Privacy
Joinero is currently a small, invite-driven community test, not a finished product. This page is a plain-language, minimal disclosure of what we collect and why during this phase — it will be replaced by a full privacy policy before any public launch. Questions? Email help@joinero.app.
What's collected
- Account details — name, email, and phone number for travelers, agencies, and admins.
- Agency KYC documents — business registration and identity documents agencies submit for admin approval.
- Trip and booking activity — tours joined, headcounts, and messages exchanged between travelers and agencies.
- Device and diagnostics — app version, OS version, crash logs, and a push notification token, so we can fix bugs and notify you about updates.
Who processes it
We keep the list of processors short and use each one for a specific job:
- Supabase — hosts the database, authentication, and file storage for all app data.
- Firebase (Google) — delivers push notifications and collects crash reports.
- Cloudflare — hosts the website and distributes the signed Android APK.
- Resend — sends transactional email, like sign-up confirmations and booking updates.
Retention & deletion
We keep account and booking data for as long as your account is active. Agency KYC documents are kept only as long as needed for approval review and are removed if an application is rejected. To delete your account and associated data, email help@joinero.app from the address on your account — we'll confirm once it's done.
Three ground rules for this test
- This is a test build, not a finished product — expect rough edges, and don't rely on it for anything time-critical.
- Test data may be reset as we iterate, so don't treat anything in the app as permanent.
- Don't share another user's personal information without their consent; report concerns to help@joinero.app.