Localmoney is built around being somewhere. That means location — so this policy is specific about what your phone sends, what we check, and what we throw away. The short version: we verify that you are inside a business, then discard where you were. We never keep a record of your movements.
Localmoney is operated by BMC SAASY TECH LTD (company number 12454158; registered office Flat 338, 372 Old Street, London, EC1V 9LT). For the personal data described here we are the data controller under UK GDPR.
When you check in at an Earn Spot, your browser sends us your coordinates. We use them for one thing: to test whether you are inside that business's geofence. That test returns yes or no, and then your coordinates are discarded — they are never written to our database.
While a visit is open, your phone re-checks every few minutes so we can count how long you have been there. Each check works the same way: verify, then discard. What we store about a visit is the Earn Spot, how many minutes have accrued, and whether it converted into an unlock. There is no location history, no trail, and no map of where you have been.
Location is only ever read when you actively start or continue a check-in. Localmoney does not track you in the background, and closing the page ends it.
GPS is imprecise indoors — often by 10 to 20 metres — and it is wrong in a consistent direction at any given doorway, because signals bounce off nearby buildings. To stop that wrongly refusing genuine customers, we keep anonymous statistics about how far off fixes tend to be at each Earn Spot.
These records are anonymous, not merely pseudonymous, and are designed so that they cannot be traced to anyone. Each record contains only:
There is no identifier of any kind attached: no name, email, account, device, IP address or session. Records cannot be linked to each other, so they cannot show that the same person visited twice. Because they identify nobody, they fall outside UK GDPR (Recital 26) — but we describe them here because you are entitled to know they exist.
We only ever publish or act on these figures in aggregate, and only once a spot has enough visits that no individual could stand out.
Residents and businesses are treated differently, so they are described separately.
If you are a resident unlocking access
We ask for your email address, and we do not keep it. What remains in our database is a one-way hash — a fingerprint that cannot be turned back into your address — which is all we need to count your unlocks and stop them being shared. The address itself is passed on once, to switch on your agent, and is fingerprinted there too, so it is never held in readable form (see “Who we share it with” below). No payment is involved in unlocking, so your details never reach a payment provider at all.
If you run a business with an Earn Spot
This one is a normal business relationship, so we keep normal business records: your business name, address, contact email and the area you place on the map. Payment is handled by Stripe, who hold your billing email and card details under their own security and card-industry compliance — we never see your card details. Your contact email is stored here in readable form, because we need to be able to reach you about your own spot.
The agent software you unlock is provided by a separate company, INTENT. To switch on your agent, we tell it which account to activate and for how long — which means your email address is passed to INTENT and immediately fingerprinted at the other end. It converts the address to the same kind of one-way hash we use and keeps only that, so neither of us ends up holding your address in readable form. The address is used to find you and then it is gone.
(We send the address itself rather than the fingerprint because the fingerprint has to be calculated the same way on both sides to match your account, and the agent's provider does that calculation itself.)
Along with it we send when your access should expire and which Earn Spot earned it, so the unlock can be attributed to the business that gave it to you. Your coordinates are never sent — not to the agent's provider, not to anyone — and neither is how long you stayed.
The agent's provider is a separate controller for what it does with your agent, under its own privacy policy and terms — it is not acting on Localmoney's instructions.
Stripe handles business subscriptions and holds the billing email and card details for those payments — residents unlocking access never go near it. Stripe and our hosting providers are our processors, acting only on our instructions.
We do not sell your data, and we share your location with nobody — not the agent's provider, and not the businesses themselves. A venue sees that someone checked in, never who, and never where you were standing.
Coordinates: never stored, at any point, for anyone. Residents' email addresses: never stored — only the hash. Visit records and unlocks are kept while your access is live and for a reasonable period afterwards for support and fraud prevention, then deleted or anonymised. Anonymous accuracy statistics contain no personal data and are kept while an Earn Spot is active.
Business records are kept for as long as the Earn Spot is live and afterwards to meet our legal, tax and accounting obligations. Stripe retains payment records under its own retention rules and legal duties.
Under UK GDPR you can ask us to access, correct, delete or restrict your personal data, object to certain processing, or request portability. If you are a resident, we store your email only as a hash, so we will need you to tell us the address before we can find the matching record — that is a consequence of not keeping it, not an obstacle. Email support@intent.farm and we will help. You can also complain to the Information Commissioner's Office.
You can withdraw location permission at any time in your browser settings. Check-ins will stop working, but nothing else is affected.
Privacy questions: support@intent.farm. See also our Terms.
← Back to localmoney.org · Privacy · Terms · Cookies · Cancellations · Security · Materials