Rainbow Tour Guides collects the information needed to operate a safe private-tour marketplace, process payments, verify guides, support users, and meet legal and accounting obligations.
1. Information We Collect
Account and Profile Data
We collect account identity, role, name, profile photos, bio, pronouns, languages, country, currency preference, and other profile fields you provide.
Traveler Data
Traveler onboarding may collect contact details, WhatsApp number, residence information, interests, accessibility needs, dietary preferences, emergency-contact details where provided, booking history, reviews, support messages, and payment-customer references.
Guide Data
Guide onboarding may collect service cities, biography, photos, pricing, availability, specialties, languages, legal name, phone/WhatsApp details, payout reminders, verification status, and verification materials.
Booking, Payment, and Message Data
We collect booking dates, multi-day duration selections, city, guide/traveler IDs, party size, notes, meeting details, booking status history, payment references, payout status, disputes, reviews, and in-platform messages.
Payout Data
Guides may provide bank-transfer details for manual payouts, including beneficiary name, bank details, routing details, payout currency, recipient address/contact information, and payout notes.
2. Uploads, Blog Content, and Support Records
Cloudinary stores user-uploaded images and temporary guide verification uploads. Government ID and proof-of-address uploads are deleted when Admin approves or rejects a guide application, and retained document references are cleared at that point.
Blog content is managed in Sanity. Sanity stores article content, categories, tags, images, SEO fields, and related editorial metadata. Supabase remains the source of truth for marketplace data.
Contact forms, support messages, safety reports, dispute reasons, admin notes, and admin support threads may be stored for support, safety, legal, and operational review.
3. How We Use Information
- Create and protect accounts.
- Verify guides and manage public guide visibility.
- Process bookings, payments, cancellations, and reviews.
- Calculate fees, commissions, payouts, and reconciliation.
- Handle support, refunds, disputes, and safety reports.
- Operate analytics, error monitoring, email, and CMS systems.
- Meet legal, safety, tax, accounting, and audit obligations.
4. Data Sharing
We do not sell personal data. We share limited data with service providers needed to operate the platform, including Supabase, Stripe, Cloudinary, Resend, Sanity, PostHog, Sentry, Vercel, and security or anti-abuse services.
Travelers and Guides receive only the information needed for booking evaluation and coordination. Private payment details are not shared between Travelers and Guides.
5. Access Controls
Normal user access is partitioned by role and ownership through Supabase Row Level Security. Travelers can access their own bookings and messages. Guides can access their assigned bookings, messages, service cities, availability, and payout profile. Admins can access platform data for operations, support, safety, legal, compliance, and finance.
Users are responsible for keeping their account credentials secure.
6. Retention and Deletion
We retain account and marketplace data while needed to provide the service and meet legal/accounting obligations. When an account is deleted, personally identifying profile data is deleted or anonymized where possible. Historical booking, financial, review, support, and audit records may be retained in anonymized or legally required form.
7. Cookies and Analytics
We use essential cookies for authentication, currency preference, and platform operation. Analytics may be used to understand product performance and improve the service, subject to applicable consent controls.
8. Your Rights and Contact
Depending on your location, you may have rights to access, correct, export, or delete your personal data. For privacy questions or data-rights requests, contact privacy@rainbowtourguides.com.
