Last updated: August 7, 2026
Thoosie ("we", "us", "our") operates the Thoosie mobile application. This policy explains how we collect, use, and protect your information.
When you earn a credit, an NFT (non-fungible token) may be minted on the XRP Ledger as a digital collectible. The associated card image is stored permanently on Arweave. Blockchain data is immutable and cannot be deleted. Your on-chain identity can be configured as anonymous, username-only, or real name in app settings.
We do not sell your personal information to any third party. We do license aggregate, non-identifying park statistics, including the walking-time figures described in Section 9, to park operators. Those figures describe places and typical durations, not people.
You can delete your account at any time from Settings in the app. This permanently removes all server-side data including your profile, credits, achievements, ride recordings, messages, and social connections. Note that NFT data already written to the blockchain cannot be removed.
Thoosie requires users to verify their date of birth. Users under 13 are not permitted to create accounts in compliance with COPPA.
Where a guardian uses SafeWalk to see where their child is in the park, that location is used only to show the child's position to their guardian. It is never used for analytics, never aggregated into park statistics, and never shared with parks. See Section 9.
All communication between the app and our servers uses HTTPS encryption. We implement server-side validation, content moderation, and access controls to protect your data.
You may request an export of all your data or request account deletion at any time through the app's Settings screen. For questions, contact us at privacy@thoosie.app.
What we derive. When you walk from one ride to another, Thoosie records the walking route between those two rides and how long the walk took. The route between two rides is the same for everyone who walks it, so we keep it as a property of the park rather than a record about you.
It is aggregated, and individual traces are not retained. Walk timings are combined at the moment they reach our servers into a single typical duration for each ride-to-ride path, broken down by hour of the day. We keep that combined statistic. We do not retain individual movement traces, and we do not build a record of where any individual guest went.
Aggregate statistics may inform products we sell to park operators. Parks pay for analytics built from combined figures of this kind, such as the typical time it takes guests to walk between two rides at a given hour.
Guest-level location is never shared with parks. A park never receives your position, your path, or any movement record tied to you or your device. What a park receives describes places and typical durations, not people.
SafeWalk is excluded entirely. Location shared through SafeWalk, which lets a guardian see where their child is in the park, is walled off from analytics. A child's SafeWalk location is never used for walking statistics, never aggregated into an operator product, and never shared with parks.
We may update this policy from time to time. Changes will be posted here with an updated date.
Thoosie © 2026. All rights reserved.