Last updated: August 2026
Roadworthy is built around your own garage, on your own device. This policy explains what data the app handles and where it goes.
Every vehicle, maintenance record, document, and reading you add is stored locally on your device. If you turn on iCloud sync, that same data syncs across your own devices through your private iCloud account — handled entirely by Apple, under Apple's terms. Roadworthy has no servers of its own and never sees this data.
If you invite someone to share a garage, the shared vehicles, maintenance history, and documents sync between your devices and theirs through Apple's CloudKit sharing — again, within Apple's infrastructure, not ours. Only people you explicitly invite can see a shared garage.
To check for open recalls, Roadworthy sends your vehicle's year, make, and model to the National Highway Traffic Safety Administration's public recalls API. No other information, including your VIN, is included in that request.
If you tap "Decode VIN" while adding or editing a vehicle, Roadworthy sends that VIN to the National Highway Traffic Safety Administration's public vPIC decoding API to look up the make, model, year, body type, fuel type, and trim. This only happens when you explicitly tap that button — your VIN is never sent automatically or for any other purpose.
Receipt scanning (Pro) runs on your device using Apple's on-device text recognition. Scanned images and extracted text are never uploaded anywhere.
Maintenance reminders are scheduled and delivered entirely on your device as local notifications.
No accounts, no analytics, no advertising, no third-party tracking SDKs. Nothing you enter is sold or shared.
Because Roadworthy has no servers, there's nothing for us to expose, correct, or delete remotely. Deleting the app removes its local data from your device; data synced to iCloud can be managed or deleted from your device's iCloud settings.
Questions about this policy? [email protected]