Privacy Policy

Effective 2026-08-14

This policy explains what information Triptable collects, why we collect it, how long we keep it, and the choices you have.

1. What we collect and why

Account
Your email address, a password stored in a form that cannot be reversed, and a username. If you sign in with a social account, we receive that provider's account identifier, your email address, your display name, and your profile picture.
Email verification
Your email address and a verification code, stored in a form that cannot be reversed. It is deleted once used, or ten minutes after it is issued.
Your trips
Whatever you enter or upload — trip names and dates, item titles, times and time zones, place names, addresses and coordinates, flight details, and photos you attach.
Operations
Access logs such as time of access, IP address, and browser type. Used only to keep the service running and to prevent abuse.

We do not collect your device location. Coordinates shown on the map belong to places you chose yourself.

We do not use advertising identifiers, third-party analytics, or tracking tools of any kind.

The service is not directed to children under the age at which consent is required in their country.

2. How long we keep it

We keep your information until you close your account, and delete it without undue delay once you ask us to.

We keep it longer only where the law requires us to, or where access logs are needed to investigate abuse — in that case, for three months.

3. Sharing

We do not sell your information and we do not share it with third parties, except where the law requires it.

If you turn on a share link, anyone who has that link can view that trip. That is a choice you make, and you can turn it off at any time.

4. Processors

We use the following provider to run the service. It processes data on our instructions and for no other purpose.

Cloudflare, Inc.
Servers, database, file storage, and delivery of verification emails. Data is stored in Asia-Pacific data centres.

5. External services

To search for places, draw maps, look up flights, and find photographs of places, we call external services. Only the value needed for that lookup — a search term, a flight number — is sent. Nothing that identifies you is sent with it.

If you sign in with a social account, that provider's own privacy policy also applies to you.

6. Your rights

You may ask us to show you the information we hold about you, correct it, delete it, or stop processing it. You may also ask for a copy in a portable form.

Some of it you can change or delete yourself, on screen. For anything else, write to the address in section 9 and we will act without undue delay.

7. How we protect it

  • Passwords are stored using one-way hashing and cannot be recovered, by us or anyone else.
  • Verification codes are never stored in the clear, and are limited by both time and number of attempts.
  • All traffic between you and the service is encrypted (HTTPS).
  • Access to personal information is limited to the smallest number of people who need it.

8. Cookies

We use cookies only to run the service. None of them are for advertising or behavioural tracking.

Session
Keeps you signed in. Removed when you sign out.
Social sign-in
Protects the sign-in exchange from tampering. Removed after ten minutes.
Preferences
Remembers your language and distance unit.

You can refuse cookies in your browser settings. If you refuse the session cookie, you will not be able to sign in.

9. Contact

For anything about this policy or your information, write to contact@triptable.app.

10. Changes

If this policy changes, we will post the new version here at least seven days before it takes effect — thirty days if the change materially affects your rights.

Terms of Service·Privacy Policy·contact@triptable.app

© 2026 Triptable