Privacy Policy
We store the minimum amount of data, keep all data in the EU, and do not track you.
This policy explains how Lugara (https://lugara.me), the “Service,” handles your information.
The summary is simple: We are committed to a minimal data approach. We do not track you, sell your data, or collect unnecessary personal information.
- 🚫 No Tracking: We avoid third-party trackers, advertising cookies, and fingerprinting.
- 🇪🇺 Data Stays in the EU: All data we store and process is kept within the European Union, which has the strongest data protection laws globally.
- 🔒 Security First: We use industry-standard encryption and security practices to protect your data.
What We Collect (The Essentials)
We only collect data necessary to provide and secure the Service.
Account Information: If you sign in, we store the minimum necessary authentication details (like your OAuth provider ID and the email/name shared by your provider) to secure your account and keep you logged in.
Your Trip Data: Details about your trips, dates, notes, and associated locations. This data is only visible to you by default.
What We Do Not Collect
We explicitly do not collect:
- Personally identifying usage analytics.
- Behavioral profiles.
- Any personal data beyond what is strictly required for your login and trip management.
Cookies
We only use strictly necessary cookies when you sign in. These are essential for maintaining your session and ensuring the Service functions correctly.
How We Use Your Data
We use the limited information we collect solely to:
- Authenticate you and keep your session active.
- Allow you to add, display, and manage your private trips and locations.
- Secure the service and prevent abuse.
Third-Party Services (When We Have to Share)
We only send absolutely necessary data to third-party services (like the IP address your browser automatically sends, or the data you actively enter into forms) to run core functions of the Service.
| Service | Purpose | Privacy Policy |
|---|---|---|
| Stripe | Payment processing | Stripe Privacy |
| Mapbox | Mapping functionality (geocoding) | Mapbox Privacy |
| OpenAI | Geocoding and date parsing for trip input | OpenAI Privacy |
| Resend | Email-based notifications and product updates | Resend Privacy |
Social Sign-In
If you choose to sign in using a social provider (OAuth), the handling of that data is governed by their policy:
| Provider | Purpose | Privacy Policy |
|---|---|---|
| Solely for OAuth authentication | Google Policies | |
| GitHub | Solely for OAuth authentication | GitHub Statement |
Your Rights and Control (You’re the Boss)
You are the sole owner of your trip and location data. You grant us a limited license only to use this data to provide the Service to you. You are in complete control:
View and Export: You can access and download your personal data (trips and locations) in portable formats at any time.
Update and Modify: Easily change your account information, preferences, and communication settings within your account.
Total Deletion: You can permanently delete your account and all associated data whenever you want.
Sharing Settings: You control the visibility of your trips and locations.
Retention and Deletion
We keep your authentication and trip data while your account is active. You can delete your account and all associated data at any time through your account settings.
Security and Compliance
We implement standard practices to keep your data secure:
- Encryption of data both when it’s moving (in transit) and when it’s being stored (at rest).
- Secure authentication systems and encryption of sensitive data like OAuth tokens.
- Limited, need-to-know access to your personal data.
Children’s Privacy
Our Service is not for children under 13. We do not knowingly collect personal information from this age group. Please contact us immediately if you suspect a child has provided us with data.
Changes to This Policy
We may update this policy. For material changes, we will notify you by:
- Posting the updated policy here.
- Sending an email notification to your registered address.
- Displaying a notice within the Service.
Contact Us
If you have any questions about this policy or our privacy practices, please reach out:
Email: [email protected]
This privacy policy is effective as of the date listed above and will remain in effect except with respect to any changes in its provisions in the future, which will be in effect immediately after being posted on this page.