Privacy Policy
1. Who we are
National Parks Hub (also operating as My National Parks Adventure) is a national parks planning and journaling platform. This policy explains what information we collect when you use parkhub and our related apps, why we collect it, and what control you have over it. Questions or requests: [email protected].
2. What we collect
Account information. When you create a free account we collect your email address and a password (stored in hashed form; we cannot read it). You may optionally add a display name and an explorer persona to your profile.
Your passport and journal. The parks you mark as visited, the wishlist and trips you save, your reading list, and the journal entries and photos you create. This content belongs to you. It is private by default; journal entries appear to others only if you use the share feature, and stories appear on park pages only if you submit them for publication.
Trip planner inputs. When you use the AI trip planner, we collect the answers you provide (dates, party, pace, interests, home city, and any free-text notes) in order to generate your itinerary.
Purchase information. If you buy a plan, bundle, or pass, our payment processor collects your payment details. We never see or store your card number. We keep a record of what you purchased so we can honor it.
Email signups. If you request the free checklist or join a mailing list, we collect the email address you provide for that purpose.
Technical basics. Like nearly every website, our infrastructure processes IP addresses and browser information to serve pages, prevent abuse (for example, rate-limiting the trip planner), and measure aggregate traffic. Our analytics are privacy-focused and aggregate; we do not build advertising profiles of you.
First-party usage events. To understand whether the site actually works as a product (for example, how many visitors who try the planner go on to create an account), we record a small number of first-party events, such as a checklist signup, an account creation, or a planner run. Each event stores the page it happened on, a random visitor token, and, when you arrived from one of our own posted links, which campaign the link belonged to. These events contain no name, no email, no IP address, and no browser fingerprint, are stored on our own infrastructure rather than sent to any advertising platform, and are only ever read back as aggregate counts. This system runs regardless of the cookie choice described below, since it isn't a third-party cookie or tracker in the first place.
Google Analytics (on by default, and you can turn it off). On our public marketing pages (not inside the signed-in app, your account, or your journal), we use Google Analytics, a standard, aggregate measurement tool, to see which pages and campaigns are working. It is on when you arrive, and a notice at the bottom of the page tells you so and gives you a Turn Off button. If you turn it off, we remember that choice in your browser and Google Analytics stops measuring you on every page from that point on, including the rest of the page you're already on. While it is on, Google Analytics may set its own cookies and process the pages you view, on our marketing site only.
We configure it for measurement, not advertising. Advertising storage, ad personalization, and ad user data are switched off unconditionally, for everyone, whether or not you turn analytics off, and we do not enable Google Signals or share this data with any advertising network. You can change your choice at any time by clearing this site's data in your browser's site settings and reloading the page.
3. What we do NOT do
- We do not sell your personal information. To anyone. Ever.
- We do not run third-party advertising trackers on your journal or passport.
- We do not read your private journal entries except as required to operate the service (for example, storage and backup) or investigate abuse.
- We do not use your private journal content to market to others.
4. How your information is used
- To run the product: your passport, journal, saved trips, and purchases only work if we store them.
- To generate itineraries: your planner answers are sent to our AI provider to produce your trip plan, and to public data sources (the National Park Service API and the National Weather Service) for live conditions.
- To communicate: account emails (sign-in links, receipts) and, only if you opted in, the checklist or newsletter. Every marketing email has an unsubscribe link.
- To keep the lights on: abuse prevention, debugging, and aggregate analytics that tell us which pages people find useful.
5. Who processes data on our behalf
Running National Parks Hub means working with a small number of trusted infrastructure and service providers: for account and data storage, hosting and delivery, payment processing, itinerary generation, mapping, print fulfillment, and email delivery. Each one only receives the specific data it needs to perform its function (for example, our payment processor handles card details so we never do; our print partner receives a shipping address only for orders that need one), and none of them are permitted to use your data for their own purposes. We don't publish the specific names of these providers here, as a matter of general security practice, but we're happy to answer questions about how a particular type of data is handled. Reach out any time.
6. Cookies and local storage
We use a small number of first-party cookies and browser storage items to keep you signed in, remember your theme preference (day/night), carry your planner answers between pages, and remember whether you've turned analytics off. Unless you turn it off as described in section 2, Google Analytics may also set cookies on our marketing pages, configured for aggregate measurement only, with ad personalization and Google Signals turned off. We do not use third-party advertising cookies.
7. Your content and your rights
You can view and edit your profile, journal, passport, and trips from your account at any time. You can delete individual journal entries, photos, and trips yourself. To delete your entire account and all associated data, email us at [email protected] from your account email and we will complete the deletion within 30 days. Depending on where you live, you may also have legal rights to access, correct, export, or delete your data. We honor reasonable requests regardless of where you live.
8. Data retention
We keep your account data for as long as your account exists. Purchase records are retained as required for tax and accounting. Server logs used for abuse prevention are short-lived. Deleted content is removed from live systems promptly and rotates out of backups on a schedule.
9. Security
Your data is protected in transit with HTTPS and at rest by our infrastructure providers. Access to user data inside our database is controlled with row-level security, which means the database itself enforces that your private content is only readable by you. No system is perfectly secure, but we choose providers and defaults that take this seriously.
10. Children
National Parks Hub is not directed at children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has created an account, contact us and we will delete it.
11. Changes to this policy
If we make meaningful changes, we will update the date at the top of this page and, for significant changes, notify account holders by email. Continued use of National Parks Hub after changes means you accept the updated policy.
12. Contact
Privacy questions, data requests, or anything else: [email protected].
