Last updated: February 17, 2026
1. Introduction
DayoffBuddy ("we", "our", or "us") is a travel discovery web application. This Privacy Policy explains how we collect, use, and protect your information when you use our service at dayoffbuddy.com (the "Service").
2. Information We Collect
We collect the following types of information:
- Account Information: When you sign in with Google, Facebook, or email, we receive your name and email address. We do not store your OAuth provider profile picture.
- Profile Information: Display name, surname, and profile image you upload via our Service.
- Usage Data: Activity preferences, saved trips, and trip view counts to personalize your experience.
- Cookies & Session Data: We use session cookies (JWT-based) to keep you signed in. We do not use third-party tracking cookies.
3. How We Use Your Information
- To authenticate and manage your account
- To personalize trip recommendations based on your activity preferences
- To allow you to save and manage trips
- To send magic link emails for passwordless sign-in (via Resend)
- To improve and maintain our Service
4. Third-Party Services
We use the following third-party services:
- Google OAuth: For sign-in authentication
- Facebook Login: For sign-in authentication
- Resend: For sending sign-in emails
- Cloudinary: For storing user-uploaded profile images
- Neon (PostgreSQL): For database storage
- Vercel: For hosting the Service
These services have their own privacy policies. We do not sell your data to any third party.
5. Data Storage & Security
Your data is stored securely in our database hosted on Neon (PostgreSQL) with SSL encryption. Authentication tokens are encrypted using industry-standard JWT encoding. We take reasonable measures to protect your personal information, but no method of transmission over the Internet is 100% secure.
6. Data Retention & Deletion
We retain your data for as long as your account is active. You may request deletion of your account and all associated data at any time. See our Data Deletion Instructions for details on how to request data removal.
7. Your Rights
You have the right to:
- Access the personal data we hold about you
- Request correction of inaccurate data
- Request deletion of your data
- Withdraw consent for data processing at any time by deleting your account
8. Children's Privacy
Our Service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by updating the "Last updated" date at the top of this page.
10. Contact Us
If you have any questions about this Privacy Policy, please contact us at: pongsatorn.kanja@gmail.com