Welcome
Your adventure planned in three simple steps.
Step 1: Explore
Search for unique activities at your destination.
Step 2: Plan
Add experiences to your personal travel calendar.
Step 3: Book & Share
Confirm your activities and share the plan.

Privacy Policy

This Privacy Policy explains how Clear Ascend OÜ ('Journi', 'we', 'us' or 'our') collects, processes, uses, shares and protects your personal data when you access our website, use our mobile applications or interact with our platform ('Services').

This policy is designed to fully comply with Regulation (EU) 2016/679 (General Data Protection Regulation), the ePrivacy Directive and other applicable European and national data protection laws.

Data Controller

The Data Controller responsible for the processing of your personal data is Clear Ascend OÜ registered in Estonia. To exercise your privacy rights or contact our Data Protection Officer (DPO) regarding any questions about how we handle your data, please use the contact form available in the Help & Support section of our platform.

Personal Data

We collect various types of personal data depending on how you interact with our platform:

Manual Data

Profile

First name, surname, email address, password and profile picture.

Booking

Information required to fulfil a booking, including billing and payment details.

Reviews

Ratings and reviews.

Host Verification

Government-issued ID, business registration documents and tax identification numbers necessary for compliance with European tax directives (e.g., DAC7) and Anti-Money Laundering (AML) laws.

Automated Data

Technical

IP address, device type, operating system, browser type and language settings.

Usage

Pages visited, search queries, interaction with listings, booking history and timestamps.

Location

Approximate location (based on IP) or precise GPS location (only if you have granted explicit consent through your device settings).

Cookies

Data collected via cookies, pixels and similar technologies.

Purposes

We process your personal data only when we have a valid legal basis:

Performance of a Contract (Art. 6(1)(b) GDPR)

To create and manage your account, process bookings, facilitate payments, transmit necessary details to the Host to execute the activity and provide customer support.

Legal Obligation (Art. 6(1)(c) GDPR)

To comply with statutory accounting and tax regulations, respond to binding requests from law enforcement or tax authorities (including DAC7 reporting) and enforce fraud prevention/AML protocols.

Legitimate Interests (Art. 6(1)(f) GDPR)

To analyse platform usage and improve our Services, ensure network and information security, prevent fraudulent activities and conduct direct marketing for similar services (provided you have not opted out).

Consent (Art. 6(1)(a) GDPR)

To send promotional newsletters, use non-essential tracking cookies for targeted advertising or process precise geolocation data. You may withdraw your consent at any time.

Disclosure

We do not sell your personal data. We only share it strictly on a need-to-know basis with:

Hosts

We share your name and booking details (but not your payment information) with the specific Host providing your booked activity so they can deliver the service.

Service Providers

Trusted third parties that process data on our behalf under strict Data Processing Agreements (DPAs). This includes cloud hosting providers, payment gateways, customer support software and email delivery services.

Competent Authorities

Courts, law enforcement or tax authorities when legally compelled to do so.

Data Transfer

While Journi is based in the EU, some of our service providers may be located outside the European Economic Area (EEA). Whenever we transfer your personal data outside the EEA, we ensure it receives an adequate level of protection by utilising mechanisms approved by the European Commission, such as Adequacy Decisions or Standard Contractual Clauses (SCCs), supplemented by additional security measures where necessary.

Data Retention

We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected.

  • Account Data is kept as long as your account remains active.
  • Booking and Financial Data are retained for a minimum of 7 to 10 years to comply with European tax, accounting and commercial laws.
  • If you request account deletion, we will erase your data unless we have a legal obligation to keep certain records or a legitimate interest in retaining data for dispute resolution or fraud prevention.

Cookies

We use strictly necessary cookies to operate the platform securely. With your consent, we also use analytical and marketing cookies to understand user behaviour and provide personalised advertisements.

Profiling

We use basic profiling to personalise your search results and recommend activities based on your past bookings and interactions. We also use automated algorithms to detect anomalous behaviour and prevent fraudulent transactions. These automated processes do not produce legal or similarly significant effects on you without human intervention.

Your Rights

Under the GDPR, you have the following rights regarding your personal data:

  • Right of Access: To request a copy of the personal data we hold about you.
  • Right to Rectification: To request correction of inaccurate or incomplete data.
  • Right to Erasure ('Right to be Forgotten'): To request the deletion of your data subject to legal retention exceptions.
  • Right to Restriction of Processing: To request a halt on processing your data under certain conditions.
  • Right to Data Portability: To receive your data in a structured, commonly used and machine-readable format.
  • Right to Object: To object to processing based on legitimate interests or for direct marketing purposes.
  • Right to Withdraw Consent: At any time without affecting the lawfulness of processing based on consent before its withdrawal.

To exercise any of these rights, please submit a request via our contact form. We will respond to your request within 30 days.

Complaints

If you believe that our processing of your personal data infringes data protection laws, you have the right to lodge a complaint with a supervisory authority. You may contact the Estonian Data Protection Inspectorate (Andmekaitse Inspektsioon) or the data protection authority in your country of habitual residence within the EU.

Changes

We may update this Privacy Policy from time to time to reflect legal or operational changes. We will notify you of any material changes by posting the updated policy on our platform and, where appropriate, sending an email notification or platform alert.