Privacy policy
No accounts.
Nothing collected.
TrainTrack is a small, independent app that watches NJ Transit's departure boards for trains you choose to track. It has no sign-in, no analytics, no advertising and no third-party SDKs. This page lists everything the app touches so you can judge for yourself.
What stays on your phone
- Trips you track, starred station pairs, recent stations and your settings. Stored in the app's own storage on your device. Deleting the app deletes them.
- Notifications. Track, boarding and arrival alerts are generated on your phone. TrainTrack has no push server and never sends a notification from the internet.
- Live Activities. The lock-screen and Dynamic Island activity is created and updated on your device only.
Location
While a trip is being tracked and "Background updates" is on, TrainTrack runs a low-power location session (accuracy set to about 3 km). Its only purpose is to keep the app awake so it can check NJ Transit once a minute after you lock your phone. Your position is never displayed, stored, logged or sent anywhere, and the session ends as soon as no trip is being tracked. You can turn "Background updates" off in the app's settings; alerts will then arrive only while the app is open.
What leaves your phone
- Requests for train data. To show departures, stop lists, timetables and train positions, the app asks the TrainTrack server for them. Those requests contain station codes and train numbers, nothing about you. The server relays them to NJ Transit's RailData API and returns the answer.
- Your IP address reaches that server, as with any internet request. It is used only for rate limiting and is not stored by TrainTrack. The server runs on Cloudflare, which keeps standard, short-lived request logs under its own privacy policy.
- Share links. When you share a train, the link contains the two station codes, the train numbers and the scheduled departure time. It contains nothing about you or the person you send it to.
If you use your own NJ Transit credentials
An advanced setting lets you bypass the TrainTrack server and use your own NJ Transit developer account. In that case your username and password are sent only to NJ Transit's API to obtain a token, and the token is stored in the iOS Keychain on your device. TrainTrack never sees or stores them anywhere else.
This website
The site is static and sets no cookies. Fonts are loaded from Google Fonts, which receives your IP address in the process. The share-link landing pages contain only the station codes, train numbers and times in the link itself.
Children
TrainTrack is not directed at children under 13 and does not knowingly collect information from anyone.
Changes
If any of this changes, this page and its effective date will be updated before the change takes effect.
Contact
Questions about privacy: email support.