Effective date: 20 August 2026
InsideOut is operated by AI Story, Inc., a company incorporated in Delaware, United States, the data controller for the data described here. Contact: hello@insideout.guide.
We built InsideOut to need as little of your data as possible. There are no accounts, no advertising trackers, and we never sell data.
When you buy a guide
When you use your guide
When you browse the site
Stripe (payments), Resend (transactional email), Cloudflare (hosting and database), Mapbox (maps), Google (place lookup when you add one yourself). They process data on our behalf under their data processing agreements. Some of them are in the United States; transfers are covered by the EU-US Data Privacy Framework or standard contractual clauses.
Purchase records: as long as required for accounting and tax law. Your guide and its state: as long as the guide exists. Emails: until you ask us to delete them (deleting your delivery email means we can no longer resend your guide link). If you unsubscribe, we keep the fact that you did, because otherwise we could not honour it.
If you are in the EU/EEA (or wherever similar laws apply), you can ask us to access, correct, delete or export your data, or object to processing: hello@insideout.guide. We answer within a month. If our answer does not satisfy you, you can take it to the data protection authority in your country.
Because guides have no accounts, include your guide link or delivery email in the request so we can find your data.
InsideOut is not directed at children under 16, and we do not knowingly collect their data.
If this policy changes materially, we will note the new effective date here.