Skip to main content

Legal

Privacy Policy

Effective date: April 3, 2026  ·  Last updated: April 3, 2026

1. Who We Are

Day Trip Anywhere (daytripanywhere.com) is operated by Day Trip Anywhere LLC, located in Wixom, Michigan, USA (“we,” “us,” or “our”). This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our website and services.

If you have questions or concerns, contact us at privacy@daytripanywhere.com.

2. Information We Collect

We collect the following categories of personal information:

a. Information You Provide

  • Email address — when you create an account or subscribe to premium features.
  • Password — stored in hashed form by our authentication provider (Supabase).
  • Payment information — collected and processed by Stripe, Inc. We do not store credit card numbers or payment card data on our servers.

b. Location Data

  • Origin city or address — entered by you to generate destination suggestions. This is sent to the Google Maps Geocoding API to determine coordinates. We do not request or store your precise device location.

c. Automatically Collected Data

  • Usage data — pages visited, features used, search preferences, and interactions with the site, collected through server logs and analytics.
  • Device and browser information — IP address, browser type, operating system, and referring URLs.
  • Cookies and local storage — used to maintain your session, remember saved trips, and enforce free-tier search limits. See Section 8 for details.

3. How We Use Your Information

We use the information we collect to:

  • Provide and personalize the Day Trip Anywhere service.
  • Process payments and manage premium subscriptions.
  • Save and retrieve your trip history across sessions.
  • Send transactional emails (account confirmation, password reset, receipts).
  • Improve our service through aggregate, anonymized usage analysis.
  • Comply with legal obligations and enforce our Terms of Service.

We do not sell your personal information to third parties. We do not use your data for behavioral advertising.

4. Third-Party Services

We share limited data with the following third parties solely to operate the service:

Supabase

Provides our database and authentication infrastructure. Your email, hashed password, and saved trip data are stored on Supabase-managed servers. Supabase is SOC 2 Type II certified. Supabase Privacy Policy.

Google Maps Platform

We use the Google Maps Geocoding API, Places API, and Distance Matrix API to generate destination suggestions. Your entered location (city or address) is transmitted to Google to resolve coordinates and find nearby places. Google may log this data per their own policies. Google Privacy Policy.

Stripe

Handles all payment processing for premium subscriptions. We transmit your email address to Stripe to create a customer record. Card data is entered directly into Stripe’s hosted payment form and never touches our servers. Stripe is PCI-DSS Level 1 certified. Stripe Privacy Policy.

Netlify

Hosts and delivers the website. Netlify may collect standard server log data including IP addresses. Netlify Privacy Policy.

Affiliate Partners

Destination cards may contain affiliate links to Booking.com, TripAdvisor, and Viator. Clicking these links may result in a cookie being set by the affiliate partner. We earn a commission if you make a purchase. We do not share your personal information with affiliate partners.

5. Data Retention

We retain your account data (email, saved trips, subscription status) for as long as your account is active. If you delete your account, your personal data is removed from our systems within 30 days, except where we are required by law to retain it (e.g., billing records).

To request deletion of your account and data, email privacy@daytripanywhere.com.

6. Your Rights

California Residents (CCPA / CPRA)

If you are a California resident, you have the right to:

  • Know what personal information we collect and how it is used.
  • Request deletion of your personal information.
  • Opt out of the sale or sharing of your personal information. We do not sell or share your personal information.
  • Non-discrimination for exercising your privacy rights.
  • Correct inaccurate personal information we hold about you.

To exercise these rights, contact us at privacy@daytripanywhere.com. We will respond within 45 days.

EEA, UK, and Swiss Residents (GDPR / UK GDPR)

If you are located in the European Economic Area, United Kingdom, or Switzerland, you have the following rights under the GDPR:

  • Access — request a copy of the personal data we hold about you.
  • Rectification — request correction of inaccurate data.
  • Erasure— request deletion of your data (“right to be forgotten”).
  • Restriction — request that we limit how we use your data.
  • Portability — request your data in a structured, machine-readable format.
  • Object — object to our processing of your data where we rely on legitimate interests.
  • Withdraw consent — where processing is based on consent, you may withdraw it at any time.

Legal basis for processing: We process your data on the basis of (a) contract performance (providing the service you signed up for), (b) legitimate interests (improving the service, fraud prevention), and (c) consent where explicitly obtained.

To exercise your GDPR rights or to lodge a complaint, contact privacy@daytripanywhere.com. You also have the right to lodge a complaint with your local data protection authority.

7. Data Security

We use industry-standard security measures including HTTPS encryption in transit, hashed passwords, and access controls. However, no method of transmission over the internet is 100% secure. If you believe your account has been compromised, contact us immediately.

8. Cookies and Local Storage

We use the following technologies to operate the site:

  • Session cookies — set by Supabase to maintain your logged-in state. These expire when you close your browser or after 7 days.
  • Local storage — used to track free-tier search usage and temporarily store your saved trips if you are not logged in.
  • Affiliate cookies — set by third-party affiliate partners (Booking.com, TripAdvisor, Viator) when you click a partner link. These are third-party cookies subject to their respective privacy policies.

We do not use advertising or tracking cookies. You can disable cookies in your browser settings, but some features of the site may not function correctly.

9. Children’s Privacy

Day Trip Anywhere is not directed to children under the age of 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us and we will delete it.

10. International Data Transfers

Day Trip Anywhere is operated from the United States. If you access the site from outside the United States, your information may be transferred to and processed in the United States. By using the site, you consent to this transfer. Where required by GDPR, we rely on Standard Contractual Clauses or other approved mechanisms for international data transfers.

11. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will revise the “Last updated” date at the top of this page. If changes are material, we will notify registered users by email. Continued use of the site after changes constitutes acceptance of the updated policy.

12. Contact Us

For privacy-related questions, data requests, or to exercise your rights:

Day Trip Anywhere LLC

Wixom, Michigan, USA

privacy@daytripanywhere.com