PRIVATE RIDER BETA · REQUEST ACCESS
Common principles · platform-specific data paths

Local and honest — by construction.

OpenLevo exists because your bike generates fascinating data and you should own all of it. Your data never leaves your phone unless you export it, and the app never shows you a number it can't stand behind.

Local-first is a promise, not a feature

No account, no cloud

Pairing, riding, recording, stored routes, and range planning work with zero network. There is no server because there is nothing a server should know about your rides. Your activities are files on your phone and a stored ride can be exported as GPX or FIT.

Privacy by default

Your bike's serial number and your home location are excluded from every share and export unless you explicitly opt in. No analytics SDK ships in the app, and this website carries no trackers, no cookies, no fingerprinting. The same boundary holds for AI: the Studio's assistant connector runs on your Mac, reads only files you name, and never uploads footage or ride data.

Yours to keep

Your rides are files on your phone, not rows in someone else's database. Export a stored ride as GPX or FIT, or save its measured track into Navigate as a route you can follow again. FIT keeps rider power in the standard channel and recorded motor power in its own named developer field. A ride recorded on the Watch reaches your Mac the same way it was recorded: over your own Wi-Fi, code-paired and encrypted, confirmed on the watch, with no cloud in the path.

Private research, with a visible boundary

Owner Research Mode is a clean-room evidence tool—not a secret control panel.

Locked until you open it

Face ID, Touch ID, or the device passcode protects Research Mode. A session exists only after an explicit tap while connected, stays in memory on that iPhone, and disappears when cleared or when the app process ends.

Redacted before capture

Serials, session IVs, firmware and key material, pairing data, advertisements, names, device identifiers, location and opaque log payloads never enter the research record.

You choose the handoff

OpenLevo has no research cloud or remote developer access. The only handoff is the redacted JSON file you deliberately send with the iOS share sheet; its replay path is offline and cannot contact a bike.

What OpenLevo will never do — and why

These are firm commitments, guarded by automated tests. They will not be re-opened.

Speed derestriction, in any form

No slider, no hidden gesture, no "debug menu". Removing the assist cutoff legally reclassifies your bike as an unregistered motor vehicle — illegal on trails and paths, voiding warranty and insurance, and shifting crash liability onto you. It also overruns the motor's thermal duty cycle. Worst of all, it's the single biggest reason e-MTB trail access gets revoked for everyone. No code path in OpenLevo writes the speed-limit parameter — and a regression test proves it on every release.

Undocumented writes to your bike

The protocol is reverse-engineered. Writing unverified parameters risks a configuration your dealer can't recover. The Studio exposes an honest preview editor, but no executable tuning write control; hardware validation and read-back come first.

Firmware installation

Without a validated recovery path, flashing firmware can brick a motor. OpenLevo reads version information and nothing more.

Tuning while you're moving

The rider stays in control. Preview controls cannot execute a write. Any future write requires a standing-still bike and an explicit confirmation showing exactly what changes; nothing may optimize itself mid-descent.

Estimates dressed as measurements

Every number carries its provenance — measured, derived, or estimate. Range projections wear a ~ and a confidence band that widens when the model knows less.

Losing your ride

Recording is phone-authoritative and journaled to disk as it happens. A Bluetooth drop, a locked screen, or even a crash costs you seconds of data, never the ride.

Where the project stands

Honest status, like everything else here.

Today

Riding today The full riding experience — cockpit, navigation, recording, range, Health sync, exports, Watch and lock screen — is built and in rider testing.
One rule for what ships Anything that writes to the bike is validated on real hardware before it ships. No exceptions.
Specialized data path Turbo Levo uses encrypted TCX telemetry, documented TCU1 notification channels, and the ANT+ bridge path. Deeper controller, energy, thermal, ownership, security, and tuning context remains specific to supported Levo hardware.
Bosch data path Smart System uses Bosch's official read-only Live Data Interface for its published speed, cadence, rider and motor power, battery, odometer, and system-status channels. OpenLevo does not write Bosch settings.

Supported bike systems

The core ride stays consistent while each system contributes only the channels it actually provides.

Supported
Specialized Turbo · Levo family
Encrypted TCX telemetry, deeper bike-specific channels, ownership and security context, plus the Turbo Levo tuning workspace.
Supported
Bosch Smart System
Official read-only Live Data Interface telemetry. Core ride, range, jump, history, Wrench, and Video Studio features are shared; bike setting writes are not offered.
Next
Brose Universal Display bikes
The same protocol family the app already speaks. Ships after validation on a real bike.
One rule, every platform Measured before derived, absent before fabricated, and rider data never leaves the phone.