Privacy Policy
Last updated: August 2, 2026
This replaces our previous policy in full. We rewrote it because Tripsy changed — we added a verified community, Membership, and voice planning — and the old policy described a smaller product and, in places, described things we do not actually do.
The short version: we collect what we need to plan your trips and run Tripsy Circle, and not much else. We have no analytics, no advertising, and no tracking pixels. We never receive your identity documents. We do not sell your data.
1. 1. Who we are
The Services are operated by Quantum Ventures FZC, a free zone company registered with the Sharjah Publishing City Free Zone Authority (licence no. 4430112.01), registered office Business Centre, Sharjah Publishing City Free Zone, Sharjah, United Arab Emirates. We are the data controller for the personal information described here.
Contact us about anything in this policy at hello@getripsy.com.
If you are in the EU or UK and we are required to appoint a representative under Article 27 of the GDPR or UK GDPR, we will do so and publish their details here.
2. 2. What we collect
When you create an account
- Your email address and authentication details, handled by our authentication provider. We never see or store your password in plain text.
- The name you choose to display. In Circle this is visible to other Members, which is why a name is required to join.
- A profile photo, if you upload one. Also visible to other Members in Circle.
When you plan a trip
- What you say or type — the text of your request, including the transcription of anything you speak.
- The itinerary we generate, including days, flights, stays, budget breakdown and safety information, plus your destinations and dates.
- How many trips you have generated and edited, so we can apply plan limits.
Your travel profile — all optional
- Home city and country, to work out where you are flying from.
- Passport country, to tell you the visa rules that apply to you. This is the single most useful thing you can give us, and it is never shared.
- Dietary needs, travel pace and interests, which shape what we suggest.
- Preferred display currency, and whether you are happy to share travel dates with other Members.
If you join Tripsy Circle
- Verification results — see section 3.
- Your posts, the topic you chose, and any photos or video you attach. Stored in a private bucket and served to other Members through short-lived signed links.
- Reports you file about another Member's post — the reason, anything you write, and the fact that you were the one who reported it. Reports are visible only to our team.
- Your Membership status and the identifier of your payment customer record.
When you pay
- What you bought, how much, when, and whether it succeeded, plus identifiers from our payment processor.
- We never receive or store your card number. Card details are entered on Stripe's own pages and never touch Tripsy.
When you download a free guide or join the waitlist
- Your email address, which guide you asked for, and any answers you gave in the quiz.
- How you found us — the referral source and any UTM campaign parameters in the link you clicked.
- Your browser's user-agent string and the country your request came from, for spam prevention and to know which markets we reach.
Automatically
Standard server logs kept by our hosting provider, which include IP addresses, for security and debugging.
We do not collect: GPS or precise location; your city derived from your IP; contacts; browsing on other sites; advertising identifiers; or behavioural analytics of any kind.
3. 3. Identity verification — how Circle stays women-only
Tripsy Circle is limited to verified women aged 18 and over. Verification is what makes that possible.
Verification is optional. You never need it to plan trips, use Tripsy Local, or anything else. You need it only if you want into Circle.
We never receive your ID document
Verification is carried out by our verification provider, Didit, on their own platform. You submit your document to them, not to us.
Didit is an independent controller for your identity documents. They receive, process and retain the document and any selfie or liveness capture under their own privacy policy and retention rules. Tripsy never receives them, never stores them, and cannot retrieve them.
Didit acts as our processor for the result they return. From the whole verification we keep only: whether it passed, failed or needs manual review; whether you are over 18; the sex recorded on your document; the country that issued it; a session reference and the date; and, if a human reviewed it, who, when and a short note.
Everything else in Didit's response — full name, date of birth, document number, addresses, and every image or video field — is discarded on arrival by an allowlist and never written to our database.
Why we hold sex, and on what basis
We keep the sex recorded on your document for one reason: it is how we determine eligibility for a women-only space. It is never used for marketing, profiling or advertising, and it is never shown to other Members.
Our lawful basis is performance of a contract: you have asked for access to a verified women-only community, and there is no way to provide that without confirming eligibility. We do not rely on consent, because consent you could withdraw at any moment while retaining access would be a fiction.
We do not create voiceprints, face templates, or any other biometric identifier.
4. 4. Voice
Tripsy asks for microphone permission and records only while you are actively using voice input. It never listens in the background.
Your audio goes to our speech-to-text provider, is converted to text, and is then discarded. We do not store the recording — nothing in Tripsy writes audio to disk or to storage. We keep only the resulting text, which we treat like any other trip request.
Because that text becomes part of your trip, please avoid speaking things Tripsy does not need — health conditions, ID numbers, or payment details.
5. 5. AI
Your trip request — typed or transcribed — is sent to Google and processed by its Gemini models to generate your itinerary.
We use these providers under business API terms that do not permit your inputs to be used to train their models. They retain data only for the limited period needed to run and secure their own service.
You are interacting with an automated system. AI output can be wrong or out of date — see sections 24 and 31 of our Terms of Service.
6. 6. How we use your information, and our lawful bases
- Generate, save and edit your itineraries — it is the product. Basis: contract.
- Apply plan limits and process payments — you bought something. Basis: contract.
- Verify eligibility for Circle — you asked to join. Basis: contract.
- Show your name and photo to other Circle Members — Circle only works if Members are people, not handles. Basis: contract.
- Review reports and moderate Circle — keeping Members safe. Basis: legitimate interests.
- Secure the Services, prevent fraud and abuse, and debug — keeping it working and honest. Basis: legitimate interests.
- Deliver a free guide you requested — you asked for it. Basis: contract.
- Send marketing email — only if you opted in. Basis: consent.
- Process your voice input — you started the recording. Basis: contract.
- Meet legal obligations. Basis: legal obligation.
You can withdraw consent for marketing at any time — every marketing email has a one-click unsubscribe, and we honour it promptly.
7. 7. Who we share it with
We do not sell your personal information. We never have, and we have no mechanism to.
- Supabase — account, profile, trips, Circle posts and media, verification results, payment references. For database, authentication and file storage. Based in Tokyo, Japan. Processor.
- Vercel — requests and server logs, including IP. For hosting and delivery. United States, global edge. Processor.
- Google (Gemini) — the text of your trip requests. For generating itineraries. United States. Processor.
- Google (Places, Routes) — destination and venue search terms derived from your trip. For real venue data and drive times. United States. Processor.
- Deepgram — your voice audio. For speech-to-text. United States. Processor.
- OpenAI — your voice audio, as a fallback only if Deepgram is unavailable. For speech-to-text. United States. Processor.
- Duffel — routes and dates. For live flight prices. United Kingdom. Processor.
- SerpAPI — venue and place search terms. For supplementary venue data. United States. Processor.
- Open-Meteo — coordinates and dates, with no personal identifiers. For weather on your dates. European Union (Germany). Processor.
- Stripe — your email, and the card details you enter on Stripe's own pages. For payments and fraud prevention. United States and Ireland. Independent controller for payment and fraud data; processor otherwise.
- Didit — your identity document and selfie, submitted directly to them. For identity verification. Per their policy. Independent controller for the documents; processor for the result.
We also share where required by law or to protect rights and safety, and with a successor in a merger, acquisition or asset sale. If we add a processor, we update this list.
8. 8. Cookies and browser storage
We set only cookies that are strictly necessary — a sign-in session cookie and, if you arrived via a pre-launch link, an access cookie. No analytics, performance or advertising cookies exist, which is why you have not seen a consent banner.
Full detail, including every local-storage key, is in our Cookie Policy.
9. 9. International transfers
We are in the United Arab Emirates. Our database is in Japan. Most of our other providers are in the United States, one in the United Kingdom, one in the European Union.
So your information will be transferred and processed outside your country. Where we transfer out of the EU, UK or Australia we rely on appropriate safeguards — the EU-US Data Privacy Framework where a provider is certified, Standard Contractual Clauses with the UK Addendum, and equivalent measures under Australian Privacy Principle 8.
10. 10. How long we keep it
- Account, profile and trips — for the life of your account.
- Voice recordings — not retained; discarded after transcription.
- Circle posts you delete — hidden immediately; the record is retained so we can review a moderation decision, handle an appeal, or meet a legal obligation.
- Removed posts and reports — retained for the same reasons.
- Verification results — while your account exists, as proof of eligibility.
- Payment records — as long as tax and accounting law requires, typically several years.
- Guide and waitlist emails — until you unsubscribe; we keep a suppression record so we do not email you again.
- Server logs — per our hosting provider's standard retention.
11. 11. Security
We use TLS in transit and encryption at rest through our database provider.
Access is enforced at the database itself with row-level security, so one Member's account cannot read another's. Circle media is stored in a private bucket and served only through short-lived signed links. Verification results and payment status can be written only by our servers — never by a browser, including yours.
No system is perfectly secure and we cannot promise absolute security.
12. 12. Your rights
Depending on where you live you may have the right to access, correct, delete, restrict, port or object to how we use your information, to withdraw consent, and to complain to your data protection authority.
- EU/UK (GDPR): all of the above, plus the right to complain to your supervisory authority.
- California (CCPA/CPRA): the right to know, access, delete and correct; to opt out of sale or sharing — we do neither; to limit use of sensitive information; and not to be discriminated against for exercising these rights.
- Australia (Privacy Act and the APPs): access and correction, and the right to complain to the OAIC.
How to exercise them
Email hello@getripsy.com from the address on your account.
Account deletion is currently handled manually. There is no delete button yet. Email us and we will delete your account and associated data within 30 days, except where law requires us to keep something (payment records, for example). If you have an active Membership, cancel it first under Membership, then Manage billing, or tell us and we will cancel it as part of the request.
We will respond within the time your law requires, and in practice sooner.
13. 13. Children
The Services are not intended for anyone under 18, and our Terms of Service require every user to be at least 18. We do not knowingly collect personal information from anyone under 18. If you believe someone under 18 has given us information, contact us and we will delete it.
14. 14. Changes to this policy
We will post any updated version here with a new date, and give additional notice where changes are material. If we ever start using non-essential cookies or a new category of data, we will tell you before we do it, not after.
15. 15. Contact
hello@getripsy.com
Quantum Ventures FZC, Business Centre, Sharjah Publishing City Free Zone, Sharjah, United Arab Emirates.