Trust & privacy

One place for how Guidoso handles data: our policies, the cookies we use, our compliance roadmap, our data providers, and how to reach the trust team.

Policies

These documents are in draft and are being finalized before launch.

Cookies

  • Necessary · always on. Sign-in, session, and security (including bot protection). The site does not work without these.
  • Analytics · optional, off until you accept. Anonymous, privacy-friendly measurement of which guides get used, so hosts can improve them. No personal profiles, no advertising, no cross-site tracking.

Compliance

Guidoso is pre-launch. The items below are on our roadmap and are not yet certified. Reports and attestations will be published here (or available on request) as we earn them.

  • SOC 2 Type IIPlanned
  • ISO 27001Planned
  • GDPRIn progress
  • CCPA / CPRAIn progress

Sub-processors

Providers that process data on our behalf to run Guidoso. The current list:

  • ·Clerk (authentication)
  • ·Anthropic (AI features)
  • ·Google Maps Platform, Geoapify (address + maps)
  • ·Mapillary (place photos)
  • ·Cloudflare (storage + bot protection)
  • ·Resend (transactional email)
  • ·Sentry (error monitoring)
  • ·Railway (hosting + database)

Guest privacy

Guests do not need an account to view a guide. Guide engagement is measured with an anonymous, per-visit token · never a name, email, IP address, or device fingerprint. If you send feedback to a host, only what you type (and any contact details you choose to add) is shared with that host.

Contact the trust team

Privacy requests, security concerns, abuse reports, or anything else about how we handle data. Pick a topic and we'll route it to the right place.