Last updated 7 August 2026
reeldot is a travel-planning app: you save places you want to go, pin them on a map, and build itineraries — on your own or with people you invite. This policy explains what we collect, why, and what control you have over it.
reeldot is operated by the reeldot team. For any privacy question, or to exercise any of the rights below, contact support.reeldot@gmail.com.
| Data | Why we have it |
|---|---|
| Your Google account email, name and profile picture | You sign in with Google. Your email identifies your account and is how every piece of your data is looked up. Your Google picture is used as your avatar on shared trips until you set your own inside reeldot; on your public profile and in follower lists, only the reeldot avatar is ever shown. |
| Places you save — name, coordinates, country, address, category, ratings, opening hours, notes, and photos | This is the content of the app. It is what a "pin" is. The photo comes either from you or from Google Places, and we keep our own copy of it so the pin still has a picture after Google's link expires. |
| Trips, itineraries, pin lists, flight and hotel details you enter | To build and show your plans. |
| Reel links you share into the app, plus a cached copy of the preview image | So a saved reel still shows its preview after the original link expires. We keep the still image only — see the note below. |
| Your profile — username, nickname, bio, location, avatar, cover and the social handles you add — and who you follow | Only if you fill it in. Profiles, follows and the lists you publish are visible to other reeldot users, and your social handles link out to those accounts. |
| Collaborators on trips you share, their activity on those trips, and the invite links you generate | So everyone on a shared trip sees the same itinerary and who changed what. An invite link holds a random token, not your details; inviting someone by their reeldot username records that username against the trip. |
| Messages you post on a shared trip's board | So everyone on the trip sees them. Visible to that trip's collaborators. |
| Support requests — your message, our replies, and a short diagnostics block | Only when you contact us from inside the app. The diagnostics are the app version, whether you installed it or are in a browser tab, your screen size, your language, whether you were online, and your browser's user-agent string — enough to reproduce a bug. No location, and no content from your trips. |
| Names our word filter refuses | If a username, display name, bio or location is rejected for containing a slur, we keep what was typed for 90 days. Not to police it — the attempt was already refused and nothing was saved — but so we can spot the filter wrongly rejecting ordinary words and fix it. |
| Accounts you block, and reports you send us | Blocking records the pair so we can keep you apart. A report records what you reported, why, and a copy of the content as it read at the time — otherwise editing it afterwards would hide what was reported. The person you report is not told who reported them. |
| A session cookie | Keeps you signed in. It is session_token, it lasts 7 days, your
browser will not let JavaScript read it, and it is the only cookie reeldot sets.
It is not used for advertising or tracking. |
The app also links out: "find reels" opens a search or hashtag page on Instagram, TikTok or YouTube for the place's name, a pin can link to its own website or phone number, directions open in Google Maps or Google Flights, and "find a place to stay" opens a hotel search. Following any of these leaves reeldot, and what happens next is governed by that site's own privacy policy, not this one. We send them nothing about you — only the place name, or the dates and area, that forms the link.
A booking link may route through an affiliate network on the way to the partner, so that a booking can be credited to us. That network sees the click and sets its own cookie. This happens only when you tap such a link — none of it runs while you are simply using the app, and there is no code from them in the app at all.
Support tickets are read by whoever answers them, along with the diagnostics attached to the ticket. A report is read the same way, including the copy of the reported content. Beyond that, access to the database is limited to running and repairing the service, and we do not read people's trips for any other reason.
reeldot runs on Google Cloud in Singapore (asia-southeast1). If you use the app from somewhere else, your data travels there. Text and structured records live in a managed database; images live in Google Cloud Storage.
Images served to the app are stored in a publicly readable bucket — anyone with the exact URL of one of your pin photos can view it, so treat photos you attach to pins as shareable rather than private.
Like any web service, our hosting keeps routine request logs, which include IP addresses. They exist to keep the service running and to investigate abuse, they are not linked to your content, and they expire on their own after a short period. We also count requests per IP address, in memory only, to rate-limit the API — nothing about that is written down.
Traffic to reeldot is encrypted in transit. Your session cookie is signed, restricted to our own site, and unreadable by scripts in the page.
Deleting your account removes your profile, pins, trips, itineraries, pin lists, flights, hotels, saved reels, follows and followers, your collaborator membership on other people's trips, and the images you uploaded.
It happens in two stages. Straight away, your account is hidden: your profile, published lists and search entry disappear for everyone else, you are signed out everywhere, and any paid plan is cancelled so you are not charged again. After 30 days, everything above is permanently deleted and your username becomes available for someone else to claim.
Until those 30 days are up you can change your mind: sign in again and choose Restore account, and everything comes back as it was. A cancelled paid plan does not come back — you would need to subscribe again. Once the 30 days pass, nothing can be recovered.
Three things do not go with it:
You can see everything we hold about you inside the app, and you can change or remove any of it at any time. You can delete your entire account from Settings → Account → Delete Account, or follow the instructions at reeldot.app/delete-account. Your account is hidden immediately and permanently deleted 30 days later; you can restore it yourself at any point before then.
Depending on where you live you may also have the right to a copy of your data, to correct it, to restrict how it is used, to object to how it is used, or to complain to your local data protection authority. Email support.reeldot@gmail.com and we will respond within 30 days. We will not charge you for this or treat you differently for asking.
Where the law requires a reason for holding your data: we handle your account and content because we cannot provide the app without it, we handle support requests and abuse investigation because we have a legitimate interest in the service working and being safe, and anything you choose to make public — a profile, a shared list — we handle because you asked us to.
reeldot is not directed at children under 13, and we do not knowingly collect their data. If you believe a child has given us information, email us and we will remove it.
If we change how we handle your data we will update this page and its date. Material changes will be announced in the app.