Most mobile apps have capabilities to monitor users’ location and collect their data. Your app may want to monitor or collect location data for many reasons, such as delivering a personalised experience. However, there is increasing user concern about how businesses collect and use their location data.

If you are an app developer or an owner of an app business, you must ensure your mobile app complies with privacy requirements. This article explains the main privacy considerations for apps that monitor user location. 

What Type of Apps Monitor User Location?

Every app may have a reason to monitor and collect location data. However, the most popular types of apps that rely on user location data include:

  • map-based apps. For example, Google Maps monitors location data to help you choose a local restaurant nearby;
  • transport apps. For example, Uber requests your location so that their drivers know where to find and pick you up.  
  • social networking apps. For example, Facebook monitor location data so they tailor advertising based on your location;
  • dating apps. For example, Tinder relies on your location data to match you with other users who are within the same geographical area; and
  • fitness apps. For example, the Nike+ Run Club app monitors your location so it can measure how you are meeting your fitness goals.

The list is not exhaustive. However, if location data is at the centre of your app’s operation, you should be particularly mindful of your legal and commercial requirements.  

What Are My Legal Requirements For Monitoring Location Data?

As a mobile app that monitors user location, you may have to comply with the federal Privacy Act. The law regulates how businesses handle personal information, which is defined as information about an identified individual or information that could identify someone. That may include the monitoring of user location and user activity patterns. In addition, the law outlines the need for businesses to have a privacy policy.

However, the law only applies to businesses with an annual turnover of at least $3 million. Some exceptions exist, including if your business is:

  • a health service provider;
  • trading in personal information (such as buying or selling email lists to other businesses); or
  • a contractor providing services under a Commonwealth contract.

If you are just starting up, it is unlikely you have to comply with the legal requirement. However, many small businesses adopt the legal requirements as it provides a useful framework on how to best protect the personal information of their customers. Showing your customers that you care about their privacy can also help create trust within your brand.

What Are My Commercial Requirements For Monitoring Data?

However, as a mobile app, you will most likely to be selling your app on an app marketplace such as the Apple App Store or Google Play. Both marketplaces insist that developers, regardless of business size, must have a privacy policy with their app. Furthermore, both marketplaces have guidelines on how to manage the use of location data.

For example, under Apple Store’s guidelines, apps should only use location services when they are “directly relevant to the features and services provided by the app”.

Therefore, even if you are not legally required, you will have to comply with your requirements.

Best Practice Checklist

1. Create a Privacy Policy

Your privacy policy should include the following key terms:

  • what kind of personal information you collect, including location data;
  • the purposes for which you collect information;
  • when you disclose information to third parties;
  • how app users can control their information, such as corrections, consent, and unsubscribing;
  • how you store information; and
  • cookies.

2. Collect Location Data Only When Required

The Privacy Act says that you should only collect information when it is required or relevant to deliver your app.

For example, you may maintain location tracking if the app’s main functionality. Strava is a fitness app for athletes that relies on tracking users’ activity as they cycle or run. 

Other apps may only use location services to enter users’ location during the registration process, so they can tailor their services to your location. At all times, you should turn off location monitoring unless the user consents. The App Store also requires that you list reasons why you collect your location data in your app.

Most devices allow you to turn your location services on and off. You may also wish to add a privacy dashboard within your app for users to select when they consent to the collection of certain data, including location data.

3. Obtain Consent From Your App Users

It is best practice to notify app users that you are collecting certain information, including location data, and to receive consent to collect it. Users usually access apps intermittently so you should try to remind them when you will be collecting location data.

For example, you may create an alert when location data is collected for the first time or is used for a particular app functionality. The alert could include a ‘location’ logo that users can easily recognise.

The Apple Store also provides human userface guidelines on how to obtain consent from your users that complies with privacy but does not intrude on their experience of the app.

Key Takeaways

If you have less than $3 million in turnover, you are not legally required to have a privacy policy for an app that monitors user’ location. However, if you want your app to be a commercial success, you will need to comply with privacy requirements on the App Store or Google Play. You should:

  • always include a privacy policy that explains why and how you monitor location data;
  • ensure you collect location data that is necessary for the function of the app; and
  • request consent from your users before monitoring their location.

If you have any questions or need help with your app’s privacy policy, get in touch with LegalVision’s IT lawyers on 1300 544 755 or fill out the form on this page.

Nathalie King
If you would like further information on any of the topics mentioned in this article, please get in touch using the form on this page.
If you would like to receive a free fixed-fee quote for a legal matter, please get in touch using the form on this page.

Privacy Policy Snapshot

We collect and store information about you. Let us explain why we do this.

What information do you collect?

We collect a range of data about you, including your contact details, legal issues and data on how you use our website.

How do you collect information?

We collect information over the phone, by email and through our website.

What do you do with this information?

We store and use your information to deliver you better legal services. This mostly involves communicating with you, marketing to you and occasionally sharing your information with our partners.

How do I contact you?

You can always see what data you’ve stored with us.

Questions, comments or complaints? Reach out on 1300 544 755 or email us at info@legalvision.com.au

View Privacy Policy