Skip to content
← Back to journiiapp.com

Privacy policy

Last updated: 1 August 2026

Journii is not open yet. The only personal data we hold is what you give us when you join the waitlist. This page explains exactly what that is, what we do with it, and how to make us delete it.

Who we are

Journii is a journey platform for travellers in Europe, with extra features for exchange students. It is run by Bart Sebastiaan Zanen, at Barcelona, ES.

Under the General Data Protection Regulation (GDPR) we are the data controller for the personal data described on this page. That means we decide what is collected and why, and we are the people you hold responsible for it.

Write to privacy@journiiapp.com about anything on this page.

What this policy covers

This policy covers journiiapp.com and the waitlist form on it. That is the only thing Journii runs today.

The web app at app.journiiapp.com and the Journii mobile app have not launched. When they do, they will collect far more than an email address, so we will publish a fuller policy before either one opens and email everyone on the waitlist when we do. Nothing here grants us permission to collect anything beyond what is listed below.

What we collect

When you join the waitlist we store three things:

  • Your email address — the one you type into the form.
  • The city you type— where you are going, or where you want to go. We also keep a tidied-up version of it, so that “Milano” and “Milan” count as one city rather than two. That is derived from what you typed; it is not extra information about you.
  • A timestamp — when you signed up.

We do not ask for your name, date of birth, university, phone number, photo, or location. There is no account to create yet.

Cloudflare serves this website. To deliver a page and to block attacks it processes your IP address and basic request details.

To stop scripts from flooding the form, we count how many signups come from one internet connection each hour. To do that we store a one-way fingerprint of your IP address — the address itself is never written to our database, and the fingerprint cannot be turned back into it. It is not linked to your waitlist entry, so it cannot be used to work out who signed up from where. We delete it within two hours.

Why we collect it

  1. To email you once, when Journii opens in your city. That is the whole point of the waitlist.
  2. To decide which cities to open first. A city with four hundred people waiting beats one with four, because Journii is worthless without other people in it.
  3. To stop abuse, such as a script submitting hundreds of fake addresses. That is what the connection fingerprint is for, and it is used for nothing else.

We do not use your data for anything else. We do not profile you and we make no automated decisions that produce legal effects for you.

Where your data is stored

The waitlist lives in a Postgres database hosted by Supabase, in an EU region. Data is encrypted in transit and at rest. The website itself cannot read the table: the public site is allowed to add an entry and to ask for totals, and has no permission to read a single row. So the list cannot be downloaded from the site, whatever anyone does to the page in their browser.

Two companies process data on our behalf, each under a data processing agreement:

  • Supabase — database hosting, EU region.
  • Cloudflare — serving the website and protecting it from attack. Cloudflare operates a global network, so request data may be handled outside the EU under Standard Contractual Clauses.

There is no bulk email provider on that list because there is not one. The launch email is sent by hand, so nobody is handed the list in order to send it. If that changes, this is where it will show.

No one else receives your data. We may disclose it if the law compels us to, and we will tell you unless we are forbidden from doing so.

How long we keep it

We keep your waitlist entry until twelve months after Journii opens in your city, or until you ask us to delete it — whichever comes first. After that we delete it.

If we decide not to launch Journii at all, we delete the entire waitlist within 90 days of that decision and tell everyone on it.

The connection fingerprint used to block abuse is deleted within two hours, automatically. Nothing keeps it beyond that.

When you ask for deletion we act within 30 days. Encrypted backups are rotated out within a further 30 days, after which no copy remains.

We do not sell your data, and we do not track you

We do not sell, rent, or trade your data. We do not share it with data brokers, advertisers, or ad networks. There is no third-party advertising pixel on this site, no cross-site tracking, and no behavioural profiling.

This site sets no cookies of its own. Cloudflare may set a strictly necessary cookie to tell real visitors from bots. It carries no advertising identifier.

Your rights

The GDPR gives you the following rights over your personal data. They are free to use.

  • Access — ask what we hold about you and get a copy of it.
  • Rectification — have anything wrong corrected, such as a mistyped address or the wrong city.
  • Erasure — have your data deleted.
  • Restriction — have us pause processing while a dispute is sorted out.
  • Portability — receive your data in a machine-readable file, or have us send it to another provider where that is technically possible.
  • Objection — object to processing we base on legitimate interests.
  • Withdrawal of consent — take back the consent you gave, at any time, without giving a reason.
  • Complaint — lodge a complaint with a data protection supervisory authority.

To use any of them, email privacy@journiiapp.com. We reply within one month. If a request is complicated we may take up to two months more, and we will tell you why within the first month. We may ask you to write from the address you signed up with, so that we do not hand your data to someone else.

You can complain to the supervisory authority where you live, where you work, or where you think the problem happened. Our lead authority is the Agencia Española de Protección de Datos (AEPD) in Spain. You do not have to talk to us first, though we would rather you did.

How we protect it

The site is served over HTTPS. The database is encrypted, sits behind row-level security, and only the people who need access have it, with two-factor authentication on their accounts. If a breach happens and it is likely to put your rights at risk, we notify the supervisory authority within 72 hours and tell you without undue delay.

Age

The waitlist is for people aged 16 and over. We do not knowingly collect data from anyone younger. If you believe a child’s data has been submitted, write to privacy@journiiapp.com and we will delete it.

Changes to this policy

We update this page when what we do changes, and we change the “last updated” date at the top. If a change is significant — new data, a new purpose, a new processor — we email everyone on the waitlist before it takes effect. Ask us and we will send you the previous version.

Contact

Email privacy@journiiapp.com, or write to Bart Sebastiaan Zanen, Barcelona, ES.

We have not appointed a Data Protection Officer, and are not required to. That obligation falls on public authorities, on organisations whose core activity is monitoring people on a large scale, and on those handling special categories of data on a large scale. A waitlist holding an email address and a city is none of those. If Journii grows into something that is, we will appoint one and say so here.