Skip to main content

Privacy Policy

Plain-English, no dark patterns.

We wrote this in plain English on purpose. If anything here is unclear, message me on Threads and I'll explain.

What we collect

  • Account info: your email, the username you choose, and a hashed password.
  • Your saves: the places you save, the notes you write, ratings (disliked / meh / liked / loved), visited status, and the people you follow.
  • Anonymous product analytics: which pages were viewed, which buttons were clicked — collected via Ahoy and stored in our own database. Not tied to your name.
  • Technical basics: IP address and browser type, used to serve the app and keep it secure.

What we don't do

  • We don't sell your data. Ever.
  • We don't run third-party advertising trackers.
  • We don't load Meta, TikTok, X, or any other social-network pixel.
  • We don't read your contacts, calendar, or other apps.

Who can see your saves

Your saves are private to you by default. They become visible to other people only when:

  • You make your profile public — then anyone with the link can see your saved places.
  • You accept a follow request — that person can see your saves.

Per-place notes stay private until you choose to share them.

Third parties that touch your data

  • Fly.io — hosts the app and the database. Data is stored in the United States.
  • Google Places API — when you search for a place, we query Google for the details (name, address, photo).
  • Mapbox — renders the map tiles you see.
  • Ahoy — anonymous product analytics, stored in our own database (not a third party in the usual sense).

That's the full list.

Cookies

  • A session cookie, so you stay logged in.
  • A CSRF token cookie, so forms can't be forged.

No third-party ad cookies. No tracking pixels. No consent banner required under ePrivacy because no personal-data cookies are set beyond what's needed to run the app.

Your rights

You can ask us to:

  • Show you a copy of everything we have on you.
  • Give it to you in a portable format.
  • Delete your account and everything in it.

Message me on Threads for any of the above. I respond within seven days.

How long we keep your data

As long as your account is active. If you delete your account, we wipe your data within 30 days. Backups roll off within 60 days after that.

Kids

Cerca isn't for kids under 13. If you find out a kid under 13 has an account, message me on Threads and I'll delete it.

Changes to this policy

If we change this policy, we'll update the date below. If we make a material change (e.g. a new third party touches your data, or we change what we collect), we'll email everyone with an account.

Last updated: May 25, 2026

Questions? Message me on Threads.