Last updated: June 2026. Contact: letmecodone@gmail.com
This policy explains what WildExit ("the app") collects, how it's used, and the choices you have. By using the app you agree to these practices. We collect only what's needed to run the app and never sell your data.
Trip details (name, source, destination, dates, budget), member names you add for splitting, itinerary stops, tasks, vault documents and photos, and profile info (name, photo, email, phone, emergency contact). We do NOT collect or store payment identifiers such as UPI IDs, card numbers or bank details. If you use "Mark as Paid", the method, date and any note or receipt photo you choose to add are stored on the trip and visible to that trip's other members — this is a record you create yourself; we don't verify it and it isn't a payment, receipt or invoice issued by us. Trips, expenses and Community Picks sync to your account in the cloud. Vault files stay on your device by default; documents can additionally be backed up to Google Cloud Storage and/or to a folder in your own Google Drive account, while photos and videos remain on your device unless you back them up.
Basic technical data needed for core features — for example, a place name you type is sent to your device's geocoder to position stops on the map, and map tiles are fetched from OpenStreetMap. In-app translation (Google ML Kit) runs on your device — text being translated is not sent to a server. We do not track your background or precise GPS location, and we do not use advertising trackers.
Sign-up creates an account with Google Firebase Authentication using your email and password. Google handles authentication securely; we do not store your password. A verification email is sent to confirm your address, and you can reset your password by email. If you choose "Continue with Google" instead, Google shares your name, email address and profile photo with us to create or sign in to the same kind of account — we never see your Google password.
Your trips, expenses, itineraries, tasks and Community Picks are stored in Google Cloud Firestore under your account so they sync across your devices and restore after reinstalling. Shared trips are visible to members you invite by email; Community Picks you share are visible to other travellers for the same destination.
Vault files are kept on your device by default. You can optionally back up documents to Google Cloud Storage and/or to a "WildExit" folder in your own Google Drive so they're available on other devices. Photos and videos stay on your device unless you back them up. We only access the Google Drive files this app creates (Google's "drive.file" scope) — we cannot see or touch your other Drive files, and you can disconnect access at any time from the Vault tab.
If you use AI itinerary generation or the assistant, the inputs you provide (source, destination, days, style, budget, preferences and any text you type) are sent to Google's Gemini model via Firebase AI Logic to produce suggestions. We do not send your contacts, photos, passwords or payment details. Please don't enter sensitive personal information in AI prompts.
To keep the app stable we use Firebase Crashlytics, which reports crashes and certain errors. Reports include diagnostic data such as device model, OS version, app version, a random installation identifier and a short trail of in-app actions. They do not include your photos, documents, passwords or trip contents.
We rely on Google/Firebase (Authentication, Firestore, Cloud Storage, AI Logic, Crashlytics), Google Sign-In, Google Drive (optional backup), Google Maps (navigation hand-off), Google Places (optional place look-ups), OpenStreetMap (map tiles), on-device Google ML Kit translation, your device's geocoder, WhatsApp and email apps when you choose to share. Each handles data under its own privacy policy. Map data is © OpenStreetMap contributors, available under the Open Database License (ODbL).
Data may be processed and stored in countries other than your own — mainly by Google/Firebase, including in the United States — under their standard safeguards for international transfers.
Local data stays on your device until you delete it or uninstall the app. Cloud data is retained until you delete it or delete your account. Data in transit is encrypted (HTTPS/TLS).
You can view and edit your details in Settings at any time. You may also email us to request access to, correction of, or deletion of the personal information associated with your account.
You can delete your account at any time from Settings. Deleting your account initiates removal of your account and associated cloud data from our active systems; some information may remain in backups for a limited period before being automatically deleted. Shared content previously visible to other users — such as Community Picks — may remain visible unless you remove it separately first.
WildExit is not directed at children. We do not knowingly collect personal data from children below the minimum age required by applicable law to use the service without parental consent. If you believe a child has shared personal data with us, contact us so we can remove it.
For any privacy question, complaint, or request to access, correct or delete your data, email us below. We aim to acknowledge requests promptly and resolve them within the time required by applicable law.
We may update this policy as features evolve; material changes will be reflected here with a new "last updated" date.
Questions about how your data is handled? Email letmecodone@gmail.com.