Last updated October 1, 2026.
Who we are
Daily Detour is a trip planner published by Charles Tardif. For any question about your data, write to ctardif@transacts.fr.
What we collect
- Your email address and your password (stored hashed, never in plain text), to create your account. If you sign in with Google or with Apple, we receive your email address, your name and, for Google, your profile photo from them, never your password. With Apple you can hide your address, in which case we receive a relay address. With Apple we also keep the sign-in token that Apple issues, so we can revoke it with Apple when you delete your account, and it is erased along with the account.
- Your email address is also used for notification emails, a trip or a place added by an account you follow, a follow request, a comment or a like on your content. About one email per hour at most, except a friend request, which goes out within five minutes (once a day per person at most), each kind can be switched on or off in Settings, and a link in every email turns them all off at once. The other way around, the name of a trip, a place or a post you share, and the beginning of a comment you write, go out in the email of the people who follow you and of the person you comment on, just as in their feed. A record of each send (recipient, kinds, date, never the content) is kept for 90 days. These emails and notifications are written in the app language you use, which is stored with your account for that purpose.
- On the iPhone app, if you allow notifications, the identifier Apple gives your phone to receive them (the notification token) is saved with your account. It is used only to send you those same updates as notifications, instead of the email. It is deleted when you sign out on that iPhone, when you delete your account, when Apple tells us it is no longer valid, or after 60 days without opening the app. Notifications can be turned off in the Settings of the app or of the iPhone. If you turn them off in the iPhone’s Settings, emails resume the next time you open the app. When you turn them on, a confirmation notification arrives, and an irreversible fingerprint of the token (which cannot be used to recover it) is kept for 90 days so we don’t send it to you twice.
- Your username, your display name, your profile photo and your member number (the order in which you signed up). If you create your account with Google, your Google name and photo are set automatically, and you can change them in your settings. This information is visible to other members, which is what lets your loved ones find you. In your settings, you can choose to show only your first name and the initial of your last name (“Ariane M.”) instead of your display name. Your username, however, stays visible as you chose it.
- The content you create, trips, stops, activities, stays, expenses, restaurants, stay inspiration board, posts, lists, as well as the photos you upload (profile photo, stay photos) or add by URL.
- Your expenses stay with you and the members of your trips. Your prices (price per night of accommodations, trip budget) are visible to your friends unless you turn off “Show my prices to my friends” in the settings. Someone who sees your trip through search or a share link and isn’t your friend never sees your prices or your expenses. A copy of one of your trips made by someone else does not contain your expenses. A copy made by a friend while your prices are visible to them keeps them.
- Your social activity in the app, friend requests, shared content, likes and comments, and the username of the person who invited you if you arrived through their link. If you make a finished trip “visible in search”, any member can find it by its destination, copy it (you only see a number of copies, never who) and rate it from 1 to 5, without text, someone who finds it and isn't your friend sees neither your username, nor your photo, nor your notes, nor the trip description, only its titles and places as you wrote them (your friends and the trip's members see everything), a friend request coming from a trip shows you who asks without revealing anything to them before you accept.
- Technical errors the app runs into on your device (error message, page involved, browser or device type, your account), kept for 30 days so we can fix them. Never any audience measurement, never any ad tracking.
- The accounts you block, and the reports you send, your reason and a copy of the reported content, kept while they are being handled, so we can act even if the content is removed in the meantime.
We don’t collect your GPS location, your contacts, or any advertising data. No trackers, no selling of data, no ads.
What this data is used for
Only to make the service work, to show your trips, sync them across your devices, and allow sharing with the friends you have accepted. Your trips, your restaurants and your stays are visible to these friends. You can switch a trip back to private, and turn off sharing of restaurants or stays in Settings. If you create a share link for a trip, anyone who has that link can read it without an account, until you turn it off, photos included. The photos you upload are served only to you, to the friends you have accepted and to the people you have added to a trip, and removing a friend or blocking someone cuts this access on our servers and removes their photos from your device. A photo already displayed on the other person’s device may remain in that device’s cache for up to seven days. Only your profile photo is visible to every member.
Where it is hosted
The database and authentication are managed by Supabase, and the site is hosted by Vercel. Notification emails go out through the mail server of our email host, Galacsys (France), which sees only the address and the message. Notifications on iPhone go through Apple’s notification service, which receives your phone’s token, the text displayed and the link to the screen to open. The map uses Google Maps, which may receive the addresses of the places displayed. When you use automatic reading for an import (a PDF, a web page, pasted text, or a file the app can’t read on its own), the content of that document is sent to Google’s Gemini API to extract the plan from it, under its paid offering, which excludes the use of this data to train its models. We don’t keep the document, only the trip you create afterwards and a technical log (source type, size, number of tokens, date) deleted after 90 days. A spreadsheet that follows the template is read on our servers without going through Google. A local cache (on your device only) allows offline viewing, and it is cleared when you sign out.
Cookies
Session cookies, needed to keep you signed in, and one cookie that remembers the language you chose for the app. No advertising or audience measurement cookies.
Delete your account and your data
In the app, open Settings then “Delete my account”. Deletion is immediate, permanent and erases all your data, account, trips, restaurants, stays, posts, friend connections, likes, comments and uploaded photos. You can also request it by email at the address above. Two exceptions, a report about one of your pieces of content remains readable by the administrator alone until it is handled, then is erased no later than 90 days afterwards, and a technical error already reported remains for 30 days at most, with no link to your account anymore.
Your rights
Under the GDPR, you have a right to access, rectify, port and erase your data. Most of these rights can be exercised directly in the app, otherwise by email.