Privacy Policy
1. Controller and contact
ShipTrip is provided by:
André Jaszka
Email: privacy@jaszka.com
2. Summary
- The developer operates no developer-owned servers.
- Travel data is stored on your device and, when iCloud is available, in the private CloudKit area of your Apple Account.
- ShipTrip contains no advertising, tracking, or third-party analytics SDKs.
- Calendar sync, local reminders, photo selection, export/import, and AI import through Google Gemini are optional.
- Gemini import works only with your own API key and transmits the text you paste directly to Google.
3. Data processed in ShipTrip
Depending on how you use the app, ShipTrip processes:
- cruise titles, travel dates, cruise lines, and ships
- cabin and booking details
- routes, ports, port times, sea days, and excursions
- notes, ratings, and expenses
- travel and port photos selected by you
- wish-list trips and custom cruise lines or ships
- app settings, calendar selection, and mappings for calendar events created by ShipTrip
- an optional Gemini API key
4. Local storage and private iCloud/CloudKit
ShipTrip stores app data locally using SwiftData. If you are signed in to iCloud and iCloud is available for ShipTrip, Apple synchronizes this data, including photos you add, through the private CloudKit area of your Apple Account. The developer operates no server for this purpose and cannot access your private CloudKit area.
Apple's processing is governed by the Apple Privacy Policy.
5. Optional AI import with Google Gemini
AI import is not configured by default. It becomes available only after you store your own Gemini API key in Settings.
- The API key is stored in the iOS Keychain using the
ThisDeviceOnlyaccessibility setting. - When validating the key, ShipTrip sends a short test prompt and the key directly to the Gemini API.
- Each time you initiate an AI import, ShipTrip sends the complete text you pasted into the import field, together with extraction instructions, directly to Google. Photos and other files are not sent automatically.
- ShipTrip does not receive your API key, booking text, or Google's response on any developer-owned server.
Google currently states that prompts, context, and outputs are generally retained for 55 days for abuse monitoring. For unpaid services, Google may also use inputs and outputs to improve its products, and authorized human reviewers may process content. For Paid Services, Google states that prompts and responses are not used for product improvement, but abuse monitoring and legal retention obligations still apply.
Do not submit sensitive, confidential, or unnecessary personal information. Use is governed by the Gemini API Additional Terms, Abuse monitoring documentation, and Google Privacy Policy. Google requires API users to be at least 18 years old and requires a Paid Service for API clients made available in the European Economic Area, Switzerland, or the United Kingdom. Use the Gemini feature only if you meet these requirements.
6. Optional calendar sync and reminders
If you enable calendar sync, ShipTrip requests full access to calendar events. The app displays writable system calendars and creates, updates, or removes ShipTrip events containing travel titles, dates, port/location details, and app-related notes. Depending on the calendar you select, the operating system may synchronize these events with Apple or another calendar provider you have configured. That provider's terms apply. ShipTrip does not transmit calendar data to developer-owned servers.
Travel reminders are scheduled as local iOS notifications on your device. ShipTrip uses no developer-owned push server.
7. Photos
ShipTrip receives only photos you deliberately select through the iOS photo picker. They become part of your app data and may be synchronized through your private CloudKit area or included in an export you create.
8. Export and import
You can export cruises and related photos as a ZIP archive and import ZIP or supported JSON files. An export is created only at your request and passed through the iOS share sheet to a destination you select. From that point, you and the selected recipient determine further processing. The temporary export file is removed after the share sheet closes; you must delete copies outside the app yourself.
9. Recipients and diagnostics
| Recipient | Data | Reason |
|---|---|---|
| Apple iCloud/CloudKit | App data including selected photos | Private device sync |
| Selected calendar provider | ShipTrip calendar events | Only when calendar sync is enabled |
| Google Gemini API | API key, test prompt or pasted booking text, and model response | Only when you configure and actively use AI import |
| Export destination selected by you | Contents of the ZIP export | Only when you initiate an export |
ShipTrip integrates no third-party advertising, tracking, or usage analytics services. Depending on your device and App Store settings, Apple may process diagnostic and crash data and make it available to the developer.
10. Retention and deletion
- App data remains locally and in your private CloudKit area until you delete it. Deletions synchronize through CloudKit; Apple's terms govern backups and technical retention.
- “Delete All Data” removes travel and catalog data stored by ShipTrip and pending local notifications. If a Gemini key exists, you can explicitly choose whether to delete it as well. It can also be removed separately in Settings.
- Calendar events managed by ShipTrip can be removed by disabling calendar sync while calendar access remains granted. Otherwise, delete them in the relevant calendar or temporarily grant access again.
- Exported files and copies stored by calendar or cloud providers may need to be deleted there.
- Uninstalling the app alone may not remove data from iCloud or the iOS Keychain. Use the relevant deletion controls before uninstalling if you want those items removed.
- Google's published retention periods apply to Gemini processing.
11. Your rights
Where personal data is processed by a controller, you may have rights including access, correction, deletion, restriction, portability, and the right to lodge a complaint with a data protection authority. Because the developer cannot access your private local or CloudKit data, you manage that data directly in the app or through your Apple Account.
12. Changes
This policy may be updated when the app or participating services change. The current version will be published on this page.