Privacy policy
Been There Done That · updated 2 September 2026
Been There Done That is a travel recommendation app. You write short recommendations about places you have been, and you see only what friends in your own private circles wrote. This policy explains exactly what is stored, why, and what is never done with it.
What is collected
- Identity: the email address and name from the Google or Apple account you signed in with, and the profile picture if there is one. We never receive or store your password.
- What you create: the recommendations you write, the places they point at, the photos you attach, the circles you opened or joined, and the countries you stamped in your passport.
- Preferences: your language, and how the app should address you in Hebrew, which has grammatical gender.
- Product usage: which screens and actions were reached, and on which app version and operating system. These are counts and labels only. They never carry the text of a recommendation, a place name, an email address or any identifier from an advertising network, and they are recorded on our own servers rather than sent to any analytics company.
What is not collected
- No phone number is stored, and the app has no access to the contacts on your device.
- No background location tracking. Coordinates are stored only for a place you deliberately attached to a recommendation.
- No advertising networks and no advertising identifiers.
- No third-party tracking SDK of any kind.
Who can see what you wrote
A recommendation is visible only to members of the circles you chose to send it to. That rule is enforced in the database permission layer rather than in the app, so a request sent directly to the server cannot get around it either. People who are not in the circle do not see the content, the circle's name, or who else is in it. There is no discovery, no friends of friends, and no way to join a circle without a personal invitation.
What we do not do
- We do not sell or share personal information with third parties.
- We do not sell aggregate insights about our users.
- We do not show advertisements, and no content in the app is sponsored.
Third-party services
- Google and Apple: sign-in only. They learn that you signed in, never your content.
- Supabase: database and photo storage, on servers in the European Union.
- Google Places: to identify the place you picked. The request is made from our server and carries no identifier of yours.
- Booking and activity partners: only when you tap an outgoing link yourself. We record that a link of that kind was tapped, not who tapped it.
How long it is kept
Your account and content are kept for as long as the account exists. Product usage rows are kept for one year and then deleted.
Deleting your account
You can delete your account from inside the app, on the settings screen, or from this page. Deletion removes your profile, your recommendations and your saved list. Circles you opened continue to exist for their other members, with no link to you.
Children
The app is not directed at children under 13, and we do not knowingly collect information from them.
Contact
For any question or request about your information: privacy@btdt.pro