01
Who is responsible
TravelJournal is operated by Gabriella Marcelly Santos de Andrade, who acts as the controller of personal data processed for the service.
TravelJournal · Gabriella Marcelly Santos de Andrade · CPF: 096.181.259-12 · Physical address: Rua São José da Boa Vista 212, São Braz, 82315-330 - Curitiba PR, Brasil · Brazil · hello.traveljournal@gmail.com
Questions and privacy requests may be sent to hello.traveljournal@gmail.com.
02
Data we use and why
We process this information to perform our agreement with you, comply with legal obligations, protect the service and our legitimate interests, and, where required, based on your consent.
- Account data, such as email, authentication records, profile, language, plan and accepted legal-document versions, to create and protect your account.
- Content you add, such as journal entries, Memories, Journeys, photos, tags, dates, places and coordinates, to store, organize, search and display your private travel journal.
- Subscription and transaction information received from Stripe to manage billing, renewals, cancellations, fraud prevention and legal records. TravelJournal does not receive your full card number.
- Messages and support history to answer requests and resolve problems.
- IP address, device, browser, page, security and performance data to deliver, secure and improve the service.
03
Sharing and service providers
We share only what is needed with Supabase for authentication and database services, Cloudflare R2 for private photo storage, Vercel for hosting and operational analytics, Stripe for billing, Mapbox for interactive maps, LocationIQ for country, city and point-of-interest search, OpenStreetMap as a source of location data, and Resend for service emails.
These providers may process data outside Brazil under their own security and contractual safeguards. We may also disclose information when required by law, to prevent fraud or when you intentionally create a private sharing link.
TravelJournal does not sell personal data or private content and does not use it for behavioral advertising.
04
Privacy, retention and security
Your journal content is private by default, but it is not end-to-end encrypted. We and our providers technically process it to store, transform, protect and deliver it. Anyone with a valid private sharing link may view and copy the selected content until the link expires or is revoked.
Data is generally kept while your account is active or as needed to provide the service. Deleted content is removed from active systems, subject to remaining product references, protected backup cycles and records that must be retained for security, accounting, disputes or law.
We use encrypted connections, authentication, access controls, private storage and limited-access links. No online service can guarantee absolute security.
05
Your rights and account deletion
You may request confirmation, access, correction, information about sharing, portability where applicable, objection, anonymization, blocking or deletion by emailing hello.traveljournal@gmail.com. We may verify your identity and may retain information when the law requires it.
You can delete your account in Settings. If you have an active paid subscription, first cancel its next renewal in Stripe. Once scheduled cancellation is confirmed, you may delete immediately, lose any remaining paid access and receive no voluntary refund. There is no self-service full-account export; legal access or portability requests are handled through the contact email.
06
Age and changes
TravelJournal is for people aged 18 or older. We do not request a date of birth, but registration requires confirmation of this rule.
We may update this Policy when the service, providers or law change. Material changes will be communicated when required.
