Privacy Policy
Last Updated: July 22, 2026
Scope and Acceptance
This Privacy Policy ("Policy") governs the handling of information in connection with the mobile application "TripDays" (the "App"), operated by Chunhou Li ("we," "us," or "our"). By installing, accessing, or using the App, you ("User" or "you") acknowledge that you have read, understood, and agree to be bound by this Policy. If you do not agree to this Policy, you must not use the App.
This Policy is published in English and Simplified Chinese. If the two versions diverge, the English version prevails.
Data Controller and Key Principle
The data controller in respect of any personal data processed in connection with the App is Chunhou Li. Correspondence may be sent to: diveintothefog@gmail.com.
We do not operate any servers, do not require an account, do not use analytics or advertising SDKs, and do not collect, receive, store, or transmit any User data to systems under our control. Your trip data lives on your device and, if you enable iCloud sync, in your own iCloud account operated by Apple, which we cannot access. Certain features contact Apple, a site whose link you paste, or (only if you configure it) Google, as described in Section 3; none of those requests pass through us. The App's App Store privacy label is "Data Not Collected."
1. Data Processed on Your Device
1.1 Trip Data
Trips, itinerary plans, destinations, travelers, expenses, settlements, checklists, links, and attached documents you create are stored in a local database on your device. Names you enter for travelers (for example, a companion's first name) exist only inside your trip data.
1.2 Photos and Receipts
Photos are added through the system photo picker, which runs outside the App's process; the App receives only the images you select and has no access to the rest of your photo library. To place a photo on the right day and on the map, the App reads the photo's embedded capture date and location on your device. Photos, receipts, and documents are stored in the App's private storage.
1.3 Settings
Preferences (base currency, time format, language, checklist templates, and similar) are stored locally. If you configure the optional AI import, your Google Gemini API key is stored in the device Keychain and is never included in exports or backups.
1.4 Backups You Export
The backup feature writes your trip data to a single archive file at a destination you choose. Backup files exist only in the locations you put them and are under your control.
2. iCloud Sync and Shared Trips (Optional)
iCloud sync is off by default. If you turn it on, your trip data (including photos, receipts, and documents) is stored in your personal iCloud database, operated by Apple Inc. under your Apple Account and Apple's terms and encryption. We have no access to it: it is not "collected" by us in any sense, and we hold no copy.
If you share a trip, the people you invite gain access to that trip's content (plans, expenses, photos, traveler names) through Apple's iCloud sharing. Companions you invite as editors can change the trip; friends you invite as viewers can read it. You can stop sharing, remove participants, or leave a shared trip at any time; leaving removes the trip from your devices. Shared content is visible to the participants you chose, so share a trip only with people you trust with its contents.
Disabling iCloud sync stops synchronization. Data already in your iCloud can be removed by deleting the App's iCloud data in iOS Settings.
3. Features That Contact Other Services
Each of the following runs only when you use the corresponding feature, and none of the requests pass through servers we control.
- Maps and place lookup (Apple): When the App shows a map, finds a place you typed, or resolves a plan's location, place names and coordinates are sent to Apple's Maps services (MapKit and geocoding) under Apple's privacy terms.
- Pasted links: When you paste a travel link, the App contacts that site (following its redirects) to read the page's public details, such as the place name, address, and coordinates, so it can fill in your plan. The URL you pasted is the only information sent, and the site learns what any visit to that URL would tell it.
- AI note import (Google Gemini, optional): This feature stays off until you add your own Google Gemini API key in Settings. When you run an import, the note text you pasted is sent to Google's Gemini API under your key and Google's terms. We never see the note, the result, or your key. Do not paste text you are not comfortable sending to Google.
- National park boundaries: Park outlines shown on maps are fetched from the U.S. National Park Service's public data service.
- Links you open in other apps: Opening a plan's link, or a shortcut such as "Open in Flighty," hands that link to your browser, the matching app, or its App Store page. From there the receiving app's own privacy practices apply; the App itself sends nothing in the process.
4. Data Not Collected
We do not collect, and the App is not designed to send us:
- Personal identification information (name, email, physical address), except where voluntarily provided by you when contacting us for support.
- Your location. The map can show your current position on-device when you grant permission; it is never stored in your trip data or transmitted by the App.
- Photos, receipts, documents, or any media content (they stay on your device and in your own iCloud).
- Usage analytics, crash reports through third-party services, advertising identifiers, or tracking data of any kind.
- Payment or financial information. Expense records you enter are trip data under Section 1 and stay on your device and in your iCloud; the App does not process payments.
The one exception is support correspondence. If you choose to email us, we receive your email address and the contents of your message. We use them solely to respond to you, share them with no one, and retain them no longer than needed to resolve your request. To the extent the EU/UK General Data Protection Regulation applies to this processing, its legal basis is our legitimate interest in responding to your inquiry (Art. 6(1)(f) GDPR). We do not carry out any automated decision-making or profiling.
5. System Permissions
- Location (While Using): Requested only to show your current position on the map. The App works fully without it.
- Add to Photo Library: Requested only when you save an exported image (for example, an itinerary or expense recap) to your photo library. This is the add-only permission; the App cannot read or browse your library.
- Notifications: Requested if you set plan reminders. Reminders are scheduled and delivered on your device.
The App requests no other permissions: no camera, no microphone, no contacts.
6. Storage and Security
App data is stored locally using iOS storage mechanisms and is protected by your device's security (passcode, Face ID / Touch ID, device encryption). Your Gemini API key, if any, is stored in the device Keychain. Data synced to iCloud is protected by Apple's iCloud security and encryption under your Apple Account.
Deleting the App removes all locally stored App data. Trips synced to iCloud can be removed by deleting the App's iCloud data in iOS Settings; backups you exported remain wherever you saved them, under your control. We ourselves retain no User data; the only information we may hold is support correspondence you have sent us, handled as described in Section 4.
7. Third-Party Services
- Apple Inc.: App distribution and updates (App Store), iCloud storage and sharing, Maps and geocoding, and notification delivery are provided by Apple in accordance with its own policies: https://www.apple.com/privacy/.
- Google LLC (optional): The AI note import sends your pasted text to the Gemini API only if you configured your own key and only when you run it. Google's Privacy Policy: https://policies.google.com/privacy.
- Websites you paste links to: Resolving a pasted link contacts that website; its own privacy practices apply.
- U.S. National Park Service: Park boundary data is fetched from the NPS public data service.
The App contains no analytics, advertising, or crash-reporting SDKs.
8. Disclosure of Personal Data
We do not sell, rent, trade, or disclose personal data, because we do not have any. Your data remains on your device and in your own iCloud. Should we ever be required by applicable law or valid legal process to disclose information, we would have no User data to disclose unless you have voluntarily provided it to us (e.g., in a support email).
9. Your Rights and Choices
9.1 Access, Correction, Deletion, and Portability
Because all data lives on your device and in your own iCloud, you exercise these rights directly:
- Access and rectification: View and edit all trip data and settings within the App at any time.
- Erasure: Delete individual trips, leave shared trips, disable iCloud sync, delete the App's iCloud data in iOS Settings, or uninstall the App.
- Portability: Export your complete trip data as a backup archive, or an itinerary as a calendar file, at any time.
9.2 California Privacy Rights (CCPA/CPRA)
If you are a California resident: we do not collect, use, disclose, sell, or share your personal information, and have not done so in the preceding 12 months, so there are no categories of personal information for us to disclose or delete and nothing to opt out of. You will not be discriminated against for exercising privacy rights. For questions, contact us using the details in Section 13.
9.3 EEA and UK Rights (GDPR)
If you are in the European Economic Area or the United Kingdom: we do not process your personal data on any system under our control (other than support correspondence, see Section 4), so the GDPR rights of access, rectification, erasure, restriction, portability, and objection are exercised directly on your device as described in Section 9.1. You retain the right to lodge a complaint with a supervisory authority; a list of EEA authorities is available at https://www.edpb.europa.eu/about-edpb/board/members_en, and the UK authority is the Information Commissioner's Office (ico.org.uk).
9.4 Other Jurisdictions
Privacy laws elsewhere (including China's Personal Information Protection Law (PIPL), Brazil's LGPD, Canada's PIPEDA, and Japan's APPI) grant similar rights of access, correction, and deletion. Because the App keeps all data on your device and in your own iCloud, and we collect none, you likewise exercise these rights directly as described in Section 9.1. Contact us with any questions using the details in Section 13.
10. Minors
The App is not directed at children, and we do not knowingly collect personal data from children under 13 or the equivalent minimum age in your jurisdiction. Because the App sends no data to us from anyone, no data from children is collected by us (COPPA, GDPR Art. 8). A parent or guardian can remove all App data by uninstalling the App and deleting its iCloud data.
11. International Transfers
We transfer no User data internationally, because no User data reaches us. Data synced through iCloud is stored on Apple's infrastructure under Apple's data-residency and transfer arrangements for your Apple Account region. If you use the optional AI import, your pasted text is processed by Google under Google's transfer arrangements. If you contact us by email, your message is received on our email provider's infrastructure, which may be located in another country (including the United States).
12. Amendments
We may amend this Policy from time to time, for example if a future version of the App adds features that change how data is handled. Amendments will be communicated by:
- Publishing the revised Policy at this URL;
- Updating the "Last Updated" date at the top of this Policy; and
- Where reasonably practicable, providing notice within the App when material changes are made.
Your continued use of the App after the effective date of any amendment constitutes acceptance of the amended Policy.
13. Contact and Data Controller
For questions, requests, or complaints regarding this Policy, contact the data controller:
Chunhou Li
Email: diveintothefog@gmail.com