Privacy Policy — Segment Times
Last updated: 2026-05-29
Segment Times recomputes accurate Strava segment-effort times for the signed-in user.
This policy explains what data the app accesses and how it is handled.
What we access
When you connect your Strava account, the app requests read access to your Strava activities
(read, activity:read_all). With your access token it reads:
- your list of activities (name, date, distance, type);
- a selected activity's segment efforts; and
- that activity's GPS streams (latitude/longitude and time) needed to recompute times.
The app only ever accesses your own Strava data.
How your data is used
GPS streams and segment data are used on your device to compute accurate
segment times. Results are displayed to you and are not transmitted anywhere.
Storage
- OAuth tokens (access token, refresh token, expiry) are stored in the app's
private, sandboxed storage on your device.
- Activity and segment data are processed in memory for display and are not
persisted to our servers or shared with third parties.
The token broker
The app uses a small backend service ("the broker") solely to exchange and refresh OAuth tokens
with Strava (this keeps the app's Strava client secret off your device). The broker does
not store your tokens, activities, or GPS data; it passes the token response back
to the app and retains nothing.
Third parties
- Strava: data is retrieved from Strava under the permissions you grant.
Strava's own privacy policy governs your Strava account:
strava.com/legal/privacy.
- The app contains no analytics, advertising, or tracking SDKs.
Your choices
- You can disconnect at any time using Log out in the app, which deletes the
stored tokens.
- You can revoke the app's access from your Strava account settings:
strava.com/settings/apps.
Contact
Questions about this policy: tobias.hermann@jaumo.com