Itigo
Privacy Policy
Last updated May 27, 2026
Itigo ("we", "us") respects your privacy. This Policy explains what personal data we collect when you use itigo.io, how we use it, and the choices you have. We act as the data controller for the information described below.
1. Information we collect
- Account data — your email address and authentication identifiers when you sign in.
- Trip data — the destinations, dates, preferences, notes, and itineraries you create.
- Usage data — basic logs (IP address, browser type, pages visited) used to keep the Service reliable and secure.
- Communications — emails you send us and our replies.
2. How we use your data
- To provide the Service: generate itineraries, save trips, and email them to you.
- To improve Itigo: diagnose issues, measure performance, and develop new features.
- To communicate with you about your account, trips, and important changes.
- To comply with legal obligations and prevent abuse.
3. Legal bases (GDPR)
We process your data on the basis of contract (to deliver the Service you asked for), legitimate interests (to keep Itigo running, safe, and improving), consent (where required, e.g. marketing emails), and legal obligation.
4. Sharing
We share data only with processors who help us run Itigo, under contracts that require them to protect your data. These include:
- Supabase — database, authentication, file storage.
- Cloudflare — hosting and CDN.
- Google (Places API) — to resolve place suggestions you search for.
- Resend — to deliver transactional emails.
- AI providers (OpenAI, Google) — to generate itinerary suggestions from your prompts.
We don't sell your personal data. We may disclose information if required by law or to protect Itigo, our users, or the public.
5. International transfers
Some of our processors operate outside your country. Where required, we rely on Standard Contractual Clauses or equivalent safeguards.
6. Retention
We keep your account and trip data for as long as your account is active. If you delete your account, we'll remove or anonymise your personal data within 30 days, except where we must retain it for legal reasons.
7. Your rights
Depending on where you live, you may have the right to access, correct, delete, port, or restrict processing of your personal data, and to object to certain uses. To exercise any of these rights, email privacy@itigo.io. You may also lodge a complaint with your local data protection authority.
8. Cookies
We use essential cookies to keep you signed in and to remember your preferences. We do not use third-party advertising cookies.
9. Security
We use industry-standard measures (encryption in transit, row-level security, scoped access) to protect your data. No system is perfectly secure — please use a strong, unique password.
10. Changes
If we make material changes to this Policy we'll notify you in-app or by email before they take effect.
11. Contact
Questions or requests? Email privacy@itigo.io.
