Privacy policy
What PackyGo stores about you and your family, who else touches it, and how to get it deleted. No pre-ticked boxes and nothing sold to anyone.
Last updated 2 September 2026
1. Who we are
PackyGo is a family packing-list app, operated by Dunatos Software [LEGAL FORM], registered in the Netherlands under Chamber of Commerce number [KvK NUMBER]. Under the General Data Protection Regulation we are the controller for the personal data described on this page.
For anything on this page โ questions, a copy of your data, or deletion โ write to support@dunatossoftware.nl.
2. What we store
Your account. An email address and a display name. If you sign up with a password, that password is handled by Firebase Authentication and is never sent to our own database or seen by us. If you sign in with Google or Facebook, we receive the name and email address that provider hands us โ nothing else from your account there.
Your family's lists. This is the app itself: the family name, the travelers you add (a name, an emoji, and whether each is an adult, a child or a pet), your trips (name, number of days, and the activities, transport, accommodation, food and weather you picked), the packing rules in your library, and which items have been checked off.
Invitations. Each family has a permanent invite code. If you invite someone by email, we store the address you typed and the fact that the invitation was sent.
Imports. When you import an existing packing list, the file is read on our server to pull out the rows. The file itself is not stored โ it is processed in memory and discarded. What is saved is the packing rules it produced, in your own library.
A session cookie. Described in section 4.
A signup notification. When a new account is created, a copy of the welcome email โ which contains the new account's name and email address โ is also sent to the operator, so we know a signup happened.
We do not ask for and do not store dates of birth, addresses, phone numbers, photos or payment details. PackyGo is free and has no payment system.
3. Children and pets
PackyGo is built to be used by an adult who adds the rest of the household, so a family will normally contain the first names or nicknames of children, and of pets. That is the whole point of the product: everyone gets their own list.
We ask for nothing else about them. No dates of birth, no photos, no contact details โ a name, an emoji, and whether they are an adult, a child or a pet. It is visible only to members of your own family, and a nickname works just as well as a real name if you would rather.
PackyGo is not intended for children under 16 to sign up on their own. The adult who creates a family is responsible for what they enter about the others in it. If you would like a child's details removed, email us and we will do it.
5. Google Drive
PackyGo can import a packing list you already keep in Google Drive. That integration is narrow on purpose.
One scope, and it is the restrictive one. PackyGo asks for drive.file. Combined with Google's own file picker, that gives PackyGo access to only the file you pick yourself, one at a time. It cannot list, search, browse or read anything else in your Drive, before or after you pick.
The access token never reaches our server. Your browser downloads the file you chose and sends the bytes to the same import endpoint a normal upload uses. We never receive, store or refresh a Google token, and we hold no server-side Google credential tied to your account. Revoking PackyGo in your Google account permissions takes effect immediately and needs nothing from us.
A Google Doc is exported as Markdown and a Google Sheet as .xlsx, purely so that the rows can be read. That exported copy is processed in memory and is not stored.
If the list you imported came from Drive, the item names in it are sent to Anthropic's API to be categorised, exactly as described in section 6. They are not used to train any model, and they go nowhere else.
PackyGo's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data for advertising, we do not sell it, and no human reads it except where you have asked us for support, where it is needed for security, or where the law requires it.
6. Who else processes it
PackyGo is a small operation and runs on other people's infrastructure. These are all of them:
- Google (Firebase Authentication, Cloud Firestore, App Hosting, Cloud Functions) โ sign-in, and the storage and serving of everything in section 2.
- PostHog โ the product analytics and session recording in section 4, on their EU infrastructure.
- Google Analytics โ pageviews only.
- Anthropic โ the import feature only, and only the rows: the name of each thing on the list plus any section, category or quantity hints that appeared next to it. Not the file, not your family members' names, not your email address, not your trips. Anthropic does not use data submitted through its API to train its models. If no API key is configured, the import runs entirely on our own rules and nothing leaves our server at all.
- Resend โ delivers the welcome email and family invitations. It sees the recipient address and the message.
- Amazon โ the "buy" links on packing lists are Amazon affiliate links. Nothing is sent to Amazon until you click one. When you do, Amazon sees the visit as it would any visit, and we may earn a commission at no cost to you.
7. Why we may process it
Under Article 6 of the GDPR we rely on:
- Performance of a contract โ your account, your family, your trips and your lists. Without this data there is no service to provide.
- Legitimate interests โ keeping the service running and secure, understanding how it is used so it can be improved, and the signup notification in section 2.
- Your consent โ the Google Drive import, which only happens when you pick a file, and which you can withdraw at any time from your Google account.
8. Where it is stored
Your account, your family and your lists are stored in Google's europe-west4 region โ the Netherlands โ and the app itself runs there too.
Three things leave the EU. Outgoing email is processed in a US region before Resend delivers it, so recipient addresses and message contents pass through the United States. Import rows go to Anthropic in the United States. Google Analytics is a US service. Those transfers rely on the EUโUS Data Privacy Framework and, where it does not apply, on the European Commission's Standard Contractual Clauses.
9. How long we keep it
Your account and its lists are kept for as long as the account exists.
There is no self-service delete button yet. Email support@dunatossoftware.nl and we will delete your account and its data. We aim to do it within 30 days and will confirm when it is done.
If you are the last member of a family, that family's trips and lists are deleted with it. If other members remain, the family continues without you โ the lists belong to the household, not to one account.
Analytics and session recordings are kept according to the retention windows of Google Analytics and PostHog rather than ours. Sent email is retained by our mail queue and by Resend for delivery and troubleshooting.
10. Your rights
Under the GDPR you can ask us for a copy of your data, correct it, have it deleted, take it elsewhere, restrict what we do with it, or object to processing we base on legitimate interests. Email support@dunatossoftware.nl โ there is no form and no fee, and we will not ask you why.
If you think we have got it wrong, you can complain to the Dutch data protection authority, the Autoriteit Persoonsgegevens. We would rather you told us first, but it is your right either way.
11. Changes to this policy
If this policy changes, the date at the top changes with it. If a change materially affects what happens to your data, we will say so on this page rather than leave you to spot the difference.
12. Contact
Dunatos Software [LEGAL FORM], the Netherlands โ Chamber of Commerce [KvK NUMBER].
See also our terms of service.