Planera AI

Privacy Policy

Last updated: August 2026

Planera ("we", "us", "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the Planera mobile application (iOS and Android), the Planera website (planeraai.app), our email newsletters, and all related services (collectively, the "Service").

1. Who We Are

Planera is an AI-powered travel planning platform that provides personalized travel itineraries, flight and accommodation search, destination recommendations, fare monitoring, and community travel insights. Planera does not operate as a travel agency and does not book flights or hotels — search results link you to airlines, accommodation providers, and third-party booking platforms, where any booking is completed directly.

Planera does sell its own subscriptions and trip credits. Depending on where you subscribe, that payment is processed by Apple (App Store), Google (Google Play Billing), or Stripe (on planeraai.app). We never receive or store your card number in any of these cases. See Section 8.

Contact: privacy@planeraai.app

2. Information We Collect

2.1 Account & Authentication Data

When you create an account, we collect:

  • Full name
  • Email address
  • Password (stored as a salted SHA-256 hash — we never store your plain-text password)
  • Date of birth (optional)
  • Phone number and country code (optional)
  • Profile picture (optional, stored securely)
  • Authentication provider (email, Google, or Apple)

If you sign in with Google or Apple, we receive your name, email address, and profile picture from the respective provider. We verify identity tokens server-side and do not store your OAuth passwords or tokens.

2.2 Traveler Profiles

Where in-app booking features are enabled for your account, you may create traveler profiles containing:

  • Full name (first and last)
  • Date of birth and gender
  • Passport number, issuing country, and expiry date
  • Email and phone number

Passport data is stored securely and used solely to complete a booking you have asked us to make. In-app flight and hotel booking is currently disabled across the Service — Planera operates as a search and planning tool — so in normal use no passport data is requested or transmitted to any third party.

2.3 Trip & Travel Preference Data

  • Trip destinations and origin city
  • Travel dates, arrival time, and departure time
  • Budget (total and per-person)
  • Number of travelers and selected traveler profiles
  • Travel interests (e.g. food, culture, adventure, shopping)
  • Local experience preferences
  • Flight preferences (skip flights, preferred flight time)
  • Home airport, currency, and language preferences
  • Preferred airlines, seat preferences, and meal preferences
  • Hotel star rating and budget range preferences

2.4 Flight, Accommodation & Destination Search Data

When you search through the Service, we process only your search parameters to return results:

  • Origin and destination
  • Travel dates and number of nights
  • Number of passengers or guests
  • Cabin class or accommodation preference

Planera provides search only. We do not book flights or accommodation, and we do not collect passport details or payment information for travel bookings. To book, you are directed to an airline, accommodation provider, or third-party booking platform, where any personal and payment details you enter are handled under that provider's own privacy policy and are never stored on our servers.

Some search tools on our website (for example the public flight search on our destination pages) can be used without an account. For those, we generate and store a device identifier in your browser and use it solely to rate-limit searches and prevent abuse. It is not linked to an account, is not used for advertising, and is not shared with third parties.

2.5 Forwarded Booking Confirmations (Reservation Inbox)

If you choose to use the reservation inbox, we generate a unique forwarding address for your account. When you forward a booking confirmation email to it, we process the message to extract structured trip details such as:

  • Booking type (flight, accommodation, transfer, activity) and confirmation code
  • Dates, times, locations, price, and currency
  • Flight number, cabin, room type, and guest count where present
  • The sender address and subject line, kept for display and to verify the message

We check message authentication (DKIM/SPF) before trusting a forwarded confirmation. Raw email bodies are not stored. Confirmation emails often contain passport numbers, card last-4 digits, and home addresses; we retain only the extracted fields listed above and discard the original message content after parsing. This feature is entirely optional — if you never forward an email, no such data exists.

2.6 Wishlist & Watched Destinations

  • Saved destinations with priority tags (dream, planned, someday)
  • Personal notes and target travel dates
  • Deal alert preferences per destination
  • Watched destination cities for fare monitoring

2.7 Community Content

  • Travel insights and tips you share with the community
  • Likes and interactions with other users' insights

2.8 Engagement & Activity Data

We track the following events internally to improve the Service:

  • Trip generation events (destination, success/failure)
  • Outbound booking and partner-link clicks, and referral tracking
  • Achievement unlocks and daily check-in streaks
  • Referral code usage
  • Subscription purchases and trip credit usage
  • Push notification delivery, opens, and whether a notification led to an action in the app

We do not use any third-party analytics services (no Google Analytics, Mixpanel, Amplitude, or similar). All analytics are processed internally and reported in aggregate.

2.9 Billing & Subscription Data

When you purchase a subscription or trip credits, we store:

  • Your plan, subscription status, renewal date, and the platform you purchased on
  • Apple or Google transaction identifiers and receipt validation results
  • Your Stripe customer identifier and subscription identifier, for purchases made on our website
  • Trip credit balance and purchase history

We never receive, process, or store your card number, CVC, or expiry date. Card details are entered directly into a payment form hosted by Apple, Google, or Stripe and never reach Planera's servers.

2.10 Newsletter & Email Engagement Data

For our newsletter and deal emails we store:

  • Your email address, preferred language, and where you signed up
  • Subscription status (active, unsubscribed, suppressed) and the date it changed
  • Delivery outcomes reported by our email provider — delivered, bounced, or marked as spam
  • Whether you opened an email and which links you clicked, used to measure campaign performance and to stop mailing addresses that no longer engage

If an address hard-bounces or reports a message as spam, it is added to a suppression list and we stop sending to it. You can unsubscribe from any email using the link in its footer. See Section 9.

2.11 Device & Notification Data

  • Device push tokens (Expo Push Token) for sending notifications
  • Device platform (iOS/Android) and device name
  • Notification preferences (push, email, deal alerts, trip reminders)

2.12 Location Data

We may collect GPS coordinates only when you explicitly opt in to verify your presence at a trip destination (for achievement features). Location data is verified server-side to confirm proximity and is not continuously tracked, stored long-term, or shared with third parties.

2.13 Automatically Collected Data

We collect session tokens for authentication purposes and basic diagnostic data (crash logs and server-side error reports) to ensure stability. We do not use cookies for advertising or cross-site tracking. Session tokens and interface preferences (such as language and theme) are stored locally on your device; session tokens expire automatically.

3. How We Use Your Information

We use your information to:

  • Provide and operate the Service, including AI-generated itineraries and recommendations
  • Search for flights, accommodation, restaurants, and activities and link you to providers
  • Parse booking confirmations you forward to your reservation inbox into trip entries
  • Send transactional emails (password resets, account and billing notices)
  • Send our newsletter and deal emails where you have not unsubscribed, and measure how they perform
  • Send push notifications (trip countdowns, morning briefings, deal alerts) based on your preferences
  • Power the Low Fare Radar and deal alert features
  • Enable trip collaboration and sharing with other users
  • Moderate community-submitted travel insights
  • Track achievements, streaks, and referral rewards
  • Sell, renew, and support subscriptions and trip credits, and attribute partner-link clicks
  • Improve app performance and fix bugs
  • Ensure security, prevent fraud and abuse, apply rate limits, and enforce our terms

We do not sell your personal data.

4. AI & Automated Processing

Planera uses AI systems provided by OpenAI, Inc. (San Francisco, CA, USA) to generate personalized travel itineraries, recommend sights and attractions, moderate community insights, extract structured details from booking confirmations you forward, and power the Atlas travel assistant.

4.1 What Data Is Sent to OpenAI

When you use AI-powered features, the following data may be transmitted to OpenAI's API:

  • Trip destinations and origin city
  • Trip dates, arrival time, and departure time
  • Budget amount and number of travelers
  • Travel interests and local experience preferences
  • Language preference (for localized itineraries)
  • Messages you send to the Atlas travel assistant
  • Search results the assistant retrieves on your behalf — flights, accommodation, restaurants, attractions, weather, and place or route lookups
  • The text of a booking confirmation you forward to your reservation inbox, for the sole purpose of extracting its structured fields

The Atlas assistant works by calling internal tools (for example flight search, weather, or place lookup) and passing their results back to the model. Those results are travel data, not account data.

4.2 What Data Is NOT Sent to OpenAI

We do not send the following personal data to OpenAI or any other third-party AI service:

  • Your name, email address, or account credentials
  • Payment or billing information
  • Passport or identity documents
  • Profile picture or photos
  • GPS location data

4.3 Purpose and Safeguards

Data is sent to OpenAI solely to generate AI-powered travel content. OpenAI processes data in accordance with their API data usage policy and does not use API inputs to train their models. AI outputs are automated and informational only — no automated decisions produce legal or similarly significant effects, and you remain in full control of your travel decisions.

4.4 Your Consent

Before any data is sent to OpenAI, Planera requests your explicit consent (in compliance with Apple guideline 5.1.1/5.1.2). You may grant or withdraw this consent at any time via Settings. If you decline consent, AI-powered features (trip generation, sights recommendations, and Atlas chat) will be unavailable, but all other app features will continue to work normally.

5. Third-Party Services & Data Sharing

We share data with the following third-party services, each for a specific purpose:

5.1 Flight & Accommodation Search Providers

When you search, your search parameters (origin, destination, dates, passenger or guest count) are sent to our third-party travel data providers, SearchAPI.io and SerpApi, which return flight, hotel, and short-stay listings sourced from public travel search engines. Planera does not book travel or process travel payments; to book, you are linked to an airline, accommodation provider, or booking platform (such as Trip.com, Skyscanner, Kiwi.com, or Airbnb), where any personal and payment information you provide is governed by that provider's own privacy policy. We never receive or store your travel payment details.

5.2 OpenAI (AI Features)

Trip and preference data (as described in Section 4) is sent to OpenAI to generate itineraries and power AI features. See Section 4 for full details.

5.3 TripAdvisor (Restaurant & Attraction Data)

Destination and place names are sent to the TripAdvisor Terra API to retrieve restaurant and attraction recommendations with ratings and reviews. No personal data is transmitted.

5.4 Viator & GetYourGuide (Tours & Experiences)

Destination city names are sent to tour and experience partners, including the Viator API and GetYourGuide, to retrieve activity recommendations and booking links. No personal data is transmitted.

5.5 Unsplash (Images)

Search queries (destination names, activity types) are sent to the Unsplash API to retrieve destination and activity images. No personal data is transmitted.

5.6 Open-Meteo (Weather)

City coordinates are sent to the Open-Meteo API (a free public weather service) to retrieve real-time and forecast weather data for the Atlas assistant. No personal data is transmitted.

5.7 Mapbox & OpenStreetMap (Maps, Geocoding & Routing)

Place names and coordinates from your itinerary are sent to Mapbox to resolve addresses to coordinates, calculate walking and driving routes between activities, order a day's stops efficiently, and render static map images. Where Mapbox is unavailable we fall back to the community OpenStreetMap services (Nominatim and OSRM). Only place names and coordinates for the places in an itinerary are sent — never your account details, and never your device's GPS position.

5.8 Google & Apple (Authentication)

If you sign in with Google or Apple, identity tokens are verified server-side using the respective provider's public key infrastructure. We receive your user ID, email, name, and profile picture. Tokens are validated and discarded — they are not stored.

5.9 Postmark (Email Delivery & Events)

Transactional emails (password reset codes, account and billing notices) and newsletter or deal emails are sent through Postmark. Postmark also receives emails you forward to your reservation inbox and passes them to us for parsing, and reports delivery events back to us — delivered, bounced, marked as spam, opened, and link clicked — which we use to maintain our suppression list and measure campaign performance. Emails are sent from planeraai.app addresses.

5.10 Stripe (Website Subscriptions)

Subscriptions purchased on planeraai.app are processed by Stripe using Stripe's embedded checkout. Your card details are entered directly into Stripe's hosted payment form and are never transmitted to or stored on Planera's servers. We send Stripe your email address and an internal user identifier so your subscription can be matched to your account, and we store the Stripe customer and subscription identifiers Stripe returns. Stripe processes this data under its own privacy policy. If you open the Stripe customer portal from Planera to update your card, view invoices, or cancel, that session is hosted by Stripe.

5.11 Apple App Store & Google Play Billing (In-App Purchases)

Subscriptions and trip credit packs purchased inside the mobile apps are processed through Apple's App Store (iOS) or Google Play Billing (Android). Receipt and purchase-token data is verified server-side with Apple or Google to validate your subscription status. We also receive server notifications from Apple and Google about renewals, cancellations, and refunds. We do not process these payments directly and never see your card details, Apple ID password, or Google account password.

5.12 Expo Push Notifications

Push notification tokens and notification content (title and body text) are transmitted to Expo's push notification service to deliver notifications to your device.

5.13 Affiliate & Partner Networks

Some outbound links in the app, on the website, and in our emails are partner links. When you follow one, the destination provider or an affiliate network — such as CJ Affiliate, or a partner's own program (for example GetYourGuide or an airline) — receives your click together with an identifier that attributes the visit to Planera. We record internally that a link was clicked, but we do not send your name, email address, or account identifier, and we do not receive details of what you go on to buy. See Section 11.

5.14 Convex (Backend Infrastructure)

All user data is stored and processed on Convex, a serverless real-time database platform. Data is encrypted at rest and in transit.

All third-party partners are required to handle data securely and lawfully. We do not share data with any parties other than those listed above, except where we are legally obliged to or where it is necessary to protect our rights, our users, or the security of the Service. We do not sell personal data to any third party.

6. Trip Collaboration & Sharing

Planera allows you to share trip information with others:

  • Trip Collaborators: You may invite others to view or edit your trips. Collaborators can see trip details including destination, dates, itinerary, and activities. Collaborators are invited via unique tokens that expire after use.
  • Trip Share Links: You may generate public share links (read-only) that allow anyone with the link to view your trip details. Share links expire after 30 days. Your personal information (name, email, user ID) is not exposed through share links.
  • Booking Links: Flight booking details may be shared via secure links that expire after 30+ days.

7. Notifications

With your consent, we may send the following notifications:

  • Trip countdowns — reminders 7, 3, and 1 day before your trip
  • Morning briefings — daily itinerary summaries during your trip
  • Post-trip reviews — feedback prompts after your trip
  • Anniversary reminders — one year after a completed trip
  • Deal alerts — fare drops for watched destinations or matching flights
  • Occasional announcements — new features and curated deals, sent to selected audiences and subject to a frequency cap so you are not sent too many

You can manage notification preferences at any time via Settings, or by turning off notifications for Planera in your device settings. Notifications are opt-in and can be disabled individually (push notifications, email notifications, deal alerts, trip reminders). We record whether a notification was delivered and whether it led to an action in the app, so we can measure and reduce unhelpful notifications.

8. Subscriptions & Payments

Planera offers a free tier and premium subscriptions. Depending on where you subscribe, payment is processed by one of three providers:

  • Apple App Store — for subscriptions and trip credit packs bought inside the iOS app
  • Google Play Billing — for subscriptions bought inside the Android app
  • Stripe — for subscriptions bought on planeraai.app

In every case the payment form is hosted by the payment provider. We do not store or have access to your credit card number, Apple ID password, or Google account password. We store only the information described in Section 2.9: your plan and status, the platform you purchased on, transaction or receipt identifiers, and — for website purchases — your Stripe customer and subscription identifiers.

Your subscription is recorded against your Planera account and applies across every device you sign in on, whichever platform you bought it on. Because the three platforms have separate cancellation and refund systems, we record which one a subscription came from so that a change on one platform cannot silently cancel or overwrite a subscription bought on another.

Trip credit packs may also be purchased as one-time in-app purchases. Credit balances and purchase history are tracked in your account.

9. Newsletter & Marketing Emails

Planera sends a travel newsletter containing destination inspiration, curated flight deals, and product news. You may be subscribed in one of two ways:

  • By entering your email address in a newsletter signup form on our website, in our apps, or on a landing page
  • By creating a Planera account — new accounts are enrolled in the newsletter at signup, and this is disclosed at the point of signup

Every marketing email contains a one-click unsubscribe link in its footer, and you can also turn off email notifications in Settings or write to us at privacy@planeraai.app. Unsubscribing stops marketing email immediately; you will still receive transactional messages such as password resets and billing notices, which are not marketing and cannot be opted out of while you hold an account.

Marketing emails include open and click tracking (a small tracking pixel and redirected links) so we can measure which content is useful and stop mailing addresses that never engage. If a message hard-bounces or is reported as spam, the address is added to our suppression list and we stop sending to it permanently unless you resubscribe.

Where required by law, we rely on your consent for marketing email; otherwise we rely on our legitimate interest in marketing our own similar services to our own customers. You may withdraw consent or object at any time, with no effect on your account.

10. Referral Program

Each user receives a unique referral code. When someone signs up using your code, both parties receive trip credits. We track referral status (pending, completed, rewarded) and referral statistics associated with your account.

11. Third-Party Links & Affiliate Disclosure

Planera contains links to third-party websites and services (e.g. airlines, hotels, tour operators, booking platforms). Some of these are affiliate or partner links, and Planera may earn a commission if you book through them — at no extra cost to you. Commission never changes the ranking, price, or selection of the results we show you.

We are not responsible for the privacy practices or content of third-party services. You should review their privacy policies before providing personal data.

12. Data Retention

We retain personal data only for as long as necessary to:

  • Provide the Service and maintain your account
  • Comply with legal obligations, including tax and accounting rules for purchases
  • Resolve disputes and enforce agreements

Specific retention periods:

  • Account data: Retained until you request deletion
  • Session tokens: Expire automatically after the configured period
  • Password reset codes: Expire after 10 minutes
  • Trip share links: Expire after 30 days
  • Booking links: Expire after 30+ days
  • Forwarded confirmation emails: Raw message content is not retained; extracted trip fields are kept with the trip
  • Cached destination and search data: Refreshed or discarded on a rolling basis, typically within 30 days
  • Notification logs: Retained to prevent duplicate notifications and to apply frequency caps
  • Email events and suppression records: Retained while your address is on our list, and afterwards where needed to honour an unsubscribe or spam complaint
  • Billing records: Retained for as long as required by applicable accounting and tax law

You may request deletion of your account and all associated personal data from within the app, from planeraai.app/delete-account, or by contacting us at privacy@planeraai.app.

13. Data Security

We implement appropriate technical and organizational measures to protect your personal data, including:

  • Passwords stored as salted cryptographic hashes (never in plain text)
  • Data encrypted at rest and in transit
  • Server-side token verification for Google and Apple authentication
  • Session tokens with automatic expiration
  • Business API credentials stored only as sealed encrypted envelopes, never in plain text
  • Signature verification on incoming payment and email provider webhooks
  • Payment data processed exclusively by PCI-DSS compliant providers (Apple, Google, Stripe)
  • No credit card or payment information stored on our servers

However, no system is completely secure, and we cannot guarantee absolute security.

14. Your Rights (GDPR)

If you are located in the European Economic Area (EEA), you have the right to:

  • Access your personal data
  • Rectification — request correction of inaccurate data
  • Erasure — request deletion of your data ("right to be forgotten")
  • Restriction — restrict or object to processing, including direct marketing
  • Data portability — receive your data in a structured format
  • Withdraw consent — revoke consent for AI data processing, marketing email, notifications, or location access at any time
  • Lodge a complaint — with your local data protection authority (in Greece, the Hellenic Data Protection Authority)

To exercise your rights, contact us at privacy@planeraai.app. We will respond within 30 days.

15. Children's Privacy

Planera is not intended for users under the age of 18. We do not knowingly collect personal data from children. If we learn that we have collected data from a child under 18, we will delete it promptly.

16. International Data Transfers

Your data may be processed or stored on servers located outside your country, including the United States (for example OpenAI, Convex, Postmark, Mapbox, and Stripe). We ensure appropriate safeguards are in place in accordance with applicable data protection laws, including standard contractual clauses where required.

17. Business Accounts: Partner API, Supplier Portal & Agency Workspace

This section applies to businesses that use Planera's commercial products — the Partner API and Partner Portal, the Supplier Portal for travel product providers, and the Agency Workspace for travel agencies — in addition to (and not in place of) the rest of this Privacy Policy. Use of the Partner API is also governed by the Partner API Terms.

17.1 Business Account Data We Collect

When a business creates a portal or workspace account, we collect:

  • Business / brand name and a partner or tenant reference identifier
  • The contact email address of the business representative
  • Password (stored as a salted cryptographic hash — never in plain text) and, where enabled, a two-factor authentication secret stored in sealed form
  • Invite acceptance timestamp and terms acceptance record
  • API keys issued to the partner (stored hashed) and their status
  • API usage metadata — request counts, rate-limit and cap windows, and timestamps
  • For suppliers: the travel products submitted for listing, and their review status
  • An append-only audit trail of significant actions, with secrets redacted

We use this data to operate the products, authenticate business users, enforce rate limits and usage caps, bill metered usage where applicable, secure the service, and prevent abuse.

17.2 Supplier Credentials (Bring Your Own Key)

Agencies may connect their own supplier accounts (for example a GDS or bed bank) so that Planera can query them on the agency's behalf. Those credentials are stored only as a sealed encrypted envelope — plaintext credentials are never stored, logged, or returned by our API, and only a non-secret display hint (such as the last few characters of a key) is shown back in the interface.

17.3 Controller and Processor Roles

When a business sends data through the Partner API or Agency Workspace (for example, destination, dates, budget, and traveler counts used to generate an itinerary or a quote), the business acts as the data controller for any personal data of its own end users or clients, and Planera acts as a data processor (or sub-processor) that processes such data solely to provide the requested output. Planera processes this data only on the business's documented instructions (i.e. their API calls and workspace actions) and does not use it to independently market to, or build profiles of, their end users.

Businesses are responsible for establishing a lawful basis for their processing, for providing their own end users with an appropriate privacy notice, and for honoring data subject requests they receive. Where required by law, the applicable terms together with this section form the data processing terms between the business and Planera; a separate Data Processing Agreement (DPA) is available on request at partners@planeraai.app.

17.4 Sub-processors & Transfers

To deliver these products we use the same core infrastructure and AI sub-processors described elsewhere in this Policy, including Convex (backend storage) and OpenAI (itinerary generation). Business data may be processed in the United States and other countries, with appropriate safeguards such as standard contractual clauses where required.

17.5 Retention

Business account records, product listings, and API usage metadata are retained for as long as the account is active and as needed for billing, security, and legal compliance. Businesses may request deactivation of their account and deletion of associated personal data by contacting partners@planeraai.app.

18. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. Any changes will be posted within the Service with an updated "Last updated" date. Continued use of Planera after updates constitutes acceptance of the revised Privacy Policy. For material changes, we will notify you via the app or email.

19. Contact Us

If you have any questions or concerns about this Privacy Policy or your data, contact us at:

privacy@planeraai.app

Planera — Your journey, planned with intelligence.