Privacy Policy
Last Updated: 9 September 2026
Overview
This policy explains what GetDriving collects, why, and what you can do about it. It covers the GetDriving iOS app and the getdrivingapp.com website.
GetDriving is operated from Ireland and is the data controller for the information described here. We are not affiliated with the RSA.
What we collect
To send you slot alerts:
- Your notification token for this device
- The test centres you have chosen to be alerted about
To book a test for you, additionally:
- Your email address
- The MyGovID or MyRoadSafety sign-in you use to connect your RSA account, encrypted the moment it reaches us
- Which of the two logins your account uses
- The six-digit verification codes the RSA sends you by SMS, and the text of the message carrying them, when you have set up Automatic Login
- The session token and account identifiers the RSA issues when we sign in as you
- Your search preferences: the test centres and the date range you want
- The details of tests we book for you
- Records of sign-in and booking attempts, which we keep to diagnose failures
We also record whether you have paid and whether your purchase is still active.
We do not collect your location, your contacts, your photos, or your browsing outside the app.
Connecting your RSA account
Booking a test means signing in to the RSA as you, so connecting your account gives our sign-in what it needs to do that. It is encrypted the moment it reaches us and is unreadable in our database. Nothing but the automated sign-in can decrypt it, and it does so only for the instant it is signing you in to the RSA. It is never displayed anywhere in the app or our tools, never sent to any third party, and erased the moment you disconnect your account.
Your SMS verification codes
This is the most sensitive thing we handle, so it is worth being precise about it.
The RSA texts a six-digit code every time an account signs in. If you set up Automatic Login, you install an iOS Shortcut that runs when a message arrives from the RSA and sends that message to the app, which stores the code so a sign-in already in progress can complete.
The Shortcut is created by you, runs on your device under your control, and can be deleted at any time from the Shortcuts app. It sends only the message that triggered it. We do not have access to your messages, we cannot read your inbox, and iOS does not permit us to.
We keep the code and the message text only as long as needed to complete sign-ins and diagnose failures, and you can delete them with the rest of your data.
Why we use it
- To provide the service you have paid for: signing in to your RSA account, searching for slots, and booking a test. This is necessary to perform our contract with you.
- To send you the notifications you have asked for. You can turn these off at any time.
- To keep records of bookings and payments, which we need for accounting and to handle refund requests.
- To diagnose failures and improve reliability. We have a legitimate interest in the service working.
We do not sell your data, and we do not use it for advertising to you.
Who else processes it
We use the following providers, who process data on our behalf:
- Google Firebase, which stores our database and runs our server functions
- Apple and RevenueCat, for the notifications subscription. Apple takes the payment; RevenueCat tells us whether the subscription is still active
- Stripe, for automatic booking, wherever you bought it. Stripe receives your payment details directly; we never see your card number
- Expo, which delivers push notifications to your device
- Appstack, which measures which adverts lead to purchases. Where you have an email address on your account, it is sent in a form Appstack encrypts before matching
- Infrastructure and network providers that host the browsers in which we sign in to the RSA on your behalf
We sign in to the RSA’s own website as you. The RSA receives whatever it would receive had you signed in yourself.
How long we keep it
Your account, preferences and booking history are kept while your account exists. What you gave us to connect your RSA account is erased as soon as you disconnect it. Diagnostic records of sign-in and booking attempts are kept for up to 12 months. Payment records are kept for as long as tax law requires, which in Ireland is 6 years.
Your rights
Under the GDPR you can ask us to give you a copy of your data, correct it, delete it, restrict or object to how we use it, or send it to another provider. Email info@getdrivingapp.com and we will respond within one month.
You can also complain to the Data Protection Commission, the Irish supervisory authority, at dataprotection.ie.
Deleting your data
You can disconnect your RSA account in the app at any time, which erases it. To delete your account and everything we hold, email info@getdrivingapp.com from the address on your account and we will erase it.
Deleting the app from your phone stops notifications but does not by itself delete the data on our servers, so please email us if that is what you want.
Deleting your GetDriving data does not cancel any driving test already booked. That remains in your own RSA account and must be cancelled with the RSA.
Children
GetDriving is not for children. You must be at least 16 to use it. We do not knowingly collect data from anyone under 16, and will delete it if we discover we have.
Test centre availability from the RSA
The list of available slots is gathered from the RSA’s own booking system by an automated process. It is the same availability the RSA shows, and we do not alter it. Availability changes constantly and a slot shown may already be gone.
Changes to this policy
We will update this page when the service changes, and the date at the top shows when it was last revised. Where a change materially affects you, we will tell you in the app.
Contact
Privacy questions, or any request about your data: info@getdrivingapp.com
© 2026 GetDriving. All rights reserved.