TourifyHub

Privacy Policy

Last updated 28 August 2026 · Operated by Pan Games Oy, Veijolantie 51, 08150 Lohja, Finland

TourifyHub is software for tour operators. An operator uses it to build an itinerary, price it from supplier rates, send booking requests to suppliers, and send offers to their customers. This page says what personal data that involves, why we hold it, and how long for.

Three different groups of people appear below and it matters which you are. An operator is a company that has an account here and uses the product. A traveller, a supplier or a customer is somebody whose details an operator puts into it. And somebody who has simply asked us for a demo has no account here at all and belongs to no operator — section 5 says separately how long we keep what they told us, because the rest of that section is written around an account and they have none. For an operator's own account we decide how the data is used; for everything an operator puts in, the operator decides and we hold it on their behalf.

1. What we hold, and why

DataWhy
Account details of a person signing in — name, email address, role, organisation To let them sign in and to show colleagues who did what
Itineraries, supplier rates, bookings, invoices, offers The operator's own working records — this is the product
Traveller, customer and supplier details entered by an operator To produce offers, booking requests and vouchers for the trip they belong to
Mailbox contents from a connected mailbox — see section 2 To send the operator's letters from their own address and to show the replies
Technical records — sign-in times, audit entries, error logs Security, and being able to say what happened when something goes wrong
What somebody tells us when they ask for a demo — their name, email address, company, team size and message To answer the enquiry. This is the only thing on this page belonging to somebody who has no account here

We do not sell personal data, we do not use it for advertising, and we do not use it to train machine-learning models.

2. A connected mailbox

An operator may connect a Gmail or a Microsoft Outlook mailbox so that offers and booking requests go out from their own address rather than from ours, and so replies come back into the product. This is optional; the product works without it.

What we access

We ask for exactly the permissions those three things need and no others. For Gmail that is gmail.readonly, gmail.send and the address itself. We do not ask for permission to modify, label, archive or delete anything in a Gmail mailbox.

Who can read it

When a mailbox is connected as the organisation's, everybody in that organisation who holds the "view emails" permission can read what it holds — the product tells you how many people that is before you connect. When it is connected as your own, only you can read it, including our own staff.

Disconnecting and deleting

Google API Services Limited Use

TourifyHub's use and transfer to any other app of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Specifically, Google user data obtained through these scopes is used only to provide and improve the features described in this section. It is not transferred to anyone else except as necessary to provide those features, to comply with applicable law, or as part of a merger or acquisition. It is not used for advertising, and it is not sold. It is not used to develop, improve or train generalised artificial-intelligence or machine-learning models. No human reads it except with the operator's explicit consent, where it is necessary for security purposes such as investigating abuse, to comply with applicable law, or where the data has been aggregated and anonymised.

3. Artificial intelligence in the product

Some features send text to a third-party model provider — for example reading a supplier's price list, or drafting a paragraph for an offer. What is sent is the document or the text the operator asked us to work on. Mailbox contents are not sent to a model provider, and nothing sent to a provider is used by them to train a model.

4. Where it is held, and who else touches it

Data is held in the European Union with Supabase (PostgreSQL and file storage). We use these processors:

5. How long we keep it

We keep personal data for as long as the account it belongs to is open. What happens after that depends on what kind of record it is:

Apart from the short-lived technical records above, deletion is carried out on request and on account closure — it is an action somebody takes, not a timer. So if you want your data removed, ask us, and the periods above are what we hold ourselves to from that point.

6. Your rights

If you are in the UK or the EEA you may ask for a copy of the personal data we hold about you, ask for it to be corrected or deleted, object to how it is used, or ask us to restrict it. If the data was entered by an operator, ask the operator first — they decide what happens to it and we act on their instructions. Write to us at gokhan@thepangames.com and we will answer within one month. You may also complain to your data-protection authority.

7. Security

Access to an operator's data is enforced in the database itself, row by row, so one operator cannot read another's. Mailbox credentials are stored encrypted and are readable only by the server-side code that sends and fetches mail. Connections are over TLS.

8. Changes

If this policy changes materially we will say so in the product before the change takes effect. The date at the top is when it last changed.

9. Contact

Pan Games Oy, Veijolantie 51, 08150 Lohja, Finland — gokhan@thepangames.com