Privacy Policy
Last updated: August 21, 2024
This Privacy Policy describes Our policies and procedures on the collection, use and disclosure of Your information when You use the Service and tells You about Your privacy rights and how the law protects You.
We use Your Personal data to provide and improve the Service. By using the Service, You agree to the collection and use of information in accordance with this Privacy Policy.
General Information
The protection of personal data is of high importance for us. In fact, Tripsly is committed to protecting your personal data and treating it with the utmost care and respect. This Privacy Policy shall inform you about the processing of personal data on our website and in our App according to Art. 13, 14 GDPR. Personal data ("data") is any information relating to an identified or identifiable person. “Processing" of data means any operation or set of operations which is performed upon personal data, whether or not by automatic means, such as collection, recording, organization, filing, storage, adaptation or alteration, retrieval, consultation, use, disclosure by transmission, dissemination or otherwise making available, alignment or combination, restriction, erasure or destruction.
This Privacy Policy can be accessed and printed out at any time on the website and the App. We reserve the right to amend this Privacy Policy to ensure compliance with the statutory provisions.
Controller
The Controller of your personal data is Tysonian Inc..
Address: 131 Continental Dr, Suite 305, Newark, 19713, New Castle county, Delaware, United States
Email: support@tripsly.app
Controller is any natural or legal person who alone or jointly with others determines the purposes and means of the processing of personal data. Tysonian Inc. is the controller in connection with the use of Tripsly’s services and products in the European Union.
Data Protection Officer
For the protection of your data we Appointed a Data Protection Officer DPO.
You can reach our DPO at any time here: gdpr@tripsly.app
Scope of Data Processing
We only process the data as necessary and only for the purpose of providing a functional and user-friendly website and App as well as for the provision of our content and services. The legal basis for data protection can be found in particular in Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of individuals with regard to the processing of personal data, on the free movement of such data and repealing Directive 95/46/EC ("General Data Protection Regulation", GDPR).
We use various third-party providers, e.g. in the areas of hosting or mailing services, each of which processes data on our behalf. We have concluded corresponding order processing agreements with these third-party providers, which ensure that an adequate level of data protection is also guaranteed with respect to our (sub-)processors (Art. 28 GDPR). For more information on the third-party providers used, please feel free to contact our DPO.
​
​
​
​
​
​
We handle contact information, usage data, and other details you provide to us, as outlined in the attached table, described in this Privacy Policy, or communicated to you. We process your data only when necessary for specific purposes. If you choose not to provide the required data, this may lead to disadvantages, such as not receiving a response to your inquiry or the inability to fulfill a contract.
​
As a general principle, we only share your data with third parties if we have your consent or another legal basis. When transferring your data to the United States or other non-EU/EEC countries, we ensure compliance with legal requirements under Art. 44 ff. GDPR, ensuring your data is processed in accordance with European data protection standards. Typically, we use EU standard contractual clauses (SCCs) with the relevant providers. Additionally, following the ECJ's "Schrems II" decision, we conduct a risk analysis on a case-by-case basis regarding the specific third country. For further information, you can contact our Data Protection Officer (DPO).
​
Moreover, we have implemented technical and organizational measures to ensure compliance with data protection regulations by both our company and external service providers. For security reasons and to protect the transmission of confidential content you send to us as the site operator, our website uses SSL or TLS encryption.
Visiting the Website
We gather data on each visit to our website through server log files. The following data is processed in the manner described below:
Data Purpose
The data collected by your website serves multiple purposes:
-
Optimization of the Website: The information collected, such as the name of the website accessed, file, date and time of access, amount of data transferred, browser type and version, operating system/version, and device name (if applicable), is used for statistical evaluations aimed at optimizing the performance and user experience of the website.
-
Stability and Operational Security: Data such as IP address, referrer URL, and the requesting provider are crucial for ensuring the stability and security of the website’s operations. These details help in monitoring traffic, detecting anomalies, and preventing potential cyber threats or fraudulent activities.
-
Fraud Prevention and Quality Assurance: The collected data is analyzed to prevent fraud and ensure the quality of the services provided on the website. This process is based on your legitimate interests as outlined in Art. 6 (1) f) GDPR.
-
Fulfillment of Legal Obligations and Data Security: In compliance with legal requirements, certain data is collected to meet legal obligations, such as those under data protection laws, and to maintain the security of the website and its users, in accordance with Art. 6 (1) c) GDPR.
This data collection helps maintain the website's functionality, security, and optimization, ensuring a better user experience while adhering to legal requirements.
Legal Basis
Details such as the accessed website name, file, date and time of access, data volume transferred, access confirmation, browser type and version, operating system version, referrer URL (previously visited page), IP address, requesting provider, country code, language, and device name (if applicable) are collected and processed for statistical evaluations aimed at optimizing our website. This ensures the website’s stability, operational security, and compliance with legal obligations under Art. 6 (1) f) GDPR, based on our legitimate interests in fraud prevention and quality assurance, as well as for data security purposes under Art. 6 (1) c) GDPR.
Contact and Emails
If you contact us via email or through the contact form, the information provided in your inquiry, including your contact details, will be stored by us for the purpose of processing and responding to your request as follows:
Purpose
The purpose of collecting and storing contact information and emails received via email or the contact form on your website is to process and respond to your inquiry. This information, including any contact details provided, is retained to ensure effective communication and follow-up regarding your request. Additionally, storing this data allows us to manage inquiries, provide support, and maintain a record of correspondence for reference and quality assurance purposes.
Legal Basis
Your inquiry, along with the contact details provided (such as name, company, country, email address) and any other data included in the inquiry, is processed or stored to manage company inquiries, establish, execute, and settle contractual relationships, which may include responding to your inquiry. This data processing is done under Art. 6 (1) b) GDPR for fulfilling contractual obligations and under Art. 6 (1) a) GDPR based on your consent to respond to your request.
Download and Use of the App
When downloading the App from the App Store or Play Store, certain required information is transmitted to the respective store provider, including your username, email address, account customer number, download time, location, and device code number. We have no control over this data collection and are not responsible for it. Our role is limited to processing this data only as needed to facilitate the download of the App onto your mobile device. Additionally, when you use the App, we collect personal data as described below to ensure the convenient use of its features.
Data Purpose
-
App Download: When downloading the App from the App Store or Play Store, certain data such as your username, email address, account customer number, time of download, location, and individual device code number are transferred to the respective store provider. This information is beyond our control, and we do not hold responsibility for it. Our role is limited to processing this data solely to facilitate the download and installation of the App onto your mobile device.
-
App Use: Once the App is downloaded and in use, we collect the personal data specified below to ensure a seamless and convenient experience with the App's features. This data enables us to optimize the functionality, provide personalized services, and maintain the overall performance of the App.
Legal Basis
The data we collect includes your IP address, the date and time of the request, time zone, details of the request, access status/HTTP status code, the amount of data transferred, the referring website, browser type, operating system and its interface, as well as the language and version of your browser software. This information is processed to provide our services (Art. 6 (1) b) GDPR) and to ensure the usability and stability of our system (Art. 6 (1) f) GDPR).
Additionally, we require your device identification, including the unique device number (IMEI), the unique network subscriber number (IMSI), MAC address for WLAN use, device name, and email address. When you use the App, a device ID number is assigned to each registered device. Access to this ID is essential for identifying the device and user account, improving App functionality, and allowing us to deactivate the App on lost or stolen devices.
Moreover, cookies are stored on your device while using our App. Our Privacy Policy is accessible on the app and here. Cookies are small text files stored in your device’s memory and linked to the App you are using. They transmit specific information to us, the cookie setter, but cannot run programs or transmit viruses. Cookies enhance the overall user experience by making mobile Apps more user-friendly and efficient. Our App uses both transient cookies, which are automatically deleted when you close the App, and persistent cookies, which are deleted after a specified time. You can adjust your mobile operating system and App settings to block third-party or all cookies; however, this may limit the functionality of our App.
Registration / Use of Our Service
To access our services, you may need to register on our app. The data you provide during registration is processed based on your consent or, where applicable, to fulfill our service agreement with you.
Data Purpose
When you register on our app, we process the data you provide to enable you to use our services. This data collection is based on your consent and is necessary to fulfill our service contract with you, if applicable. The information you share during the registration process allows us to:
-
Create and manage your account: This includes verifying your identity, securing your account, and providing you with access to the app's features.
-
Personalize your experience: By using the data you provide, we can tailor the services and content to better suit your preferences and needs.
-
Facilitate communication: We use your contact information to send you important updates, notifications, and support related to the services you are using.
-
Improve our services: Analyzing the data helps us enhance the app's performance, troubleshoot issues, and develop new features that better serve our users.
Legal Basis
To fulfill our service agreement, we collect registration and login data such as your name, company name, date of birth, email address, and password (Art. 6 (1) b) GDPR). This data is processed with your consent to enable your registration (Art. 6 (1) a) GDPR).
Additionally, you may choose to provide extra personal information, such as a photograph or details in the "My Notes" section. You may also be invited to complete forms or surveys, share testimonials, or participate in promotions like contests, challenges, or user-generated content (e.g., podcasts), either through our Services or on third-party platforms. If you choose to participate, we will collect and store the information you provide, such as your name, email address, and date of birth.
​
Age Information Collection
At Tripsly, we prioritize the privacy and safety of our users while striving to enhance your experience with tailored services and relevant content. An integral part of achieving this is our collection of users' age information.
Data Purpose
-
Eligibility for Booking Services: As we continue to develop and expand Tripsly’s offerings, we foresee the potential inclusion of booking services for bars and similar age-specific venues. Collecting age information is essential for verifying the eligibility of our users, ensuring that we comply with all age-related regulations and legal requirements.
-
Understanding User Demographics: By collecting age data, we gain valuable insights into our user demographic. This knowledge enables us to create personalized experiences that meet the needs and preferences of our diverse user base. Tailoring our services based on demographic information ensures that users receive the most relevant and engaging content.
-
Implementing Age-Appropriate Features: Tripsly is committed to maintaining a secure and inclusive environment for all users. Knowing the age of our users helps us implement appropriate features and safeguards that cater to different age groups. This includes the development of age-appropriate content and functionality that align with our mission to provide a safe and enjoyable experience for everyone.
Legal Basis
​
In compliance with the General Data Protection Regulation (GDPR), Tripsly collects your birthdate information based on the following legal grounds:
-
Ensuring Compliance with Age-Related Regulations: Collecting your birthdate is essential to verify your eligibility for certain services and features within the app, such as accessing age-restricted content or facilities. This processing is necessary for compliance with legal obligations related to age verification and restrictions (Art. 6 (1) c) GDPR).
-
Consent for Tailored User Experience: By providing your birthdate, you consent to its use for creating a personalized and age-appropriate experience within the Tripsly app. Your consent allows us to tailor content and features that enhance your interaction with the app (Art. 6 (1) a) GDPR).
​
By collecting and utilizing age information responsibly, Tripsly aims to foster a platform that is not only compliant with regulations but also highly responsive to the needs of our community. We are dedicated to protecting your information and using it solely for the purposes outlined in this policy, contributing to a safer and more personalized Tripsly experience.
If you have any questions or concerns regarding how your age information is used, please don't hesitate to contact our support team.
Connection of Third Party Services / Single Sign-On Services
We may collect certain information from your social media profiles or other online accounts that you have allowed to connect to our mobile application. When you log in using Gmail or another third-party platform, we request permission to access specific information associated with that account, such as your name, profile picture, account ID, email address, location, physical location of your devices, and birthday. The information we receive is determined by your privacy settings on those platforms and services, as they make data available to us through their APIs. If you access or use our services via a third-party platform, the collection, use, and sharing of your data will also be governed by that third party's privacy policies and agreements. Additionally, we may gather information from third parties with whom we have business or legal relationships, including business partners, technical, payment and delivery service providers, advertising networks, analytics providers, or search information providers.
Data Purpose
When you connect third-party services or use Single Sign-On (SSO) to log in via platforms like Gmail or other social media accounts, we collect certain information with your permission to streamline your access to our app. The purpose of collecting this data includes:
-
Simplifying Registration and Login: By using your existing accounts from third-party platforms, we make the registration and login process faster and more convenient, reducing the need for you to create and remember new credentials.
-
Personalizing Your Experience: Accessing information such as your name, profile picture, and location allows us to customize your user experience and provide content that is more relevant to you.
-
Enhancing Security: Using SSO services leverages the security measures of trusted third-party platforms, adding an additional layer of protection to your account with us.
-
Maintaining Consistent User Identity: Connecting your account with third-party services helps us maintain a consistent user identity across different platforms, ensuring a seamless interaction between our services and other online accounts you use.
-
Integrating with Other Services: Accessing information from third parties, such as business partners or service providers, allows us to enhance the functionality of our app, offer integrated services, and provide a more comprehensive experience.
Please note that the data collected through third-party services is limited by your privacy settings on those platforms and is subject to their privacy policies as well. This ensures that your data is handled in accordance with both our privacy standards and those of the third-party service providers.
Legal Basis
Contact information (such as email address and, if applicable, name), device details (including device name, country code if applicable, language, operating system name, and version), and connection data (such as IP address and email provider) are processed for advertising communication purposes in accordance with Art. 6 (1) a) GDPR.
You may withdraw your consent to the processing of data for the purpose of sending newsletters or analyzing related data at any time. You can revoke your consent through a link provided in each newsletter or by sending us a separate message. This process will not incur any costs beyond the standard transmission fees according to basic tariffs.
Additional Information Emails
If we have established a contractual relationship with you (for example, after you successfully register on our website or via the App), we may send you emails containing relevant information about similar products or services. You can opt out of receiving these emails at any time by contacting us or clicking the unsubscribe link at the bottom of the emails. This process will not incur any costs beyond standard transmission rates.
Data Purpose
When a contractual relationship has been established with us, such as after successful registration on our website or via the App, we may send you emails containing relevant information about similar goods or services that may interest you. The purpose of these emails is to keep you informed about offerings that align with your previous interactions or purchases, thereby enhancing your experience with our services.
Additionally, these emails help you stay updated on new features, products, or services that could be beneficial to you based on your interests. You have the right to opt-out of receiving these emails at any time, either by contacting us directly or by clicking the unsubscribe link provided in the emails. This ensures you remain in control of the communications you receive, without incurring any additional costs beyond standard transmission rates.
Legal Basis
Contact information (such as your email address), technical data, and usage data are processed to fulfill a contractual relationship or based on our legitimate interests in marketing, including notifications about similar products or services. This processing is carried out under Art. 6 (1) b) or f) GDPR (and if applicable, in conjunction with Section 7 (3) UWG), or with your consent under Art. 6 (1) a) GDPR.
Cookies and Third-Party Tools
We utilize cookies, which are small text files stored on your device by your browser. These cookies enhance our services, making them more user-friendly, efficient, and secure. Different types of cookies serve various functions. Some are "necessary cookies," ensuring that our services work correctly and recognizing your device after you log in. These cookies simplify your use of our services. We also use "advanced cookies" to analyze user preferences and improve our offerings, but these are only placed with your consent.
When you first visit our services, a pop-up will inform you about cookies. By clicking the consent button, you agree to the use of the selected cookies as described in the pop-up and this Privacy Policy. You can manage your consent and find more information about the cookies we use by clicking here, where you can review all cookies used on our website.
Additionally, you can configure your browser to notify you when cookies are being set, allowing you to accept cookies on a case-by-case basis, block them entirely, or enable automatic deletion when the browser is closed. Many online ad cookies can also be managed via the US site http://www.aboutads.info/choices/ or the EU site https://www.youronlinechoices.com/de/. Please note that disabling cookies may limit the functionality of our website.
If personal data is processed using "necessary" cookies, this is done based on Art. 6 (1) f) GDPR due to legitimate interests in quality assurance and the proper technical presentation of the website. The processing of personal data with "advanced cookies" is based on your consent (Art. 6 (1) a) GDPR).
Social Media
We actively engage on various social media platforms, where we process user data to communicate with those active on these platforms and to share information about our services. User data on these networks is typically used for market research and advertising purposes. For instance, usage profiles can be developed based on users' behavior and interests. These profiles are often used to deliver targeted advertisements both within and outside the platforms, tailored to users' interests. Cookies are generally placed on users' devices to track their behavior and preferences. Additionally, data may be stored across different devices, particularly if users are logged into their accounts on these platforms.
For more details on how your data is processed and how to opt out, please refer to the privacy policies provided by the respective social network operators. If you have requests for information or wish to exercise your data rights, it is most effective to contact the platform providers directly, as they have access to your data and can take the necessary actions. However, if you need further assistance, you are welcome to contact us.
Data Purpose
The purpose of engaging on various social media platforms and processing user data within your app includes:
-
Communication and Information Sharing: To interact with users who are active on these platforms and provide them with information about your services.
-
Market Research and Advertising: To analyze user behavior and interests, which allows for the creation of usage profiles. These profiles are then used to deliver targeted advertisements, both within and outside the social media platforms, that align with users' preferences.
-
Personalized User Experience: By using cookies and storing data across different devices, the app can track user behavior and preferences, helping to tailor content and advertisements to individual users, enhancing their overall experience.
-
Data Management: To ensure transparency and provide users with control over their data, the app refers users to the privacy policies of the social media platforms for details on data processing and options for opting out. This also guides users on how to exercise their data rights effectively.
This approach enables your app to engage users more effectively, improve service offerings, and ensure that communications are relevant and personalized to individual preferences.
Legal Basis
Data Categories and Usage: This includes inventory data (such as names and addresses), contact data (like email addresses), content data (including text, photos, and videos), usage data (such as visited websites, content interests, and access times), and meta/communication data (like device information and IP addresses). These types of data are used for handling contact requests and communication, tracking (including interest and behavioral profiling via cookies), remarketing, reach measurement (like access statistics and recognizing returning visitors), and affiliate tracking. The processing of this data under Art. 6 (1) f) GDPR is based on our legitimate interest in marketing our services through common social media channels.
Services used and service providers:
-
WhatsApp (Meta Platforms, Inc. https://www.whatsapp.com/): Privacy Policy: https://www.whatsapp.com/legal/privacy-policy-eea
-
Gmail (Google LLC), Privacy Policy: https://policies.google.com/privacy?hl=en-US
-
Twitter (Twitter Inc., 1355 Market Street, Suite 900, San Francisco, CA 94103, USA, https://www.twitter.com; Privacy Policy: https://twitter.com/de/privacy, settings: https://twitter.com/personalization, data information: https://twitter.com/settings/your_twitter_data).
-
Apple Inc. Privacy Policy: https://www.apple.com/legal/privacy/data/
-
Facebook Facebook, Meta Platforms Ireland Limited, 4 Grand Canal Square, Dublin 2, Ireland; https://www.facebook.com; Privacy Policy: https://www.facebook.com/privacy/policy/
-
LinkedIn (LinkedIn Ireland Unlimited Company, Wilton Place, Dublin 2, Ireland, https://www.linkedin.com; Privacy Policy: https://www.linkedin.com/legal/privacy-policy.
Processing Applicant Data
When you apply for a position with us, we collect and process certain personal data, including your name, email, location, gender, work history, qualifications, country of residence, language skills, and any other information you provide during your interactions with us. We may also request additional details, such as your date of birth and employment documents, if you are offered a job, to assist in the recruitment process.
We process your personal data to meet our contractual or pre-contractual obligations (under Art. 6 (1) b) GDPR) or, where applicable, to manage the employment relationship with you (as per Section 26 BDSG). Specifically, we use your data for these purposes:
Data Storage and Deletion
We retain your personal data only for as long as necessary to fulfill the specific processing purpose and strive to keep the storage period as short as possible. You can delete your personal data at any time directly through the account settings in our mobile application by selecting the "Delete my account" option. If the processing purpose for your data is no longer applicable or you choose to delete your data, we will only continue processing it if required by statutory retention periods (e.g., in compliance with legal obligations).
Your Rights Include:
-
The right to access information.
-
The right to correct or delete your data.
-
The right to restrict data processing.
-
The right to data portability.
-
The right to withdraw your consent with future effect.
-
The right to object at any time, based on your specific situation, to the processing of your personal data under Art. 6 (1) e) or f) GDPR, including any profiling based on these provisions.
To exercise any of these rights, you can email us at support@tripsly.app. Additionally, you have the right to file a complaint with a data protection supervisory authority. If you have any questions regarding the processing of your data, feel free to contact us anytime.