tripline
Privacy Policy
How tripline handles account and operational data. For final legal review.
Draft policy — marked for final legal review. Replace jurisdiction, DPA, and retention details before launch.
1. Data we process
Account identity (name, email), organization profile data, travel query and booking operational records, messages you send in-platform, payment metadata (not full card PANs when using a gateway), uploaded booking documents, and technical logs needed to run and secure the service.
2. Purposes
Provide matching, quoting, booking, optional payments, notifications, and support; prevent abuse; improve reliability; and meet legal obligations.
3. Sharing
Data is shared with the counterpart organization as required by a query, quote, booking, or conversation. Processors may include hosting, database, email (e.g. Resend), object storage, and payment providers. We do not sell personal data.
4. Retention & security
We retain operational records for as long as needed for the business relationship and compliance. Access is role- and organization-scoped. No method of transmission is perfectly secure; report issues via Contact.
5. Your choices
You may request access or correction of account data through your organization admin and support. Notification preferences may be managed in-product where available.
