Privacy Policy

Last updated: February 26, 2026

SwipeSights ("we," "us," or "our") operates the SwipeSights web application (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service. Please read this policy carefully. By using SwipeSights, you consent to the data practices described in this policy.

1. Information We Collect

1.1 Information You Provide

  • Account information: Email address, display name, and avatar when you create an account or sign in via Google OAuth.
  • Trip data: Destinations, travel dates, starting points, attraction votes, and itinerary preferences you create within the app.
  • Contact form submissions: Name, email, and message content if you contact us through the support form.

1.2 Information Collected Automatically

  • Device information: Push notification tokens (only if you opt in), browser type, and device type for responsive display.
  • Usage data: Pages visited, features used, and interaction patterns to improve the Service. We do not use third-party analytics trackers.

1.3 Payment Information

All payment processing is handled by our payment provider, Paddle.com (Paddle). We never receive, store, or have access to your credit card number, bank account details, or other financial payment instruments. Paddle acts as the Merchant of Record for all transactions. Please refer to Paddle's Privacy Policy for details on how they handle payment data.

2. How We Use Your Information

  • To provide, maintain, and improve the SwipeSights trip planning service.
  • To generate personalized itineraries based on your group's votes and preferences.
  • To send push notifications about trip updates, voting progress, and trip reminders (only if you opt in).
  • To process premium credit purchases and manage your account status.
  • To suggest nearby restaurants and attractions during itinerary generation.
  • To respond to your support requests and communications.
  • To detect and prevent fraud, abuse, or violations of our Terms of Service.

3. Third-Party Services

We integrate with the following third-party services to power SwipeSights:

  • Supabase: Authentication, database hosting, and real-time data synchronization. Your account and trip data are stored securely on Supabase servers with row-level security (RLS) enforcement. Supabase Privacy Policy.
  • Google Places API: To fetch attraction information, photos, ratings, opening hours, and nearby restaurants. Search queries and geographic coordinates are sent to Google. Google Privacy Policy.
  • Paddle: Payment processing for premium credit purchases. Paddle is the Merchant of Record and handles all billing, taxes, and payment security. Paddle Privacy Policy.
  • Anthropic (Claude AI): To estimate realistic visit durations for attractions. No personal data is sent - only attraction names and location types.
  • OSRM (Open Source Routing Machine): For street-level walking distance calculations. Only geographic coordinates are sent, no personal data.
  • Open-Meteo: For weather forecast data displayed on itineraries. Only geographic coordinates and dates are sent.
  • GetYourGuide: To provide ticket booking links for attractions in your itinerary. When you click a booking link, you are redirected to GetYourGuide's website. No personal data is shared with GetYourGuide by SwipeSights. GetYourGuide Privacy Policy.

4. Data Sharing and Disclosure

We do not sell, rent, or trade your personal information. We may share your data only in these limited circumstances:

  • With your trip group: Trip members can see shared trip data (destination, dates, votes, itinerary). They cannot see your email, account details, or data from other trips.
  • With service providers: As described in Section 3, to provide core functionality. These providers process data only as necessary to deliver their services.
  • Legal requirements: If required by law, court order, or governmental request, or to protect the rights, safety, or property of SwipeSights or its users.

5. Affiliate Links and Advertising

SwipeSights may display links to third-party services such as attraction tickets (e.g., via GetYourGuide) and food tours and experiences (e.g., via Viator/Travelpayouts). These are affiliate links - if you click through and make a purchase, we may earn a small commission at no extra cost to you.

Restaurant suggestions shown in your itinerary are based on Google Places data and ratings. These are not paid placements. We do not accept payment from restaurants or attractions for their inclusion in itineraries.

6. Data Storage and Security

Your data is stored securely using Supabase with row-level security (RLS) policies that ensure only you and your trip group members can access your trip data. All data transmission is encrypted using HTTPS/TLS.

While we implement industry-standard security measures, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security but are committed to protecting your data using commercially reasonable measures.

7. Data Retention

We retain your account data and trip information for as long as your account is active. If you delete your account, all personal data and associated trip data are permanently removed from our servers within 30 days. Aggregated, anonymized data that cannot identify you may be retained for analytics purposes.

8. Your Rights

Depending on your jurisdiction, you may have the following rights regarding your personal data:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate data.
  • Deletion: Request deletion of your data (available via Settings > Delete Account).
  • Portability: Request your data in a portable format.
  • Opt-out: Disable push notifications at any time from Settings.

To exercise any of these rights, contact us at support@swipesights.com. We will respond within 30 days.

9. Cookies and Local Storage

SwipeSights uses essential cookies and browser local storage solely for authentication (keeping you logged in) and storing your preferences (such as theme settings). We do not use tracking cookies, third-party advertising cookies, or any cross-site tracking technologies.

10. Children's Privacy

SwipeSights is not intended for children under the age of 13 (or the minimum age required by applicable law in your jurisdiction). We do not knowingly collect personal information from children. If we become aware that we have collected data from a child, we will take steps to delete it promptly.

11. International Data Transfers

Your data may be processed and stored in countries other than your own. Our service providers (Supabase, Google, Paddle) may transfer data internationally. By using SwipeSights, you consent to these transfers. We ensure that all transfers comply with applicable data protection regulations.

12. Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date at the top of this page and, where required, notify you via email or a prominent notice within the Service. Your continued use of SwipeSights after changes constitutes acceptance of the updated policy.

13. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us: