Legal

Privacy Policy

Effective date: 14 July 2026 · Applies to the Trippy app for iOS

The short version: Trippy has no ads, no third-party analytics and no tracking, and no account is required to use it. Your places, notes and trips are stored on your device and in your own private iCloud. One optional feature works differently: if you share a trip to plan it with others, that trip's program is stored on our server so everyone on the trip can see and edit it. Nothing else changes, and we never sell or share your data.

1. Who we are

Trippy is developed and published by Jon Trygve Hegnar, an independent developer based in Norway ("we", "us"). We are the data controller for the processing described in this policy.

Contact: hello@trytrippy.app

2. What Trippy does

Trippy lets you save places people recommend to you, organise them by city, and plan trips day by day. You can also share a trip with the people going, so everyone can add places to the program together — or share the places you've saved in a city as a view-only list your friends can browse. Everything you create in the app is yours and stays under your control.

3. Data we collect — and where it lives

3.1 Content you create in the app

Saved places, notes, tags, trips, days, stops and reservation details are stored locally on your device and, if you have iCloud enabled, synced through your private iCloud database (Apple CloudKit). This data is tied to your Apple Account and protected by Apple; we cannot access, read or retrieve it. Apple's processing is governed by the Apple Privacy Policy. If you never share anything, this is the only place your content ever lives.

3.2 Place search

When you search for a place, your search text is sent through our lightweight relay server (a Cloudflare Worker) to the Google Places API, which returns search results, place details, opening hours and photos. In processing these requests:

3.3 Location

If you grant location permission, Trippy uses your device's location on the device only — to show your position on the map. Your location is never sent to our servers and never stored. Maps are displayed with Apple Maps (MapKit), and map tiles are fetched by Apple as part of that service. You can revoke location access at any time in iOS Settings, and the app remains fully usable without it.

3.4 Photos of places

Photos of places (from Google Places) are cached on your device for up to 7 days to reduce data usage. They are pictures of public places, not personal photos, and Trippy does not access your photo library.

3.5 Shared trips (optional — requires an account)

Sharing requires an account — whether it's a trip or a city list (§3.6). When you share or join a trip:

3.6 Shared city lists (optional — requires an account)

You can share the places you've saved in one city as a view-only list: friends with the link can see it, but never change it. When you share a city:

4. What we do NOT collect

5. Summary table

DataWhere it goesPurposeRetention
Places, notes, trips (not shared)Your device + your private iCloudThe app's core functionUntil you delete it
Search textRelay → Google Places APIReturn search resultsTransient; not logged per user
IP addressRelay (Cloudflare)Deliver requests, rate limitingTransient
Device locationStays on your deviceMap viewNever stored
Account (ID and display name — no email)Our server (Supabase, EU)Shared trips and city listsUntil you delete your account
Shared trip programOur server (Supabase, EU)Let trip members plan togetherUntil the trip is deleted, or you leave it / delete your account
Shared city list (city name, place IDs, your categories; notes only while the switch is on)Our server (Supabase, EU)Let friends see your listUntil you stop sharing, hide the place, or delete your account
ReportsOur server (Supabase, EU)Handle abuse reportsAs long as needed to act on them

6. Legal basis (GDPR)

For users in the EU/EEA, the legal basis for the processing described above is the performance of a contract (Art. 6(1)(b) GDPR — providing the app's functionality you request, including shared trips and city lists when you choose to use them) and our legitimate interest in keeping the service secure, preventing abuse and handling reports (Art. 6(1)(f) GDPR). Location is processed only with your consent via the iOS permission prompt (Art. 6(1)(a)), which you can withdraw at any time in Settings.

7. Deleting your data

8. Your rights

Under the GDPR and Norwegian law, you have the right to access, correct, delete and export your personal data, to object to or restrict processing, and to withdraw consent. Most of these rights you exercise directly in the app, as described above. For anything else — including questions about data on our server — contact us at hello@trytrippy.app. You also have the right to lodge a complaint with your supervisory authority — in Norway, Datatilsynet (datatilsynet.no).

9. Children

Trippy is not directed at children under 13, and we do not knowingly collect personal data from children.

10. Security

Your content is protected by your device's security and by Apple's iCloud security (encryption in transit and at rest). Shared trip data is stored with Supabase with encryption in transit and at rest, and database-level access rules ensure only a trip's members can read or change it. Traffic between the app, our relay, our backend and Google is encrypted with HTTPS.

11. Changes to this policy

If we change this policy, we will post the updated version on this page with a new effective date. Material changes will be highlighted in the app's release notes.

Questions? Email hello@trytrippy.app — we read everything.