What Offbeat handles
- Authentication identifiers: a pseudonymous public identity and passkey credential data used to authenticate the app. Offbeat does not receive your biometric data or device PIN.
- Profile and activity you provide: a display name, starred sets, manual stage or meeting-point check-ins, group membership, pins and messages.
- Festival data: saved festivals, lineup state and synchronisation metadata needed to keep devices consistent.
- Technical data: peer and protocol identifiers needed to route and verify synchronisation messages.
How data is used
Data is used only to provide authentication, festival discovery, schedules, groups, chat, offline storage and synchronisation. Offbeat does not sell personal data, serve behavioural advertising or track activity across other companies’ apps and websites.
Local-first and peer-to-peer processing
Festival and social state is stored in the app’s local database. When synchronisation is enabled, data can be sent directly to peers or relayed through Offbeat’s Cloudflare service. Public festival messages can be replicated to other participants. Private group payloads are encrypted before relay; the relay does not receive the group key.
Camera, nearby devices and location
QR camera frames are processed on the device and are not retained. Bluetooth and local-network capabilities are used to discover or communicate with nearby peers when available. Offbeat does not request GPS or device location permission; check-ins are labels selected or entered by you.
Retention and control
Local private data remains until you leave a group, log out, clear the app’s data or uninstall it. Authentication credentials and relayed synchronisation records can remain on Offbeat infrastructure for service operation and abuse prevention. Public messages and data already replicated to peers cannot always be recalled from every device.
Service providers
Offbeat uses Cloudflare for API, relay and storage infrastructure, Apple and Google platform services for passkeys and app distribution, and public festival-data sources when you request an import.
Children
Offbeat is intended for festival attendees and is not directed to children under 13.
Questions or requests
Use the support page or open a GitHub issue. Do not post passkeys, group keys or other secrets in a public issue.
Changes
Material changes will be published on this page with a revised effective date.