Lorbefor

Privacy Policy

Effective 6 August 2026

This policy explains what information Lorbefor handles, why it is needed, and the choices available to you. Lorbefor helps adults discover and organise local activity spaces.

Public means public. Public profiles, public spaces, public groups, attendance information shown by the app, and the precise map position of a public space may be visible to anyone. Do not publish a home address or information you do not want other people to see.

Information you provide

Information handled automatically

Firebase and ordinary internet services receive technical information needed to operate securely, such as IP address, device or browser information, authentication tokens, request times and error information. Lorbefor stores limited sign-in-link state on your device so an email link can complete safely.

Map requests are sent to OpenStreetMap's tile service, or to Thunderforest using OpenStreetMap data when Thunderforest is configured for the release. The selected provider receives normal network information and the tile coordinates requested by your device. Lorbefor does not request Android device-location permission.

How information is used

Legal reasons for handling information

Where data-protection law applies, Lorbefor handles information to provide the service and carry out these terms, for legitimate interests such as security, abuse prevention and support, with consent where it is requested, and to meet legal obligations. The reason used depends on the information and purpose.

Service providers and sharing

Lorbefor uses Google Firebase for authentication, database, server functions and hosting, and the providers described above for maps. Support email is handled by the services used to route and host the support inbox. These providers process information under their own service and privacy terms. Information is also shared when you deliberately make it public, when necessary to protect people or the service, or when required by law.

Lorbefor does not currently contain advertising, sell personal information, or use Firebase Analytics or Crashlytics.

Storage, security and retention

Network traffic is encrypted in transit. Cloud content is not end-to-end encrypted. Information is retained while it is needed to provide your account and community features. Deleted-account cleanup removes or anonymises in-scope account data and deletes the Firebase Authentication account last. A minimal security marker may remain for about 24 hours to stop an old sign-in token recreating deleted data. Provider backups and records required for security or law may take longer to expire.

Your choices

Your data-protection rights

Depending on where you live and the circumstances, you may have rights to access, correct, delete, restrict or object to the use of your personal information, receive a portable copy, or withdraw consent. These rights can have legal limits. Contact support@lorbefor.com to make a request. If UK data-protection law applies, you may also complain to the Information Commissioner's Office.

Age

Lorbefor's first public release is intended only for people aged 18 or over. It is not directed to children.

Changes and contact

Material changes will be reflected here by a new effective date. Questions, privacy requests and safety concerns can be sent to support@lorbefor.com.