Privacy Policy

tripstant

Your next trip in an instant.

This Privacy Policy (also called our Privacy Notice) explains what personal data tripstant processes, why we process it, how we share it, and which rights you have.

Last updated: 14 September 2026

1. Who we are

The controller responsible for the processing of your personal data is:

7X Experience UG (haftungsbeschränkt)
Im Heimgarten 10
c/o Niels David Siebenborn
60389 Frankfurt am Main
Germany

Email: hello@tripstant.app

A Data Protection Officer has not been appointed. Privacy requests can be sent to the email address above.

2. What data we process

We process the following categories of personal data:

2.1 Account and profile data

  • Email address
  • Name (if provided)
  • Language preference
  • Account credentials (stored in hashed form)
  • Profile settings and preferences

2.2 Trip and planning data

  • Travel dates, destinations, flexibility, number of travellers
  • Free-text prompts and preferences you enter
  • Generated itineraries and trip plans
  • Saved or shared trips
  • Booking references and confirmation details (when you initiate a booking via third-party providers)
  • Passenger or guest information you provide for a booking
  • Communication related to bookings and support

2.4 Technical and usage data

  • Device information (device type, operating system, browser)
  • IP address
  • Log data, crash reports and performance data
  • Approximate location (only if you grant permission)
  • Cookie and similar technology identifiers (see our Cookie Policy)
  • With analytics consent: product events, autocaptured clicks, and masked session recordings via PostHog (EU Cloud). Form fields, including passwords, are masked. We do not send your email address to PostHog.

2.5 Support and communication data

  • Messages you send to our support team
  • Feedback and survey responses

2.6 Payment and billing data

When you purchase a paid plan we process:

  • Billing email and account identifier
  • Subscription tier, status, billing interval, payment channel and trial dates
  • Payment status (succeeded, failed, refunded) and invoice or receipt metadata

Website (tripstant.app): we also store Paddle customer, subscription and transaction identifiers. Card and other payment data is collected by Paddle, our online reseller and Merchant of Record for website checkout. Paddle acts as an independent controller for that payment data. See Paddle’s privacy policy: https://www.paddle.com/legal/privacy

iOS app: Plus is an auto-renewable In-App Purchase. Apple is the seller of record. Apple collects the payment method. We use RevenueCat as a processor to match the App Store receipt to your tripstant account (we receive an App Store / RevenueCat subscriber identifier and entitlement status, not your full card number). See Apple’s privacy policy: https://www.apple.com/legal/privacy/

We do not store full card numbers, CVC codes or bank account numbers on either channel.

2.7 Travel documents (Plus)

If you use the trip document folder we store:

  • Confirmation numbers, URLs and notes you type (available on every plan)
  • Files you upload (passport/ID copies, tickets, hotel vouchers, insurance) — Plus only
  • File metadata (type, size, which trip or itinerary item they belong to)

Uploaded files are stored in a private folder keyed to your account. They are deleted when you delete the trip, or 30 days after the trip end date if you leave them attached, and immediately when you delete your account.

We do not intentionally collect special categories of personal data (e.g. health data, political opinions, religious beliefs) unless you voluntarily include such information in a free-text prompt or uploaded document. In that case we process it only to the extent necessary to provide the requested service.

3. Why we process it (purposes)

We process your data for the following purposes:

  • To create and manage your account
  • To generate personalised travel itineraries using artificial intelligence
  • To search for and display travel options (flights, accommodation, activities) via third-party providers
  • To facilitate bookings with third-party providers
  • To provide customer support
  • To process payments and manage subscriptions (Paddle on the website; Apple / StoreKit / RevenueCat in the iOS app)
  • To ensure the security, stability and improvement of our service
  • To comply with legal obligations
  • With your consent: analytics and (where applicable) marketing communications

We rely on the following legal bases under the GDPR (Art. 6):

PurposeLegal basis
Providing the service & accountContract performance (Art. 6(1)(b))
Payments & subscriptions (Paddle or Apple)Contract performance (Art. 6(1)(b))
Generating itineraries with AIContract performance / Legitimate interest
Facilitating bookingsContract performance (Art. 6(1)(b))
Security & fraud preventionLegitimate interest (Art. 6(1)(f))
Analytics (non-essential)Consent (Art. 6(1)(a))
Marketing communicationsConsent (Art. 6(1)(a))
Legal obligationsLegal obligation (Art. 6(1)(c))

5. AI processing

tripstant uses artificial intelligence to generate travel itineraries and recommendations.

When you submit a planning request, the following data may be sent to AI model providers:

  • Your free-text prompt and travel parameters
  • Selected preferences and constraints

We only send the data necessary to generate the response. We do not use your data to train the underlying foundation models of third-party AI providers unless this is explicitly stated and you have consented where required.

AI providers currently used or planned:
Lovable AI Gateway, currently routing itinerary generation to Google Gemini models. Processing may take place outside the European Economic Area, including in the United States.

You are interacting with an AI system. Outputs may be incomplete, inaccurate or outdated. Always verify critical information (visa requirements, entry rules, safety, prices, availability) independently before making decisions or bookings.

6. Sharing and processors (including third-party travel APIs)

6.1 Core service providers (processors)

We use trusted service providers who process data on our behalf under data processing agreements:

  • Hosting and infrastructure
  • Database and authentication (currently Supabase)
  • Website payments (Paddle, Merchant of Record) — card and payment details are handled by Paddle; we receive confirmation of payment, identifiers and billing status only. Paddle’s privacy policy: https://www.paddle.com/legal/privacy
  • iOS In-App Purchases (Apple as seller of record; RevenueCat as our receipt processor) — we receive entitlement and subscriber identifiers only. Apple’s privacy policy: https://www.apple.com/legal/privacy/
  • Email delivery (Lovable / custom domain `noreply@tripstant.app`)
  • Crash reporting (Sentry) for operational error monitoring
  • Analytics (PostHog, EU Cloud) only with your consent — product events, autocapture, and masked session recordings
  • Customer support tools

A current list of subprocessors is available upon request or will be published at a dedicated page.

6.2 Third-party travel providers (independent controllers or joint controllers)

Important:
tripstant is a technology platform and intermediary. We do not sell travel services ourselves.

When you search for or book flights, accommodation or activities, we transmit the necessary data to third-party providers via their APIs so that they can return offers and process bookings. These providers act as independent controllers (or in some cases joint controllers) of the data they receive.

Categories of third-party providers include:

  • Flight aggregators and inventory providers (e.g. Duffel and similar)
  • Hotel and accommodation suppliers (e.g. RateHawk, Expedia Rapid and similar)
  • Activity and experience providers
  • Mapping and places services (e.g. Google Places / Mapbox)
  • Weather data providers

What this means for you:

  • Prices, availability, cancellation policies and the actual travel contract are determined exclusively by the respective third-party provider.
  • These details can change at any time and are outside the control of tripstant.
  • When you complete a booking, you enter into a contract directly with the third-party provider.
  • The third-party provider’s own privacy policy and terms apply to the booking.

We only share the data that is strictly necessary for the search or booking request.

6.3 Other disclosures

We may disclose data if required by law, to protect our rights, or in connection with a corporate transaction (e.g. merger or acquisition), always in compliance with applicable data protection law.

7. International transfers

Some of our service providers and AI providers process data outside the European Economic Area (EEA).

Where this occurs, we ensure appropriate safeguards are in place, in particular:

  • Standard Contractual Clauses (SCCs) approved by the European Commission
  • Adequacy decisions
  • Other transfer mechanisms permitted under Chapter V GDPR

You can request more information about the specific safeguards by contacting us.

8. Retention

We retain personal data only as long as necessary for the purposes described in this notice:

  • Account data: as long as your account is active + a reasonable period after deletion for legal and security reasons
  • Trip and planning data: until you delete the trip or your account, or longer if required for ongoing bookings or legal claims
  • Travel documents: deleted with the trip, 30 days after the trip end date, or immediately on account deletion
  • Booking-related data: according to statutory retention periods (typically 6–10 years for commercial records)
  • Payment and billing records: according to statutory commercial and tax retention periods (typically 6–10 years)
  • Support messages: generally 2–3 years
  • Technical logs: usually 30–90 days, unless needed longer for security investigations

When you request deletion of your account, we will delete or anonymise the data that is no longer needed, subject to legal retention obligations.

9. Your rights

Under the GDPR you have the following rights:

  • Right of access – obtain confirmation and a copy of your data
  • Right to rectification – correct inaccurate data
  • Right to erasure (“right to be forgotten”)
  • Right to restriction of processing
  • Right to data portability
  • Right to object to processing based on legitimate interests
  • Right to withdraw consent at any time (without affecting the lawfulness of processing before withdrawal)

Access and portability

You can download a machine-readable copy of the personal data tripstant stores about you in Account / Your data. The file is generated and downloaded immediately.

Account deletion

You can delete your account and associated personal data directly in the app (Account / Your data) or by emailing hello@tripstant.app.

Deletion is fulfilled immediately in the app: we erase your auth account, profile, trips, planning data, uploaded travel documents, support tickets, waitlist signups under your email, and collaboration memberships. Website payment records remain with Paddle as Merchant of Record where tax and accounting law requires retention. App Store purchase records remain with Apple. Deleting your tripstant account does not cancel an App Store subscription — cancel Plus in your Apple ID subscription settings. Some booking or commercial records may be retained in anonymised form where we have a legal obligation.

You also have the right to lodge a complaint with a supervisory authority, in particular in the Member State of your habitual residence, place of work or place of the alleged infringement.

10. Changes to this notice

We may update this Privacy Policy from time to time. The “Last updated” date at the top will always reflect the most recent version.

Where changes are material, we will notify you via the app, by email, or by a prominent notice on our website.

Contact

If you have any questions about this Privacy Policy or how we process your data, please contact us at:

hello@tripstant.app