Last updated: 2 August 2026
Who is responsible?
Champagne Atlas is responsible for processing personal data within the Champagne Atlas app and related services. For privacy questions, contact privacy@champagneatlas.nl.
What information do we process?
- Account information: email address, name, profile picture and sign-in method (Google or email link).
- Your Atlas: visited and saved Champagne houses, journeys, badges, preferences and settings.
- Shared journeys: group membership, roles, invitations and shared itinerary content.
- Chef de Cave: questions, preferences and feedback you intentionally share with the assistant.
- Technical information: necessary synchronisation, security and error data such as timestamps, app version and session information.
- Location: only when you grant Android permission and use a location-based feature. Champagne Atlas does not continuously track your background location.
How do we use it?
- to sign you in and synchronise your Atlas across devices;
- to store visits, journeys, rewards and preferences;
- to provide maps, routes, weather, places and relevant information;
- to enable shared journeys and invitations securely;
- to prevent abuse, resolve errors and improve reliability;
- to provide personalised Chef de Cave recommendations only when requested.
Processing is based on providing the service, your consent for optional functions, our legitimate interest in a secure and reliable app, and legal obligations where applicable.
Service providers
- STRATO: European hosting for the API, website and database;
- Google: sign-in and, when used, Maps and Places;
- Resend: secure sign-in and invitation emails;
- OpenAI: processing questions when you use Chef de Cave.
Providers receive only the information technically required for that function. We do not sell your personal data.
Retention and security
Account and Atlas information is retained while your account is active or as needed to provide the service. Temporary sign-in links expire after 15 minutes. Invitations expire within the period stated in the invitation. Chef de Cave conversations are retained for a limited period and can be deleted separately.
We use HTTPS, hashed one-time tokens, per-user access controls and secured backups. Following account deletion, active information is removed except where the law requires retention; deletion from rotating backups follows the normal backup cycle.
Your rights
You may request access, correction, export, restriction or deletion of your personal information. You may withdraw consent and object to certain processing. The export function is available in the app under Profile & settings.
You may also lodge a complaint with the Dutch Data Protection Authority.
Changes
We may update this policy when the app or applicable law changes. The latest version is always available on this page.
