Privacy
The short version: no server, no accounts, no ads, and the only thing measured is anonymous, cookieless usage counts.
No server, no accounts, no ads
The Run List is a static web app. It has no backend server, no user accounts, and no advertising. Your Spotify account, tokens, and playlists never touch a server of ours — because there isn't one.
What stays on your device
- Your Spotify Client ID and sign-in tokens
- Your settings (pace, distance, theme, playlist preferences)
- Cached playlist and BPM data, to keep the app fast
All of it lives in your browser's local storage on your device. Disconnecting in the app clears the Spotify session; uninstalling or clearing site data removes everything.
Who the app talks to
- Spotify — to read the playlists you select and to save your run playlists. You authorise this yourself on Spotify's own site; the app never sees your password. You can revoke access at any time at spotify.com/account/apps. Song previews use Spotify's own embedded player, so it loads directly from Spotify (subject to Spotify's own privacy policy).
- ReccoBeats — a free music-analysis service, queried with anonymous track IDs (never your identity) to look up song BPM.
That's the complete list.
Analytics
The app and this website use GoatCounter, a privacy-friendly analytics tool, so the developer can see how many people use The Run List. It counts page views and a few anonymous events — the app being opened, installed to a home screen, and connected to Spotify. That's it.
It sets no cookies, stores no personal data, doesn't track you across other sites, and respects your browser's “Do Not Track” setting. It never sees your Spotify account, your playlists, or your identity — just anonymous counts.
This website & hosting
The site and app are static pages served by Netlify. Netlify's infrastructure may keep standard server logs (such as IP addresses) briefly, as virtually all web hosting does.
Questions
Email hello@therunlist.app.