Privacy Policy
Tripfold · Last updated: June 26, 2026
This policy explains how the Tripfold app ("the app," "we," "us") handles your information. The short version: the app is built so that we cannot see your travel data. There is no account, no login, no analytics, and no advertising. Most of what the app does happens entirely on your device.
The data you put into the app
Your itinerary, notes, checklist items, and any saved booking details live on your device. When you turn on sync to share a trip across your own devices or with your household, that data is encrypted on the sending device before it leaves it, using AES-256-GCM with a key derived from a passphrase that only you and the people you share it with know (PBKDF2-SHA256, 600,000 iterations).
The server that relays the data only ever holds the encrypted blob. It has no copy of your passphrase and no way to derive it, so it cannot read your trip. We, as the developer, cannot read it either. This is what "zero-knowledge" means here: the encryption key never leaves the devices you control.
If you lose the passphrase, no one (including us) can recover the synced data. That is the intended trade-off for privacy.
What we collect
Nothing is sent to us about who you are or what you do in the app. Specifically:
- We do not require or offer an account, email, or login.
- We do not use third-party analytics, advertising, or tracking SDKs.
- We do not collect your name, contacts, photos, or browsing activity.
- We do not sell or share any personal data, because we do not have it.
Location and maps
The app does not access your device location. It never asks for location permission, and it does not track where you are.
The map and "nearby places" features search around the cities in your itinerary, using the coordinates already stored in your trip, not your physical location. Those searches are performed through Apple Maps and are subject to Apple's privacy policy. Nothing about your location is sent to us or stored on our servers.
iCloud
Notes and checklist items can be backed up through Apple's iCloud so they survive a reinstall and follow you across your own devices. That storage is your private iCloud, tied to your Apple ID and governed by Apple. We have no access to it.
Diagnostics
If you choose to share crash and usage diagnostics with developers in your iOS privacy settings, Apple may provide us with aggregated, non-identifying crash reports through App Store Connect. This is Apple's standard developer reporting and contains no personal data we can tie to you. You control it in iOS Settings under Privacy & Security > Analytics & Improvements.
Children
The app is not directed at children and does not knowingly collect any information from anyone, including children.
Changes
If this policy changes, the "Last updated" date above will change and the current version will always be the one posted at this URL.
Contact
Questions about this policy can be sent to the developer via trond.ai.