Last updated: August 25, 2026. Written in English, not legalese.
We host your ride telemetry on our Cloudflare account. We do not analyze it, sell it, share it, or feed it to any AI. The operator can technically read it (someone has to run the database); the coaching happens on your own Claude, which we are not a party to. You can delete everything with one call.
The design goal is data sovereignty: capture and processing on your device, storage you can delete, analysis on an AI you control. Today the storage is hosted by us; self-hosting is the intended end state, not yet available. Everything below describes what is true now.
Heart rate, HRV metrics (RMSSD, SDNN, pNN50), power, cadence, speed, GPS coordinates, elevation, and accelerometer data from your Polar H10. All of this is captured and initially processed on your Karoo head unit. A crash detector runs on-device; it currently sets a flag and does not send an alert anywhere.
Your telemetry is stored in a Cloudflare D1 database on Northwoods Sentinel LLC's Cloudflare account, keyed to your rider ID. It is kept until you delete it; there is no automatic expiry today, and there are no tiers.
Running the backend on your own Cloudflare account is the intended end state and is not yet documented; the backend source is currently a private repository. When that changes, this page will say so.
Coaching works by you copying a ride's markdown from your dashboard and pasting it into your own Claude. That conversation happens between you and Anthropic. We are not a party to it and do not see your prompts or its answers.
Almost nothing.
That's the complete list.
This is the more important list.
We don't use cookies. Not first-party, not third-party, not "strictly necessary" cookies that somehow track you anyway. The site works without them. The extension works without them. There is no cookie banner because there are no cookies. One thing that is stored: the coaching page remembers your rider ID in your own browser's local storage so you don't retype it; it never leaves your browser.
We don't share your data with third parties because we don't have your data to share. The architecture makes this a structural guarantee, not a policy promise.
The only third parties are Cloudflare (hosting) and Anthropic (your own Claude, which you use directly). Neither receives anything from us about you beyond what hosting requires.
Your data stays until you delete it. Deleting your account (an authenticated call with your rider key, or an email to us) removes every telemetry row for your rider ID and revokes the key.
To delete your account and any associated email: email robert.chuvala@gmail.com. We'll confirm deletion within 48 hours.
veloVigil is not directed at anyone under 13. We don't knowingly collect information from children. If you're a parent and believe your child is using veloVigil, contact us and we'll address it.
If we change this policy, we'll update the date at the top and post the changes here. For material changes (like if we ever started collecting data we don't currently collect), we'll notify users via email if we have their address.
The structural guarantee doesn't change: we built the system so your data stays yours. That's an architectural decision, not a policy decision. You can't policy-update your way out of an architecture.
Questions about privacy, data, or anything else:
Northwoods Sentinel LLC, Wisconsin, USA.