← Tripmaat

Privacy Policy

Last updated: 6 October 2026

Before public launch: the publisher must identify the data controller, add a working privacy contact, set retention/deletion procedures, and review this notice for applicable privacy law.

Who operates Tripmaat

Controller: [Add the publisher's legal name]. Contact: [Add a working privacy contact email].

Information Tripmaat handles

Why and how long

Trip data is used to provide planning, sync, sharing, and requested provider features. Local browser data remains until you clear it or remove the trip. Cloud data remains in the Supabase project until the account operator deletes it; this version does not include an in-app cloud account deletion tool. Attachments and shared trip data are visible to authorized trip members. Configure provider retention and backup rules before launch.

Service providers

Configured cloud and API providers process information under their own terms and privacy policies: Supabase, TfL Open Data, Île-de-France Mobilités PRIM, Entur, transport.rest, OpenStreetMap Nominatim, Google Maps, and OpenAI. Review them before enabling these services.

Your choices and requests

You can browse Tripmaat without signing in, but an account is required to create and use trips. You can export or clear local trip data from your browser. To request access, correction, or deletion of cloud information, contact the publisher using the address added above. The operator must establish and follow a response process before launch.

Security and children

Cloud access is protected by Supabase authentication and database/storage access policies. No online service can guarantee absolute security. Tripmaat is not designed for children under 13.

Contact

[Add a working privacy contact email before public launch.]