# Wanderlust — Gizlilik Politikası


**Son güncelleme:** 22 Temmuz 2026

**Geliştirici:** SaSe Games

**İletişim:** infosasegames@gmail.com


> Bu metin hem Türkçe hem İngilizce olarak aşağıda yer alır. / This document is provided in both Turkish and English below.


---


## 1. Özet (En önemli nokta)


Wanderlust **hesap gerektirmez** ve verilerinizi **kendi sunucularımıza göndermez** — çünkü bizim bir sunucu veya arka ucumuz yoktur. Gezi rotalarınız, ziyaret ettiğiniz şehirler, adımlarınız, rozetleriniz, notlarınız ve fotoğraflarınız **yalnızca kendi cihazınızda** saklanır. Reklam göstermiyoruz, analitik/izleme yazılımı kullanmıyoruz ve verilerinizi **hiçbir zaman** satmıyoruz.


Sınırlı sayıda, yalnızca uygulamanın çalışması için gereken durumlarda bazı veriler **üçüncü taraf hizmetlere** iletilir (örneğin harita karoları görüntüleme veya koordinatların yer adına çevrilmesi). Bu hizmetler aşağıda tek tek açıklanmıştır.


## 2. Topladığımız / İşlediğimiz Veriler


| Veri türü | Nasıl elde edilir | Nerede saklanır | Bizim sunucumuza gider mi? |

|-----------|-------------------|-----------------|----------------------------|

| Konum (GPS) | Siz gezi takibini başlattığınızda | Cihazınızda (Android: SQLCipher şifreli; iOS: Data Protection ile korunan sandbox) | **Hayır** |

| Adım / hareket | Cihazın adım sayar sensörü | Cihazınızda (Android: SQLCipher şifreli; iOS: Data Protection ile korunan sandbox) | **Hayır** |

| Fotoğraflar | Siz bir yere/geziye eklediğinizde | Cihazınızda, uygulamanın özel dizininde (düz JPEG; ayrıca şifrelenmez) | **Hayır** |

| Notlar, yer adları, rozetler, XP | Uygulama içi etkinlikleriniz | Cihazınızda (Android: SQLCipher şifreli; iOS: Data Protection ile korunan sandbox) | **Hayır** |


Kayıt olmanızı istemiyoruz; ad, e-posta, telefon numarası gibi kimlik bilgilerini biz toplamıyoruz.


## 3. Konum Verisi ve Gezi Takibi


Konum izni, yalnızca **siz bir gezi takibi başlattığınızda** kullanılır ve şunlar içindir: yürüdüğünüz rotayı çizmek, ziyaret ettiğiniz şehir/ülkeyi belirlemek, mesafe hesaplamak ve buna bağlı rozet/seviye vermek. İzni vermezseniz gezi takibi çalışmaz, ancak uygulamanın diğer bölümlerini kullanmaya devam edebilirsiniz.


**Arka plan rota kaydı:** Gezi takibini başlattıktan sonra, uygulama ekranda görünmüyor veya cihaz ekranı kilitli olsa bile rota kaydını sürdürür. Android'de bu işlem, kalıcı ve görünür bir bildirim gösteren foreground service ile yürütülür. iOS'ta ise sistemin standart arka plan konum modu (`UIBackgroundModes: location`) kullanılır; çalışma süresince durum çubuğunda konum göstergesi görünür. Geziyi bitirdiğinizde konum kaydı durur. Uygulama, **siz gezi başlatmadıkça** arka planda konum toplamaz — pasif veya sürekli arka plan izleme yapılmaz.


## 4. Fotoğraf Erişimi


Fotoğraf eklemek istediğinizde uygulama, platformun sistem seçicisini açar: Android'de sistem Photo Picker (`PickVisualMedia`), iOS'ta `PHPickerViewController`. Bu seçiciler işletim sistemi tarafından sağlanır ve **tüm fotoğraf kütüphanenize erişim izni istenmez**. Yalnızca sizin seçtiğiniz fotoğraf uygulamaya kopyalanır; geri kalan kütüphanenizi göremeyiz. Kopyalanan fotoğraf, uygulamanın özel dizininde düz JPEG dosyası olarak saklanır ve ayrıca şifrelenmez.


## 5. Üçüncü Taraf Hizmetler (verinin cihaz dışına çıktığı durumlar)


- **Harita karoları — OpenFreeMap (tiles.openfreemap.org):** Haritayı görüntülerken, baktığınız bölgenin karoları bu açık/ücretsiz hizmetten indirilir. İstekler IP adresinizi ve görüntülenen harita bölgesini içerir. Veriler OpenStreetMap tabanlıdır.

- **Ters jeokodlama — OpenStreetMap Nominatim (nominatim.openstreetmap.org):** Bir koordinatı okunabilir yer adına çevirmek için koordinat bu hizmete gönderilir. Bkz. [OpenStreetMap Gizlilik Politikası](https://wiki.osmfoundation.org/wiki/Privacy_Policy). *(Not: İleride bu hizmet ticari bir sağlayıcıyla değiştirilebilir; politika güncellenecektir.)*

- **Apple App Store / Google Play — Uygulama içi satın almalar:** Bir premium abonelik satın aldığınızda ödeme işlemi tamamen Apple veya Google tarafından gerçekleştirilir. Biz kart bilgilerinizi veya ödeme ayrıntılarınızı **hiçbir zaman** görmeyiz. Satın alma durumu (aktif/aktif değil), doğrudan cihazınızda StoreKit (iOS) veya Google Play Billing (Android) makbuz ve yetki (entitlement) doğrulamasıyla teyit edilir; makbuzlar bize iletilmez ve geliştiricinin bu işlem için ayrı bir sunucusu yoktur.

- **Google Drive yedekleme (isteğe bağlı, Android ve iOS):** Yalnızca siz açıkça seçerseniz, Google hesabınızla giriş yapılır (OAuth) ve bir yedek dosyası **sizin kendi Google Drive'ınıza** yüklenir. Bu aşamada Google, temel profil bilgilerinizi (e-posta adresi, ad, profil fotoğrafı) bize iletir; bunlar yalnızca hesabınızı tanımlamak amacıyla kullanılır, kendi sunucularımızda saklanmaz. Kullandığımız OAuth kapsamı yalnızca `drive.file`'dır — bu, hassas olmayan bir kapsam olup uygulamanın bizzat oluşturduğu yedek dosyalarına erişim sağlar; Drive'ınızdaki diğer dosyaları göremeyiz ve okuyamayız. Yedek dosyası bize ulaşmaz; biz erişemeyiz.


Verilerinizi reklam veya analitik amacıyla hiçbir tarafla paylaşmıyoruz; verilerinizi **hiçbir zaman** satmıyoruz.


## 6. Veri Güvenliği


Uygulama verileri platforma göre farklı mekanizmalarla korunur:


- **Android:** Veritabanı SQLCipher (AES-256) ile şifrelenir; şifre çözme anahtarı cihazınızın güvenli donanım deposunda (Android Keystore) tutulur ve cihaza bağlıdır — başka bir cihaza taşınamaz.

- **iOS:** Uygulama verileri, uygulamanın sandbox alanında saklanır ve iOS'un Data Protection mekanizmalarıyla (`NSFileProtectionCompleteUntilFirstUserAuthentication`) korunur. Cihazınız ilk açılış sonrasında kilidi açıkken veriler erişilebilir; diğer uygulamalar sandbox'a erişemez.

- Her iki platformda uygulama verileri cihazın korumalı alanında tutulur; başka uygulamalar erişemez.


**Fotoğraflar:** Uygulamanın özel dizininde düz JPEG dosyaları olarak saklanır; ayrıca şifrelenmez. iOS'ta sandbox ve Data Protection, Android'de ise uygulama sandox'ı temel koruma sağlar.


**Yedekler (önemli istisna):** Yerel uygulama veritabanı yukarıdaki platformlara özgü yöntemlerle korunur; ancak dışa aktarılan veya Google Drive'a yüklenen yedek dosyaları **ayrıca şifrelenmez** — bütünlük doğrulaması için HMAC imzasıyla korunur ve içeriği okunabilir biçimdedir. Yedeklerinizi eriştiği yerlerde korumak sizin sorumluluğunuzdadır; yalnızca güvendiğiniz yerlerde saklayın.


## 7. Veri Saklama ve Silme


Verileriniz, siz silene kadar cihazınızda kalır. İstediğiniz zaman uygulama içinden gezilerinizi/yerlerinizi silebilir veya uygulamayı kaldırarak cihazdaki tüm yerel verileri tamamen yok edebilirsiniz. Google Drive'a yüklediğiniz yedekler, siz kendi Drive'ınızdan silene kadar orada kalır.


## 8. Haklarınız (KVKK / GDPR)


Tüm veriniz cihazınızda ve sizin kontrolünüzde olduğundan, erişim, düzeltme ve silme haklarınızı doğrudan uygulama üzerinden kullanırsınız. Yine de herhangi bir sorunuz veya talebiniz için bizimle **infosasegames@gmail.com** adresinden iletişime geçebilirsiniz.


## 9. İzin Geri Çekme


Konum, hareket/fitness, fotoğraf ve bildirim izinlerini cihazınızın **Ayarlar** bölümünden istediğiniz zaman geri çekebilirsiniz. İznin geri çekilmesi yalnızca ilgili özelliğin çalışmasını durdurur; uygulamanın diğer bölümleri çalışmaya devam eder.


## 10. Çocukların Gizliliği


Uygulama çocuklara yönelik olarak tasarlanmamıştır ve bilerek çocuklardan kişisel veri toplamayız.


## 11. İzinler


- **Konum (Yalnızca Kullanılırken):** Gezi rotası kaydı — yalnızca siz başlattığınızda; aktif gezi sırasında arka planda da çalışır (bkz. Bölüm 3).

- **Fiziksel aktivite / adım sayar:** Adımlarınızı saymak için (isteğe bağlı).

- **Bildirimler:** Aktif gezi göstergesi ve rozet/şehir bildirimleri için (isteğe bağlı).

- **Fotoğraf seçici:** Yalnızca seçtiğiniz fotoğrafları almak için — geniş medya kütüphanesi izni istenmez (bkz. Bölüm 4).


## 12. Değişiklikler


Bu politikayı zaman zaman güncelleyebiliriz. Önemli değişikliklerde "Son güncelleme" tarihini değiştirir ve gerektiğinde uygulama içinde bilgilendiririz.


---

---


# Wanderlust — Privacy Policy (English)


**Last updated:** July 22, 2026

**Developer:** SaSe Games

**Contact:** infosasegames@gmail.com


## 1. Summary (The key point)


Wanderlust requires **no account** and does **not send your data to our servers** — because we have no server or backend. Your trip routes, visited cities, steps, badges, notes, and photos are stored **only on your own device**. We show no ads, use no analytics or tracking software, and **never** sell your data.


In a few limited cases, strictly to make the app work, some data is sent to **third-party services** (for example, downloading map tiles or turning a coordinate into a place name). These are listed individually below.


## 2. Data We Collect / Process


| Data type | How obtained | Where stored | Sent to our servers? |

|-----------|--------------|--------------|----------------------|

| Location (GPS) | When you start trip tracking | On your device (Android: SQLCipher-encrypted; iOS: Data Protection-protected sandbox) | **No** |

| Steps / activity | Device step-counter sensor | On your device (Android: SQLCipher-encrypted; iOS: Data Protection-protected sandbox) | **No** |

| Photos | When you attach them to a place/trip | On your device, in the app's private directory (plain JPEG; not additionally encrypted) | **No** |

| Notes, place names, badges, XP | Your in-app activity | On your device (Android: encrypted; iOS: Data Protection-protected sandbox) | **No** |


We do not ask you to register and do not collect identity data such as name, email, or phone number.


## 3. Location Data and Trip Tracking


Location is used **only when you start a trip** and serves to: draw your route, identify the city/country you visit, calculate distance, and award related badges and levels. If you decline the permission, trip tracking won't work, but you can still use the rest of the app.


**Background route recording:** After you start a trip, the app continues recording your route even if the app is not in the foreground or the screen is locked. On Android this is done via a foreground service that shows a persistent, visible notification. On iOS the standard background location mode (`UIBackgroundModes: location`) is used; a location indicator remains visible in the status bar during recording. Recording stops when you end the trip. The app **does not collect location in the background unless you have explicitly started a trip** — there is no passive or always-on background tracking.


## 4. Photo Access


When you choose to add a photo, the app opens the platform's system photo picker: Android's Photo Picker (`PickVisualMedia`) on Android, and `PHPickerViewController` on iOS. These pickers are provided by the operating system and **do not require permission to access your full photo library**. Only the photo you select is copied into the app; we cannot see the rest of your library. The copied photo is stored as a plain JPEG file in the app's private directory and is not additionally encrypted.


## 5. Third-Party Services (the only places data leaves your device)


- **Map tiles — OpenFreeMap (tiles.openfreemap.org):** When viewing the map, requests are made to this free/open service to download tiles for the area you view. These requests include your IP address and the map region viewed. Data is OpenStreetMap-based.

- **Reverse geocoding — OpenStreetMap Nominatim (nominatim.openstreetmap.org):** To turn a coordinate into a readable place name, the coordinate is sent to this service. See the [OpenStreetMap Privacy Policy](https://wiki.osmfoundation.org/wiki/Privacy_Policy). *(Note: this service may later be replaced by a commercial provider; this policy will be updated.)*

- **Apple App Store / Google Play — In-app purchases:** When you purchase a premium subscription, payment is processed entirely by Apple or Google. We **never** see your card details or payment information. Purchase status (active / inactive) is verified directly on your device via StoreKit (iOS) or Google Play Billing (Android) receipt and entitlement verification; receipts are not forwarded to us, and there is no developer-side server involved in this process.

- **Google Drive backup (optional, Android and iOS):** Only if you explicitly choose it, you sign in with your Google account (OAuth) and a backup file is uploaded to **your own Google Drive**. At that point Google provides us with your basic profile information (email address, name, profile photo); this is used solely to identify your account and is not stored on any server of ours. The OAuth scope we use is `drive.file` only — a non-sensitive scope that grants access only to backup files the app itself created; we cannot see or read any other files in your Drive. The backup never reaches us; we cannot access it.


We do not share your data with any party for advertising or analytics, and we **never** sell your data.


## 6. Data Security


App data is protected by different mechanisms depending on the platform:


- **Android:** The database is encrypted with SQLCipher (AES-256); the decryption key is kept in your device's secure hardware store (Android Keystore) and is bound to the device — it cannot be transferred to another device.

- **iOS:** App data is stored in the app's sandbox and protected by iOS Data Protection (`NSFileProtectionCompleteUntilFirstUserAuthentication`). Data is accessible while your device is unlocked after first boot; other apps cannot access the sandbox.

- On both platforms, app data is kept inside the app's sandbox; other apps cannot access it.


**Photos:** Stored as plain JPEG files in the app's private directory; not additionally encrypted. The iOS sandbox and Data Protection (Android: app sandbox) provide the baseline protection.


**Backups (important exception):** The local app database is protected by the platform-specific methods above; however, exported or Google Drive-uploaded backup files are **not additionally encrypted** — they are integrity-signed (HMAC) and their content is in a readable format. It is your responsibility to keep your backup files secure and to store them only in places you trust.


## 7. Data Retention and Deletion


Your data stays on your device until you delete it. You can delete trips/places from within the app at any time, or uninstall the app to permanently erase all local data on the device. Backups you uploaded to Google Drive remain there until you delete them from your own Drive.


## 8. Your Rights (KVKK / GDPR)


Because all your data is on your device and under your control, you exercise your rights of access, rectification, and erasure directly through the app. For any question or request, you can contact us at **infosasegames@gmail.com**.


## 9. Permission Revocation


You can revoke location, motion/fitness, photo, and notification permissions at any time from your device's **Settings**. Revoking a permission stops only the feature that depends on it; the rest of the app continues to work.


## 10. Children's Privacy


The app is not designed for children and we do not knowingly collect personal data from children.


## 11. Permissions


- **Location (When-In-Use):** Trip route recording — only when you start a trip; continues in the background during an active trip (see Section 3).

- **Physical activity / step counter:** To count your steps (optional).

- **Notifications:** For active trip indicators and badge/city notifications (optional).

- **Photo picker:** To receive only the photo you select — broad media library permission is not requested (see Section 4).


## 12. Changes


We may update this policy from time to time. For significant changes we will revise the "Last updated" date and notify you in-app where appropriate.