Privacy Policy
Effective date: July 24, 2026
1. Who we are
Travel Roamer(“we”, “us”, “our”) is an outdoor adventure discovery platform. Our registered email for privacy inquiries is privacy@travel-roamer.com.
2. Information we collect
- Account data — when you sign in with Google we receive your name, email address, and profile picture from Google. We store only the name and email address.
- Saved destinations — destinations you explicitly bookmark are stored and linked to your account.
- Usage events — we collect anonymised, consent-gated analytics events (pages viewed, searches performed, filters used). No personal identifiers are attached to these events. Analytics are disabled until you accept cookies.
- Server logs — our hosting provider (Vercel) and error monitoring service (Sentry) may record IP addresses, user agent strings, and request metadata for security and reliability purposes. These logs are retained for 30 days.
3. How we use your information
- To authenticate your account and maintain your session.
- To store and retrieve your saved destinations.
- To improve the product through aggregated, anonymous analytics.
- To diagnose errors and monitor service reliability.
We do not sell your personal information. We do not use your data to train AI models. We do not share your information with advertisers.
4. Legal basis (GDPR)
If you are located in the European Economic Area, our legal basis for processing your personal data is:
- Contract — processing necessary to provide the services you request (account, saved destinations).
- Legitimate interests — server logs and error monitoring for security and reliability.
- Consent — analytics cookies, which you can withdraw at any time via your browser settings.
International transfers. Our infrastructure providers are based in the United States, so your data is transferred to and stored in the US. Where we transfer personal data of users in the EEA or UK, we rely on the appropriate safeguards offered by these providers, such as Standard Contractual Clauses.
5. Third-party services
- Google OAuth — sign-in is handled by Google. See Google’s Privacy Policy.
- Vercel — hosting and edge network.
- Supabase — database hosting. Data is stored in the US.
- Sentry — error monitoring. Error events may include stack traces and request context.
- Destination data — park and recreation area information is sourced from the NPS Data API and Recreation.gov (RIDB) under their respective terms. We display attribution with every sourced fact.
6. Data retention
- Account data is retained until you delete your account.
- Server logs are retained for 30 days.
- Anonymous analytics are retained in aggregated form indefinitely.
7. Your rights
Depending on your location you may have the right to access, correct, delete, or export your personal data. You can delete your account and all associated data from the Account page. For other requests, email privacy@travel-roamer.com. We will respond within 30 days.
California residents.Under the CCPA/CPRA you have the right to know what personal information we collect, to delete it, to correct it, and to opt out of its “sale” or “sharing.” We do not sell or share your personal information as those terms are defined, and we will not discriminate against you for exercising these rights. To make a request, use the Account page or email privacy@travel-roamer.com.
8. Cookies
We use a single strictly-necessary session cookie for authentication. Analytics cookies are only set after you accept them via the cookie notice. You can withdraw consent at any time by clearing cookies in your browser.
9. Children
Travel Roamer is not directed to children under 13. We do not knowingly collect personal information from children.
10. Changes
We may update this policy. We will notify you of material changes by updating the effective date above and, for account holders, by email.
11. Contact
Questions? Email privacy@travel-roamer.com.