Legal

Privacy Policy

Effective date: June 27, 2026

Overview

Journey Agent ("we", "our", or "us") operates the Journey Agent web application. This policy explains what information we collect, how we use it, and the choices you have.

By using Journey Agent you agree to the collection and use of information in accordance with this policy.

Information We Collect

Account information. When you create an account we collect your email address and, if you choose to set one, a display name.

Trip and event data. We store the trips, days, and typed events (flights, hotels, activities, dining, rentals, Airbnbs) that you create or import so we can display them back to you.

Email ingestion. If you forward travel confirmation emails to your Journey Agent inbox address, we process the plain-text content of those emails to extract structured trip data. We log each inbound email (sender address, message ID, processing status) in an audit table. Raw email bodies are not stored after extraction is complete.

Usage data. We collect standard server logs (IP address, browser type, pages visited, timestamps). This data is used solely for operating and improving the service.

How We Use Your Information

We use the information we collect to:

  • Create and manage your account and authenticate you securely.
  • Store, display, and organize your trips and events.
  • Parse forwarded confirmation emails and create draft trips on your behalf.
  • Send transactional emails (e.g. password reset, account verification).
  • Diagnose errors, monitor service health, and improve the product.

We do not use your data for advertising or sell it to third parties.

AI Processing

Journey Agent uses Claude (by Anthropic) to extract structured data from forwarded confirmation emails. Only the plain-text content of emails you forward to us is sent to Anthropic's API for processing. Anthropic's use of this data is governed by Anthropic's Privacy Policy.

Data Storage and Security

All data is stored in Supabase (PostgreSQL) hosted on AWS infrastructure. Data is encrypted at rest and in transit (TLS). Row-level security policies restrict data access so each user can only read their own records.

No security measure is 100% foolproof. We encourage you to use a strong, unique password and to contact us immediately if you suspect unauthorized access.

Data Retention

We retain your account and trip data for as long as your account is active. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it for legal or audit purposes.

Your Rights

You have the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion of your account and associated data.
  • Export your trip data in a portable format.

To exercise any of these rights, email us at privacy@journeyagent.app.

Changes to This Policy

We may update this policy from time to time. When we do, we will update the effective date at the top of this page. Continued use of Journey Agent after changes are posted constitutes your acceptance of the updated policy.

Contact

Questions about this policy? Email us at privacy@journeyagent.app.