Privacy Policy
Effective date: August 11, 2026
Summary
There are no accounts here, and nothing you do is tied to an identity. What reaches our server depends on which of the three Spick Me products you use, and the difference is worth stating plainly rather than averaging out:
- The phone app is designed to work offline. Journey planning, saved journeys, favourite stations, recent searches, and downloaded timetable files stay on your device unless you choose to sync relevant data to a paired watch. The app connects to the server only to check for and download timetable data, for the optional live-data and train-formation features, and — only when you choose to send it — to deliver feedback.
- The desktop app (macOS, Windows, Linux) works the same way and asks for even less: it has no access to your location at all.
- The web planner at
/plancannot work that way: it has no timetable of its own, so the searches themselves are sent to our server to be answered, and if you ask it to find stops near you, the position your browser reports is sent too. Your settings and recent searches are kept by your own browser and are not sent anywhere.
The server keeps standard operational logs for all of these requests.
Who Is Responsible
Spick Me is a private, non-commercial project operated jointly by Gian Calgeer and Jörg Schenker from Zurich, Switzerland, who are together the controllers for the data processing described in this policy. The processing is governed by the Swiss Federal Act on Data Protection (FADP). For any privacy matter, contact unfreqapp@gmail.com.
The Spick Me server is hosted in Germany by netcup. Data described in this policy that reaches the server — timetable download requests, server logs, and feedback you send — is therefore stored in Germany, a country whose data protection legislation is recognised by Switzerland as providing an adequate level of protection.
Information The Phone App Uses
- Location, optional: if you grant location permission, the app uses your device's last known location to suggest nearby public transport stops. Location is processed on your device against the downloaded timetable. The app does not send your location to the Spick Me server.
- Journey and station data: searches, saved journeys, favourite stations, recent searches, and downloaded timetable files are stored locally in the app's private storage.
- Watch sync data, optional: when a paired Wear OS watch is used, the phone app can send saved journeys and nearby departure details to the watch using Google Play services Wearable Data Layer.
- Timetable download requests: when the app checks for updates or downloads a timetable, the server receives the network request needed to provide `index.json` and `.unfreq` timetable files.
The Desktop App
The desktop app for macOS, Windows and Linux downloads a timetable and then does the work on your own computer. It asks for no permissions, and it has no access to your location by any means — not the operating system's, and not an estimate from your IP address. Its "nearby departures" view centres on a station you pick yourself, and the coordinates it uses to find neighbouring stops come out of the timetable file you downloaded.
Searches are computed on your computer and are never sent anywhere. What the desktop app does send:
- A list of available timetables, requested from our server when the app starts, so it can tell you whether a newer one exists. This is a plain request for a file listing; it carries nothing about you beyond the request itself. Downloading a timetable is then your choice.
- Live delays, only if you switch them on. This is off by default. With it on, the app asks the server about the specific services shown on screen — not about you, and not about your search.
- Train formation, only when you open the coach view for a service, and only while live data is switched on. That request names the train and the day.
- Feedback, only when you send it: your message, an optional subject and email address, and — so a report can be acted on — which part of the app it came from, the app version, the platform (macOS, Windows or Linux), the operating system, and the time. Any screenshots you attach yourself go with it. Nothing is sent automatically, and there is no crash or usage reporting of any kind.
Everything else stays on your computer: downloaded timetables, your settings, saved journeys, favourites and recent searches. They live in a folder in your user profile — %APPDATA%\spickme on Windows, ~/.local/share/spickme on Linux and macOS — and deleting that folder removes all of it. There are no accounts, no analytics, and no tracking.
The Web Planner
The planner in your browser holds no timetable, so it asks the server the questions the app answers on your phone. While you use it, the following is sent to our server:
- Your search: the departure and destination stop, the date and time you asked about, and whether you asked to depart or to arrive by then. This is what the server needs in order to compute a connection at all.
- What you type into a stop field, as you type it, so the server can suggest matching stops.
- Your position, only if you ask for it. Selecting "near me" makes your browser ask for permission; if you grant it, the coordinates it returns are sent to the server to find the closest stops. Decline and everything else keeps working. Your browser is what asks, and you can withdraw the permission there at any time.
- The station you open a departure board for, to fill that board.
- Live delays and train formation: the identifiers of the specific services shown, so the server can look up their current delays and, if you open the panel, which coaches are running.
These requests are answered and the answers are not kept: no search, position, suggestion query or departure board is written to a database, and none of it is tied to an identity, because there is no account to tie it to. What remains is the ordinary server log described below, which records that a request arrived and from which IP address — not what was in it.
What The Web Planner Keeps In Your Browser
To be useful on a second visit the planner stores a small amount of data in your browser's local storage, on your device. This is not sent to us and we cannot read it:
- your recent searches, and stops you mark as favourites;
- your home and work stops, if you set them;
- journeys you save;
- your language and light/dark preference.
These are functional: they exist to do what you asked the planner to do, and there is no analytics, advertising, tracking or profiling storage of any kind — no third-party scripts run on the page at all. Under Swiss law (Art. 45c of the Telecommunications Act) we tell you this is happening and you may refuse it: block or clear site data for this site in your browser settings, or use a private window. The planner then simply forgets you between visits and otherwise works normally.
Feedback You Send
The app includes an optional feedback form. If you choose to send feedback, the following is transmitted to and stored on the Spick Me server:
- Your message, plus an optional subject and an optional email address if you fill them in. Provide an email address only if you would like a reply.
- Technical context added by the app: which screen the feedback was sent from, the app version, the platform (Android), the Android version and SDK level, the device manufacturer and model, and the time of submission.
This information is used solely to understand and act on your feedback, improve the app, and reply to you if you provided an email address. It is not used for advertising or profiling. Feedback is sent only when you tap Send — never automatically. The feedback database does not store your IP address; the network request itself appears in the standard server logs described below, like any other request.
Server Logs
The Spick Me timetable server uses nginx and writes standard access and error logs. These logs can include IP address, request time, requested path, HTTP status, bytes sent, referrer, user agent, and error details. They are used to operate the service, troubleshoot downloads, prevent abuse, and keep the service secure.
Two further logs are written purely to count things, and each carries less than the standard log above, not more: one records a timestamp, a status and a content type for every request, so the number of requests and pages per day can be shown; the other records a timestamp, a status and the file name for downloads of the app, so we can see how often each platform's release is downloaded. Neither contains an IP address, a user agent or a referrer, and neither can be tied to a person.
Server logs are not used to profile users, are not sold, and are not used for advertising.
How Information Is Shared
Spick Me does not sell personal information.
The phone and desktop apps do not send your searches, saved journeys, favourites, recent searches, or location to the Spick Me timetable server. The web planner necessarily does send searches, and sends your position if you ask it to find nearby stops — see "The Web Planner" above; neither is stored afterwards.
Feedback you send is stored on the Spick Me server, is accessible only to the project maintainers, and is not shared with anyone else.
If you use watch features, relevant journey or nearby departure data is shared from your phone to your paired watch through Google Play services. Google Play services is provided by Google and may process data as described in Google's privacy policy.
Retention And Deletion
Local app data remains on your device until you delete it in the app where controls are available, clear the app's storage, or uninstall the app. You can revoke location permission at any time in Android settings; the desktop app never asks for one. On the desktop, deleting the data folder named under "The Desktop App" removes everything the app keeps.
What the web planner keeps in your browser stays there until you clear site data for this site, or use a private window that discards it when you close it. Location permission for the site is granted and withdrawn in your browser, not by us.
Server logs are retained only for operational and security purposes and are deleted or rotated according to the server deployment's logging configuration. To request deletion of server log entries that may relate to your timetable download requests, contact the project with the approximate date, time, and IP address of the request.
Feedback submissions are kept for as long as they are needed to act on the feedback and improve the app, and are deleted once they no longer serve that purpose. To have a feedback entry deleted earlier, contact the address below with the approximate submission date and, if you provided one, the email address you used — the entry will be deleted.
Security
Timetable downloads and feedback submissions are made over HTTPS from and to `https://spickme.ch`. Downloaded timetable files are verified against checksums advertised by the server before they are installed. Local app data is stored in Android app-private storage. Stored feedback is accessible only through an authenticated, rate-limited administration interface.
Children
Spick Me is not directed to children under 13. The app does not knowingly collect personal information from children.
Changes
This policy may be updated when the app's data practices change. The effective date at the top of this page will be updated when changes are published.
Contact
For privacy questions or deletion requests, contact the project at unfreqapp@gmail.com.
This policy applies to the Spick Me Android and Wear OS apps, the Spick Me desktop app for macOS, Windows and Linux, the Spick Me web planner, the Spick Me timetable download service, the live-data and train-formation services, and the Spick Me feedback service. See also the Terms of Use and the Legal Notice.