Sign In

Legal

Privacy Policy

What we collect, why we collect it, who we share it with, and how you can control it.

Last updated: May 18, 2026

Draft — not yet ready to publish

This page contains placeholder structure pending GroupHop's signed contract verbiage. Do not link from production marketing or share publicly until the draft banner has been removed.

1. Introduction

Highland Destinations LLC (“Highland Destinations,” “we,” “us,” or “our”) operates a group-travel marketplace that helps organizations book hotels, venues, and transportation as a single coordinated trip. This Privacy Policy describes how we collect, use, share, and protect personal information when you visit our website, create an account, plan or join a group trip, or otherwise interact with our services.

For most personal information you provide directly (your account profile, marketing preferences, support communications), Highland Destinations acts as the data controller. For trip-specific information that a trip organizer collects from members of their own group (rooming preferences, dietary restrictions, signed waivers), Highland Destinations acts as a data processor on behalf of that organizer.

This Policy works alongside our Terms of Service. By using Highland Destinations, you agree to the practices described here.

2. Information We Collect

2.1 Information you provide

  • Account info: name, email, phone, password (stored hashed; we never see your plaintext password)
  • Booking info: organization, event type, headcount, travel dates, special requests
  • Payment info: billing address (full card data is handled directly by Stripe — see §4)
  • Identification + signatures: liability waiver, trip agreement
  • Group communications: chat messages, room assignments, itinerary edits
  • Support communications: emails or messages you send us

2.2 Information collected automatically

  • Device + browser info: user-agent string, IP address, screen size, language
  • Usage data: pages viewed, time on page, links clicked, broad geographic region inferred from IP
  • Cookies + similar technologies (see §6)
  • Diagnostic data: if the app encounters an error, our error-monitoring service (Sentry) records technical details about the error and the application state at that moment. We do not log payment details or passwords in error reports.

2.3 Information from third parties

  • Stripe sends us payment-outcome data: amount, status, last 4 digits, card brand, and a tokenized payment-method identifier.
  • Resend (our transactional email provider) sends us deliverability events: delivered, opened, bounced.
  • Hotels, venues, and transportation partners may send us booking confirmations or status updates referencing your trip.

3. How We Use Information

We use your personal information to:

  • Deliver the service: create your account, plan and book your trip, run the group dashboard
  • Process payments and issue receipts (via Stripe)
  • Send transactional emails (booking confirmations, payment receipts, account notifications, password resets)
  • Provide customer support and respond to your inquiries
  • Detect, investigate, and prevent fraud, abuse, and security incidents
  • Comply with applicable laws, regulations, and lawful requests
  • Improve our products and services through aggregated, de-identified analytics

Legal bases under GDPR. Where GDPR applies, we rely on (a) contract — to provide the services you signed up for; (b) legitimate interests — to keep the service secure, prevent fraud, and improve the product; and (c) legal obligation — to retain accounting and tax records.

Marketing. We currently send only transactional email tied to your account or trip. We do not send promotional marketing emails. If that changes, we will obtain consent or provide a clear opt-out at the time of first sending.

4. Payment Processing

Card data is collected and stored by Stripe, Inc. under PCI DSS Level 1 compliance. Highland Destinations does not receive, store, or have access to your full card number. We retain only payment metadata: amount, status, last 4 digits, card brand, and the Stripe identifier. Stripe’s own privacy policy at stripe.com/privacy governs the card data Stripe holds.

5. How We Share Information

5.1 With your trip group

When you join a trip, certain information is visible to the trip organizer and (in some cases) to other members of the same trip. This is necessary for the group to function and is part of how Highland Destinations works.

Specifically:

  • Visible to the trip organizer: your full name, email, phone, payment status, signed waivers, and any preferences you submit.
  • Visible to other trip members: your full name and room assignment.
  • Not visible to other members: your email, phone, billing details, or payment information.

If you do not want this information shared with a trip group, do not join the trip. Once you join, the trip organizer becomes a co-controller of the data necessary to run that trip.

5.2 With service providers (sub-processors)

We use the following processors to run the service:

  • Supabase — database, authentication, file storage. Hosted in the United States.
  • Stripe — payment processing and payment-method storage.
  • Resend — transactional and authentication email delivery.
  • Sentry — error reporting and application monitoring.
  • Vercel — website and application hosting.

Each processor is contractually required to handle personal information only as instructed by Highland Destinations and to apply appropriate security measures.

5.3 With hotels, venues, and transportation partners

To confirm a booking, we share the minimum information required: traveler names, trip dates, party size, room or seating preferences, and (where applicable) age category. We do not share your email, phone, payment information, or other account data with these partners unless you explicitly request it.

5.4 For legal reasons

We may disclose information to comply with applicable law, regulation, legal process, or government request, or to enforce our Terms of Service, protect the safety of any person, or address fraud or security issues.

5.5 In a business transaction

If Highland Destinations is involved in a merger, acquisition, reorganization, or sale of assets, your information may be transferred as part of that transaction, subject to standard confidentiality protections. We will notify you before any change in ownership that materially affects your personal information.

5.6 We do not sell or rent personal information

Highland Destinations does not sell, rent, or trade personal information, and we do not share personal information for cross-context behavioral advertising.

6. Cookies & Tracking

We use a small number of cookies and similar technologies, grouped into two categories:

  • Strictly necessary — required to deliver the service: authentication cookies (so you stay signed in), security cookies (CSRF protection), and a session identifier. You cannot turn these off without breaking the site.
  • Diagnostic — Sentry uses local storage (not third-party cookies) to capture error details if the app crashes. You may decline these via our cookie banner.

We do not use advertising cookies, marketing trackers, or cross-site analytics. No data is sold or shared with ad networks.

You can manage cookie preferences at any time using the “Cookie Preferences” link in the footer, or by clearing cookies in your browser. Disabling strictly-necessary cookies will prevent you from signing in or completing bookings.

7. Data Retention

We retain personal information only for as long as needed to provide the service, comply with law, resolve disputes, and enforce our agreements. Specifically:

  • Account profile data (name, email, phone, avatar): retained while your account is active. On deletion, this data is scrubbed within 30 days.
  • Trip operational data (booking records, room assignments, rooming chat): retained while your account is active and the trip is in progress. After deletion, this data is anonymized — the records remain, but they are no longer linked to your identity.
  • Payment receipts and financial records: retained for a minimum of seven (7) years after the transaction, as required by United States tax law (IRS recordkeeping requirements) and state accounting rules. These records are anonymized after account deletion where possible.
  • Support communications: retained for two (2) years to handle follow-ups and audits.
  • Diagnostic / error data: retained for 90 days in Sentry, then automatically purged.
  • Backups: routine database backups may contain residual data for up to 30 days after deletion. Backups are encrypted and access-controlled.

8. Your Rights

8.1 GDPR (European Economic Area + United Kingdom)

If you are in the EEA or the UK, you have the right to:

  • Access — receive a copy of the personal information we hold about you.
  • Rectify — correct inaccurate or incomplete information.
  • Erase — request deletion of your personal information (subject to retention obligations described in §7).
  • Restrict — limit how we use your information in certain circumstances.
  • Portability — receive your information in a structured, machine-readable format and transmit it to another controller.
  • Object — object to processing based on legitimate interests.
  • Withdraw consent — where processing is based on consent, withdraw it at any time without affecting prior lawful processing.
  • Lodge a complaint — file a complaint with your local data protection authority. You can find your authority at edpb.europa.eu/about-edpb/about-edpb/members_en.

8.2 CCPA / CPRA (California)

If you are a California resident, you have the right to:

  • Know what personal information we collect, the sources we collect it from, the purposes for collection, and the categories of recipients.
  • Delete personal information we hold about you (subject to retention obligations described in §7).
  • Correct inaccurate personal information.
  • Limit the use and disclosure of sensitive personal information.
  • Opt out of the sale or sharing of personal information. Highland Destinations does not sell or share personal information.
  • Authorized agent. You may designate an authorized agent to make requests on your behalf. We will require written authorization from you and reasonable verification of your identity before processing the request.
  • Non-discrimination. We will not deny you service, charge you a different price, or provide a different level of quality because you exercised your privacy rights.

California residents under 16 will not have their personal information sold or shared without opt-in consent. Highland Destinations does not sell or share personal information at all.

8.3 How to exercise your rights

Two paths, both free of charge:

  1. Self-service — sign in to your account and go to Profile & Rewards. The Account Details section includes a “Delete Account” option that scrubs your personal information per §7.
  2. Email request — write to support@grouphop.io with the request and the email address on your account. We may ask for additional information to verify your identity. We respond within 30 days (45 days for CCPA, extendable by 45 days with notice where reasonably necessary).

9. Security

We protect personal information with the following measures:

  • Encryption in transit — all traffic uses TLS 1.2+.
  • Encryption at rest — Supabase (PostgreSQL) and Stripe encrypt stored data.
  • Access controls — row-level security in the database, principle of least privilege for staff access, multi-factor authentication for administrative accounts.
  • Password hashing — passwords are hashed (bcrypt) before storage; we never see your plaintext password.
  • Payment isolation — full card data is held only by Stripe, never by Highland Destinations.
  • Logging and monitoring — application errors and security events are monitored.

No system is 100% secure. If we become aware of a security incident affecting your personal information, we will notify you and the appropriate authorities as required by law.

10. Children

Highland Destinations is not directed at children under 13. We do not knowingly collect personal information from anyone under 13. If you believe a child has provided us with personal information, contact us at support@grouphop.io and we will delete it.

For users 13–17, parental or guardian consent may be required for certain features. Trip organizers are responsible for confirming the age and consent status of members they invite to a trip.

11. International Data Transfers

Highland Destinations is based in the United States, and the personal information we collect is processed and stored in the United States. If you access our services from outside the United States, your information will be transferred to, processed, and stored in the United States.

For transfers of personal information from the European Economic Area, United Kingdom, or Switzerland to the United States, we rely on the European Commission’s Standard Contractual Clauses (SCCs) or equivalent safeguards in place with our sub-processors (Stripe, Supabase, Resend, Sentry, and Vercel).

Highland Destinations has not designated an EU representative under GDPR Article 27. EEA or UK users may contact us directly at the address in §13.

12. Changes to This Policy

We may update this Privacy Policy from time to time. Material changes will be communicated by email to the address on your account and posted here with a new “Last updated” date. Continued use of Highland Destinations after a material change constitutes acceptance of the revised policy.

13. Contact

For privacy questions, data requests, or complaints:

  • Highland Destinations LLC
  • 217 Pine Tree Rd
  • Wayne, Pennsylvania 19087
  • United States
  • Email: support@grouphop.io

Highland Destinations has not appointed a Data Protection Officer (DPO). The contact above is responsible for privacy inquiries.

This draft was prepared in good faith based on Highland Destinations’ actual data flows as of the last-updated date. It is not legal advice. Have qualified privacy counsel review and approve this policy before publishing without the draft watermark, particularly to confirm: (a) any state-specific disclosures beyond California (Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Montana), (b) whether an EU representative is needed under GDPR Article 27 given your EU traffic, and (c) the exact retention durations for trip and support data.

Other Legal Pages

  • Terms of Service
  • Privacy Policy
  • Refund & Cancellation Policy

Stay in the Loop

Early access to new cities

Be first to know when we unlock fresh destinations, venues, and early-bird pricing.

Group Travel - Simplified. Hotels, Venues, and Transportation — all in one package.

Destinations

Platform

  • Dashboard
  • Home

Company

  • Contact
  • For Vendors
  • Terms of Service
  • Privacy Policy
  • Refund & Cancellation
SSL SecuredVetted VendorsStripe Secure PaymentsDeposit Refund Protection

© 2026 GroupHop. All rights reserved.

Group Travel - Simplified.