deleted.
An address you search for The text you type, or the coordinates being looked up, are sent to OpenStreetMap's Nominatim geocoding service to be turned into a place. Your account identity is not sent with it.
Map tiles The map images themselves are fetched from OpenStreetMap, Esri (satellite view) or OpenTopoMap (terrain view). Those providers necessarily see your IP address and which part of the world you are looking at.

You can refuse or later revoke location permission in your device settings. MapMeet still works — you can pan the map and search for places manually — but it can't centre on you or sort events by distance.

5. What we deliberately don't collect

6. Why we use it, and our legal basis

Where the GDPR applies, we must have a legal basis for each use. Here they are.

What we doData usedLegal basis
Create and run your account Email, password hash, username, display name Performance of a contract
Show events, groups and chats; deliver your messages Activity and content data Performance of a contract
Show events near you Device location (on-device only) Consent — the permission you grant, withdrawable at any time
Send push notifications Push token Consent — the permission you grant, withdrawable at any time
Verify a phone number Phone number Consent — you choose to add it
Keep people safe: reports, blocks, warnings, mutes, bans Reports, moderation records, the content complained about Legitimate interests — protecting users from harassment, abuse and fraud
Keep the service secure and prevent abuse Technical logs Legitimate interests — security of the service
Answer your feedback and support requests Your message and attachments Legitimate interests — responding to you; performance of a contract
Comply with the law, respond to lawful requests Whatever is legally required Legal obligation

We do not use your data for automated decision-making that produces legal or similarly significant effects about you. Moderation decisions — warnings, mutes, bans — are taken by a human.

7. Who can see what, inside the app

Separately from any question of third parties, it's worth being precise about what other MapMeet users can see.

ItemWho sees it
Username, display name, profile photo, bio, interestsAny signed-in user who visits your profile
Your phone number and email addressNobody else. They are never shown on your profile
Public events you createEveryone
Private events you createOnly people you invite
Events you are attendingYour choice, in Settings → Privacy: Everyone, Friends only, or Nobody
Messages in an event or group chatMembers of that chat
Direct messagesYou and the recipient
Reviews you write about someoneShown to that person and to others without your name attached. See the note below
Votes in an anonymous pollNobody — not even the poll's creator. The app has no way to reveal them
Votes in a normal pollAnyone in that chat, via "View results"
Your last-seen timePeople you have a direct conversation with
Reports you fileOnly MapMeet moderators. The person you report is never told who reported them

On "anonymous" reviews

Reviews are anonymous to other users: the app never displays who wrote one. They are not anonymous to us. We store the author alongside the review so that we can investigate abuse of the review system and respond to legal requests. Please don't treat a review as untraceable.

When you block someone

Blocking is mutual and immediate: they can no longer message you or see the events you are attending, your profile photo is replaced by a placeholder for them, your last-seen shows as "a long time ago", and you are removed from each other's friend lists. Messages you both already sent in a shared group or event chat stay visible there — we don't rewrite history in conversations other people are part of.

8. Who we share data with

We share personal data only with the service providers we need to run MapMeet, and only as much as each one needs. They act on our instructions, under contract, and may not use your data for their own purposes.

ProviderWhat it does for usWhat it receives
Supabase Database, sign-in, file storage, realtime messaging Effectively all account, activity and content data. Hosted in the EU (Ireland)
Expo (Expo Application Services) Push notification delivery and app builds Your push token and the contents of notifications we send you
Resend Delivers feedback messages to our inbox Only what you put in a feedback message, and only when you send one
OpenStreetMap Foundation Turning addresses into coordinates, and map tiles The search text or coordinates being looked up, and your IP address
Esri, OpenTopoMap Satellite and terrain map imagery Your IP address and the map area requested, if you switch to those views
Apple, Google App distribution; the underlying map component on each platform Whatever their own platform terms describe. Their handling of it is governed by their privacy policies, not this one

Imported events. MapMeet also shows public events gathered from ticketing sites such as karabas.com. This is one-way: we read their public listings. No personal data about you is ever sent to them. If you buy a ticket, you leave MapMeet and the seller's own terms and privacy policy take over.

We will also disclose data where we are legally required to, or where it is necessary to:

If AlyaskaTeam is ever involved in a merger, acquisition or sale of assets, personal data may transfer to the successor. We will tell you before that happens and before your data becomes subject to a different privacy policy.

9. Where your data is stored

Your account, content and files are stored in the European Union (Ireland), on infrastructure operated by Supabase.

Some of our providers are based outside Ukraine and the EEA — principally in the United States. Where personal data is transferred there, the transfer is covered by the European Commission's Standard Contractual Clauses or another lawful transfer mechanism, together with technical safeguards such as encryption in transit.

10. How long we keep it

DataKept for
Account and profileUntil you delete your account — immediately, from Settings
Messages, photos, voice notesUntil you delete them, or until the account is deleted
Events you createdUntil you delete them; past events are cleared automatically over time
Imported public eventsRemoved automatically once they are in the past
Invite links24 hours from creation
Reports and moderation recordsUp to 2 years after the case is closed, so repeat behaviour can be recognised. Reports you filed about others outlive your account, with your name removed; reports about you are deleted with it
Technical and security logsTypically 30 days
Feedback messagesUp to 12 months after the issue is resolved

11. Your rights

Under Ukrainian data protection law and, where it applies to you, the GDPR, you have the right to:

To exercise any of these, email artem.liaskovets@gmail.com from the address on your account. We respond within 30 days. There is no charge. We may need to verify your identity first — we won't hand your data to somebody claiming to be you.

12. Deleting your account

You can delete your account yourself, from inside the app: Settings → Delete account. We ask why you're leaving, then ask for your password to confirm it's really you. Deletion happens immediately and cannot be undone.

You can also email artem.liaskovets@gmail.com from your account's address if you'd rather we did it — we complete those within 30 days.

Deleting removes your profile, your photo, your events, the events you joined, your friendships, your blocks, your ratings and reviews, your poll votes, and reports filed about you. Two things do not go:

The reason you give is sent to our team along with your username and email address, so we can understand why people leave. If you would rather not tell us anything, pick "Something else" and leave the box empty.

To be straight with you about one limit: because we don't verify identity, deleting an account and signing up again with a different email address creates a genuinely new account. We can't carry a ban across that.

13. How we protect your data

No service can promise perfect security. If a breach occurs that is likely to put your rights at risk, we will notify you and the relevant supervisory authority as the law requires.

14. Children

MapMeet is not for people under 16. We don't knowingly collect data from anyone under 16. If you believe a child under 16 has created an account, email artem.liaskovets@gmail.com and we will delete it.

15. Changes to this policy

We'll update this page when MapMeet changes. The effective date at the top always reflects the current version. If a change materially affects your rights or how we use your data, we will tell you in the app or by email before it takes effect.

16. Complaints

Please come to us first at artem.liaskovets@gmail.com — most things are quicker to fix directly.

You also have the right to complain to a supervisory authority. In Ukraine that is the Ukrainian Parliament Commissioner for Human Rights (Ombudsman). If you are in the EEA or the UK, you may complain to the data protection authority where you live or work.