Privacy Policy
Effective 22 September 2026
iTravel ("iTravel", "we", "us") is an app made by Ali Bozoğlan, an independent developer based in Türkiye. This policy explains what iTravel collects, why, who processes it for us, and the choices you have. If anything here is unclear, write to us at the contact address on iTravel's App Store page.
The short version
- iTravel works out which country and city you are in from your iPhone's location, so it can stamp your passport for you. The raw GPS readings are processed on your iPhone.
- The places you have visited, your journal and your settings are saved to your iTravel account so they are backed up and appear on your devices.
- Photos in your library stay on your iPhone. A photo only leaves it when you choose to send it — as your profile photo, to Stampy, or to verify a past trip.
- We do not sell your data, we do not use it for advertising, and we do not track you across other companies' apps or websites.
- You can delete your account and everything in it from Settings at any time.
What we collect
Account
When you sign in with Apple we receive a user identifier from Apple, and — if you choose to share them — your name and email address. If you use Apple's "Hide My Email", we only see a relay address. Your account is managed with Google Firebase Authentication.
Location
With your permission ("While Using the App" or "Always"), iTravel reads your device's location to detect when you arrive in a new country or city. Location readings are evaluated on your iPhone. What iTravel keeps is the result: the countries and cities you visited, a coordinate for each place, and the dates you arrived and left, plus your home city. This travel history is stored in your account so it is backed up and synced.
To name a place from a coordinate and to show local weather, iTravel sends coordinates to Apple (MapKit and WeatherKit). Apple processes them under its own privacy policy.
You can turn location access off at any time in iOS Settings. iTravel then stops detecting new places; your saved history stays.
Travel content you create
Journal notes, the people you mark as travelling with you, your wishlist, visa day limits you set, trips you add yourself, and an optional profile photo. These are stored in your account.
Photos
With your permission, iTravel reads your photo library on your iPhone to find the photos you took during each stay and show them in your journal. These photos are not uploaded or copied. A photo leaves your iPhone only when you choose one:
- as your profile photo (stored in your account), whether picked from your library or taken with the camera;
- to send to Stampy (see below), from your library or the camera;
- as a boarding pass, ticket or other document to verify a past trip (analysed as described below).
Stampy, the AI assistant
When you ask Stampy something, iTravel sends your message, any photo you attach, and the context needed to answer — for example your current city and country, or a summary of your trips when you ask about your own travels — to Google's Gemini models through Firebase AI Logic. The same service analyses documents you submit to verify a past trip; the document itself is not stored — only the outcome of the check, such as the dates it shows and a one-way fingerprint (hash) of the file that cannot be turned back into the document, is kept with that trip. Your Stampy conversations are saved to your account so you can see them again. Do not send Stampy information you would not want processed this way.
If you speak to Stampy instead of typing, iTravel uses Apple's speech recognition to turn your voice into text, with your permission for the microphone and speech recognition. Apple processes the audio — on your iPhone where supported — under its own privacy policy. iTravel does not keep the recording; only the resulting text is sent as your message.
Purchases
Subscriptions are sold and billed by Apple. We receive the status of your subscription (for example, which plan is active and when it renews) so we can unlock Premium. We never receive your payment details.
Diagnostics and usage
- Crash reports (Firebase Crashlytics): technical details about crashes, such as device model, iOS version and the code that failed, linked to your account identifier so we can fix problems you run into.
- Usage events (Firebase Analytics): which features are used — for example that a journey was replayed or Stampy was asked a question. These events never contain text you typed or location data.
- App Check (Firebase): confirms requests come from a genuine copy of iTravel, to protect our servers from abuse.
Notifications
Notifications about new countries and stays are scheduled on your iPhone. We do not collect a push token.
How we use your data
- To provide iTravel: detect and record your travels, build your map, journal and replays, count your days, run Stampy, back up and sync your data, and unlock Premium.
- To keep iTravel working and secure: fix crashes, prevent abuse, and understand which features are used so we can improve them.
- To reply when you contact us.
Where the GDPR or UK GDPR applies, we rely on: performance of our contract with you (providing the app and your account); your consent (location, photos, camera, microphone, speech recognition and notifications, which you grant and withdraw in iOS Settings); and our legitimate interests (security, crash diagnostics and product improvement), which you can object to by contacting us.
Who processes your data
We use a small number of service providers who process data on our behalf and only to provide their service:
- Google (Firebase) — authentication, cloud database and file storage, Crashlytics, Analytics, App Check, and Firebase AI Logic with Gemini models.
- Apple — Sign in with Apple, App Store purchases, MapKit, WeatherKit and speech recognition.
These providers may process data in the United States and other countries. Where required, transfers are covered by appropriate safeguards such as the European Commission's Standard Contractual Clauses.
We do not sell or rent personal data, and we do not share it for cross-context behavioural advertising. We may disclose information if the law requires it.
How long we keep it
Your travel history, journal, Stampy conversations and profile stay in your account until you delete them or delete your account. When you delete your account in Settings, your account data is erased from our systems, apart from anything we must keep by law. Crash reports and usage events are kept for a limited period by Google according to Firebase's standard retention settings.
Your rights and choices
- Permissions — location, photos, camera, microphone, speech recognition and notifications can be changed at any time in iOS Settings.
- Delete — delete your account and its data in iTravel: Settings › Account › Delete Account.
- Access, correction, portability, restriction and objection — email the contact address on iTravel's App Store page and we will respond within the time the law requires (normally one month).
- Complaints — if you are in the EU, UK or another region with a data protection authority, you can complain to it.
- California residents — you have the right to know, delete and correct personal information, and not to be discriminated against for exercising these rights. We do not sell or share personal information as those terms are defined in the CCPA/CPRA.
Children
iTravel is not directed at children under 13, and in the EU and UK under 16. We do not knowingly collect personal data from them. If you believe a child has given us personal data, contact us and we will delete it.
Security
Data is encrypted in transit and stored with Google Firebase, which encrypts data at rest. Access to your account data is limited to your signed-in account. No method of storage or transmission is completely secure, but we work to protect your information.
Changes to this policy
If we change this policy, we will update the date at the top and, for significant changes, tell you in the app.
Contact
Ali Bozoğlan — iTravel
Email: the contact address on iTravel's App Store page