Privacy Policy
Last updated: June 2026
1. What we collect
We collect your name, email address, and profile photo when you create an account. When you make a booking, we also collect payment information (processed securely by Stripe — we never store card numbers). We collect usage data such as pages visited and trips viewed to improve the product.
2. How we use your data
Your data is used to operate your account, process bookings, send trip updates and confirmation emails, and improve our product. We do not sell your data to third parties. We may share anonymised, aggregated data for analytics purposes.
3. Cookies
We use essential cookies to keep you logged in and remember your preferences. We also use analytics cookies (via anonymised tools) to understand how people use PolyTrip. You can manage cookie preferences in your browser settings.
4. Data retention
We retain your account data for as long as your account is active. If you delete your account, your personal data is removed within 30 days. Booking records may be retained for legal and financial compliance purposes.
5. Your rights
You have the right to access, correct, or delete your personal data at any time. You can do this from your Account Settings page, or by emailing us at privacy@polytrip.com. We will respond within 30 days.
6. Security
All data is encrypted in transit (TLS) and at rest. Payments are handled by Stripe, a PCI-DSS Level 1 certified provider. We use Supabase for database hosting with row-level security policies.
7. Contact
Questions about this policy? Email us at privacy@polytrip.com.