Privacy Policy

We explain what we collect, why we collect it, and how you can control your data.

Effective date: October 26, 2025

Introduction

AI Greek Trip Planner provides AI-powered trip planning services for Greece. This Privacy Policy explains how we collect, use, share, and protect your personal data in compliance with the General Data Protection Regulation (GDPR) and applicable privacy laws.

What Data We Collect

Information You Provide
  • Trip Preferences: Destination choices, travel dates, trip duration, travel style, budget, and specific interests you share with us
  • Session Data: Temporary session cookies to maintain your planning session (no personal identifying information stored)
  • Contact Information: Name and email address if you contact our support team
  • Payment Information: Processed securely through Stripe (we do not store credit card details)
Automatically Collected Information
  • Usage Data: Pages visited, features used, time spent on the service
  • Technical Data: Browser type, device type, IP address (for security and regional optimization)
  • Cookies: Session cookies (essential) and analytics cookies (with consent). See our Cookie Policy for details.

Why We Use Your Data

We process your data for the following purposes:

  • Service Delivery: To generate personalized AI trip itineraries based on your preferences
  • Payment Processing: To process €5 per trip payments through Stripe
  • Service Improvement: To analyze usage patterns and improve our AI models and features
  • Customer Support: To respond to your inquiries and provide assistance
  • Legal Compliance: To comply with applicable laws and regulations
  • Security: To protect against fraud, abuse, and security threats

Third-Party Services

We integrate with the following third-party services to provide our features. Your data may be shared with these services as necessary:

  • OpenAI (GPT-4): AI model for generating trip itineraries. Your trip preferences and inputs are sent to OpenAI's API to generate personalized travel plans. OpenAI's privacy policy applies.
  • Mapbox: Interactive maps and geocoding services. Location data from your itinerary is shared to display maps and routes. Mapbox's privacy policy applies.
  • Google Maps / Transit API: Public transport directions and transit information for Greek destinations. Google's privacy policy applies.
  • Stripe: Secure payment processing for €5 per trip charges. Stripe handles all payment information; we do not store your credit card details. Stripe's privacy policy applies.
  • Replit: Application hosting and infrastructure services.

Legal Basis (GDPR)

Under GDPR, we process your data based on:

  • Contract: To fulfill our service when you request an itinerary (Article 6(1)(b) GDPR)
  • Legitimate Interests: To improve and secure our services (Article 6(1)(f) GDPR)
  • Consent: For optional analytics cookies and marketing communications where required (Article 6(1)(a) GDPR)
  • Legal Obligation: To comply with tax, accounting, and other legal requirements (Article 6(1)(c) GDPR)

Payment & Billing

  • The service offers 2 free trip generations per session
  • Additional trips cost €5 per itinerary, processed securely through Stripe
  • Payment information is handled exclusively by Stripe; we do not store credit card details
  • Trip credits are non-refundable once an itinerary has been generated
  • Payment records are retained for tax and accounting purposes as required by law

Data Retention

  • Session Data: Automatically deleted when your browser session ends
  • Generated Itineraries: Not permanently stored unless you choose to save them
  • Support Communications: Kept for up to 24 months or until you request deletion
  • Payment Records: Retained for 7 years as required by tax and accounting regulations
  • Analytics Data: Aggregated and anonymized data retained indefinitely for service improvement

Your Rights Under GDPR

If you are in the European Union, you have the following rights:

  • Right to Access: Request a copy of your personal data
  • Right to Rectification: Correct inaccurate or incomplete data
  • Right to Erasure: Request deletion of your personal data ("right to be forgotten")
  • Right to Restrict Processing: Limit how we use your data
  • Right to Data Portability: Receive your data in a portable format
  • Right to Object: Object to processing based on legitimate interests
  • Right to Withdraw Consent: Withdraw consent at any time for consent-based processing
  • Right to Lodge a Complaint: File a complaint with your national data protection authority

To exercise these rights, please contact us via our contact form.

Cookies

We use cookies to provide and improve our service. See our comprehensive Cookie Policy for details on:

  • Types of cookies we use (essential, analytics, third-party)
  • Purpose of each cookie
  • How to manage your cookie preferences
  • How to opt out of non-essential cookies

Data Security

We implement industry-standard security measures including encryption (HTTPS/TLS), secure hosting, access controls, and regular security audits. However, no method of transmission or storage is 100% secure. Please use strong, unique passwords and keep them confidential.

International Data Transfers

Some of our third-party service providers (OpenAI, Stripe, Google) are based outside the European Economic Area (EEA). Data transfers to these providers are protected by Standard Contractual Clauses (SCCs) or other appropriate safeguards recognized under GDPR.

Children's Privacy

Our services are not directed to children under 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us immediately so we can delete it.

Changes to This Policy

We may update this Privacy Policy to reflect changes in our practices or legal requirements. We will post the updated policy with a new effective date. Material changes will be communicated through a prominent notice on our website or via email if applicable.

Contact Us

For privacy-related questions, to exercise your GDPR rights, or to raise concerns, please contact us:

Contact Form
AI Greek Trip Planner
Athens, Greece

Last Updated: October 26, 2025