Data Deletion & Your Privacy Rights
Last updated August 13, 2026
This page explains how to delete data Long Traveler holds about you — a single photograph, everything we received from Facebook or Instagram, or your whole account — how to ask, how long it takes, and what rights you have under the GDPR, the UK GDPR, the California Consumer Privacy Act and comparable laws elsewhere. It is the companion to our Privacy Policy, which explains what we collect and why.
One address handles every request below: hello@longtraveler.com. You do not need an account to use it, and making a request is free.
- 1. The short version
- 2. Deleting individual things yourself
- 3. Deleting your whole account
- 4. Data we received from Facebook or Instagram
- 5. What survives a deletion, and why
- 6. Your rights, by where you live
- 7. How we check that it is really you
- 8. Contact, and changes to this page
1. The short version
- To delete one thing — delete it in the app. It leaves the Service immediately, for everyone. See section 2.
- To delete your account and everything in it — email hello@longtraveler.com with the subject Delete my account. See section 3.
- To delete data we received from Facebook or Instagram — email the same address with the subject Facebook data deletion. See section 4.
- We acknowledge every request within 10 business days with a confirmation reference you can quote, and complete it within 30 days.
- Asking costs you nothing. We will never charge you, deny you service, or give you a worse version of it because you exercised a right on this page.
2. Deleting individual things yourself
Most deletion needs no request at all. Signed in, you can delete photographs, recorded stories and their transcripts, reservations and their attachments, expenses, trip notes, calendar events, itinerary scenarios, and invitations you sent. A trip’s organizer can remove a member, which ends that person’s access at once. Deleting something removes it from the Service immediately — it leaves every view, every gallery and every follower’s feed.
One deliberate exception, stated plainly. When you delete a photograph the record goes at once, but the underlying image file is kept in our private storage rather than destroyed in the same click. That is on purpose: an accidental tap that costs a database row is recoverable, and one that costs the only copy of a photograph is not. Nobody can see or reach the file — it is no longer served to anyone, including you. If you want the stored file destroyed, ask us and we will purge it; deleting your whole account (section 3) always purges the files.
3. Deleting your whole account
Email hello@longtraveler.com with the subject Delete my account, from the address your account uses. If you no longer have that address, write anyway and say so — we will verify you another way (section 7). There is no form to fill in and no reason you have to give.
What happens then:
- Within 10 business days — we acknowledge your request and give you a confirmation reference (for example LT-DEL-2608-14). Reply to that email at any time to ask where your request stands.
- We confirm once, then act — deletion is irreversible, so we check we have understood you before anything is destroyed.
- What is erased — your sign-in record with Clerk, our authentication provider; your photographs, their stored files and every resized copy we derived from them; your recorded stories, their audio, transcripts and generated text; the reservations, expenses, ledger entries, notes, itineraries and trips you own; your trip memberships, invitations and registered email addresses; and any share links, which stop working immediately.
- Within 30 days — the erasure is complete and we write to tell you so.
Our database keeps a rolling seven-day point-in-time recovery window, so erased data can persist inside that backup for up to seven days and then ages out on its own. We do not restore it, and we do not use it.
4. Data we received from Facebook or Instagram
Long Traveler can display public posts from Facebook and Instagram alongside a trip — a reel about a place you are going, a photograph a friend published from the neighbourhood you are staying in. This section is the deletion route for anything we obtained through those platforms, and it applies whether or not you have a Long Traveler account.
What we may hold. Two kinds of thing, and no more:
- Connected-account details — if you connect or sign in with a Facebook or Instagram account, the account identifier, name and email address that Meta gives us. We never post as you, never read your private messages, and never take your friends list or contacts.
- Public post details — when someone adds a public post’s link to a trip, we keep that link and the details the platform publishes with it: the caption, the author’s public name or handle, the date, and the web address of the thumbnail. We do not copy the photograph or video itself — embedded posts are loaded from Facebook or Instagram when the page is viewed, so removing or making a post private on the platform removes it from view here too.
How to have it deleted. Email hello@longtraveler.com with the subject Facebook data deletion, and tell us either the Facebook or Instagram username the data belongs to, or the link to the post you want removed. That is the whole requirement. If it is your own post and you simply want it taken down from a trip, say so — we take it down, and you do not have to explain why.
What we do. We acknowledge your request within 10 business days with a confirmation reference, delete the data within 30 days, and write to you again when it is done; replying to that email at any point gets you the current status. If we cannot complete a request we tell you plainly why — either because we hold nothing matching what you sent us, or because a specific record is one the law requires us to keep, in which case we name it (see section 5).
The automatic route. If you remove Long Traveler from your Facebook account and ask Facebook to delete your data, Facebook tells us directly — you do not have to write to us at all. We record the request the moment it arrives and answer with a confirmation code and a link where you can check its status at any time. The same 30-day promise applies. One honest limit: Facebook identifies you to us by an account number that is meaningful only inside their system, so if you never connected a Facebook account to Long Traveler there may be nothing of yours for us to find — in which case we will say exactly that rather than pretend to have deleted something.
Cutting off access as well. Deleting data and revoking access are different acts, and you may want both. To stop any further data reaching us, remove Long Traveler in Facebook → Settings & privacy → Settings → Apps and websites, or in Instagram → Settings → Website permissions → Apps and websites. That prevents anything new from being shared with us; it does not delete what we already hold, so send the email as well.
Nothing we receive from Facebook or Instagram is used for advertising or profiling, and none of it is sold or shared.
5. What survives a deletion, and why
Erasure should mean what it says, so here is everything that can outlive it:
- Records the law requires us to keep — if you have paid us, the transaction and tax records that accounting and tax law oblige us to retain for their statutory period. Billing has not begun, so for most accounts there are none.
- Security and operational logs — kept briefly so we can keep the Service safe and working, with identifying details removed or replaced once your account is gone.
- Backups — the seven-day recovery window described in section 3, after which they age out untouched.
- Place facts — our cache of place names (“Athens, Greece”, at roughly one-kilometre precision) is geography shared by every user. Once your photographs are gone it is not linked to you and identifies nobody.
- Other people’s content — erasing your account does not erase what other members of your trips wrote, booked or photographed; that is theirs. If you organized a trip, tell us whether to delete the trip itself — deleting it removes it for everyone on it, so we ask rather than assume.
One thing no system can undo, said honestly: a photograph or story already seen, downloaded or screenshotted by someone you shared it with is beyond our reach. We revoke access immediately, and cached copies on their devices stop refreshing and expire — but we cannot un-show what has been shown.
6. Your rights, by where you live
Wherever you are, you may ask us to give you a copy of your data, correct it, export it in a portable form, delete it, restrict or object to a use of it, or withdraw consent you gave. Same address, same timetable, no fee.
European Union, EEA and United Kingdom (GDPR and UK GDPR).Your rights of access, rectification, erasure, restriction, portability and objection under Articles 15–21 apply in full. We answer within one month; for a request that is genuinely complex we may extend that by up to two further months, and if we do we will tell you inside the first month and explain why. You can complain to your national supervisory authority — in the UK, the Information Commissioner’s Office — and you do not have to come to us first.
California (CCPA/CPRA). You have the right to know what we collect, to delete it, to correct it, to opt out of sale or sharing, and to limit the use of sensitive personal information. We do not sell personal information and we do not share it for cross-context behavioural advertising, so there is nothing to opt out of — you are still welcome to ask. The GPS coordinates inside your photographs are precise geolocation, which California treats as sensitive personal information: we use it solely to place your own photographs on your own trip, which is the statute’s own exemption, and never for advertising, profiling or inference about you. We respond within 45 days and may extend once by a further 45 days with notice. An authorized agent may act for you if they send us your written permission; we may still confirm the request with you directly. We will never discriminate against you for exercising any of this.
Other US states — including Virginia, Colorado, Connecticut, Texas, Oregon and Montana — give you the same rights on the same timetable. If we refuse a request, you may appeal: reply to our decision saying you are appealing, and we will review it and answer within 45 days with our reasons. If we still refuse, we will tell you how to complain to your state Attorney General.
Everywhere else — Canada (PIPEDA), Brazil (LGPD), Australia (Privacy Act), Switzerland (FADP) and elsewhere — the same requests reach us at the same address and get the same treatment, under whichever law applies to you. If your local law gives you a stronger right than this page describes, that law wins.
7. How we check that it is really you
Deletion destroys data, so we confirm who is asking before we act. Usually that is nothing more than the request arriving from the email address on your account, or being made while you are signed in. If we cannot match your request to an account, we will ask for one more detail only you would know — the name of a trip you were on, for instance, or the address you registered. We use whatever you send us for that check and nothing else, and we discard it afterwards.
If we cannot verify a request we will refuse it and tell you, rather than risk destroying the wrong person’s data.
8. Contact, and changes to this page
Deletion, access, export, correction, appeals and anything else on this page: hello@longtraveler.com. If you are signed in, our support page reaches the same desk. We read every message a person sends; nothing here is an automated queue.
Long Traveler is a product of Zobot LLC, which is the data controller and the company any request under this page is made to. By post:
Zobot LLC
2275 Huntington Drive #382
San Marino, CA 91108-2640
United States
If our data practices change, this page changes with them and always states its last-updated date at the top. Material changes are announced in the product or by email before they take effect.