What this policy covers
This policy covers the Traveloir applications, website, authentication, synchronization, support, and related services. For privacy questions, contact privacy@mytraveloir.com.
Information Traveloir processes
Account information
Email address, display name, authentication provider identifiers, account preferences, and security/session records needed to operate your account.
Your archive
Trips, visits, places, dates, notes, flights, airports, airlines, aircraft information, routes, and custom places that you choose to record.
Technical information
Application version, platform, synchronization state, and sanitized error details. Crash diagnostics can be disabled. Optional product analytics is off by default and never includes destinations, routes, notes, searches, flight numbers, coordinates, or form contents.
Why it is processed
- Provide, synchronize, secure, support, and improve Traveloir.
- Authenticate users, recover accounts, and prevent abuse.
- Generate maps, timelines, statistics, imports, and exports requested by the user.
- Diagnose failures and understand coarse feature usage according to the user’s settings.
Service providers
Traveloir uses carefully scoped providers to operate the service: Supabase for authentication and the encrypted-in-transit PostgreSQL backend; Cloudflare for web delivery; MapTiler for online map tiles; an EU email provider for account messages; Sentry EU for optional sanitized diagnostics; and PostHog EU for opt-in product analytics. Providers process data under their own contractual and security obligations and are not permitted to use the archive for advertising.
Retention and deletion
Travel records remain until you delete them or delete your account. Identifier-only synchronization tombstones may remain briefly to prevent deleted records returning from an offline device. Operational backups expire on a rolling schedule and are not restored to recreate a deleted account. Security records may be retained where reasonably necessary to prevent fraud or meet legal obligations.
Your choices and rights
You can export your archive, correct or delete individual records, disable analytics and diagnostics, and permanently delete the account from Settings. Depending on where you live, you may also request access, correction, deletion, restriction, portability, or object to processing by contacting the privacy address above.
Security
Accounts are private by default. Authorization is enforced in PostgreSQL with row-level security. Native local databases use SQLCipher, sensitive native values use platform secure storage, and application databases are excluded from device backups. No system is risk-free; suspected security issues should be sent to security@mytraveloir.com.
International processing
Traveloir selects EU regions where supported. Some providers or support operations may process information in other countries using applicable safeguards.
Changes
Material changes will be explained in the application or by email when appropriate. The date above always identifies the current version.