Legal
Privacy Policy
Your trip details are personal. This policy explains plainly how we handle them. We never sell your information.
1. Who we are
Ready To Go Global is a brand of Tank Worldwide, based in Florida, USA ("we", "us"). We are the controller of the personal information described here. This policy explains what we collect, why, who we share it with, and your choices. It applies to our website, accounts, plans and communications.
2. Information we collect
Information you give us
- Account details: name, email address and password (stored securely hashed), or basic profile info from Google, Apple or Microsoft if you sign in with them.
- Trip details: destination, dates, accommodation, home country, activities, traveler count and type, phone carrier, and the preferences you choose in the questionnaire.
- Information about other people: names and phone numbers of emergency contacts, and details about fellow travelers, including children, employees or patients.
- Health-related information (optional): medical conditions, medications, allergies or accessibility needs you choose to include so your plan can address them.
- Messages: anything you send through our contact form or by email.
- Testimonials: quotes you agree to let us publish.
Payment information is collected and processed directly by Stripe. We never see or store your full card number; we receive a payment confirmation, amount, and limited billing details.
Collected automatically: basic technical data such as IP address, browser and device type, pages visited and timestamps, used for security and to keep the site working.
3. How we use your information
- To create, store, display and deliver your readiness plans, carry cards and calendar files.
- To process payments, manage Trip Pack credits and memberships, and prevent fraud.
- To run your account, respond to messages and provide support.
- To send service emails (receipts, plan delivery, renewal notices). We will only send marketing with your consent, and you can unsubscribe anytime.
- To secure, maintain and improve the Service, and to comply with legal obligations.
4. AI processing
To build your plan, your trip details are sent to an AI model provider through our secure processing gateway. They are used only to generate your plan and are not used by us to train AI models. Avoid entering information that isn't needed for your trip, such as passport numbers or financial account details.
5. Legal bases (EU/UK visitors)
Where GDPR or UK GDPR applies, we rely on: performance of a contract (creating your plan), legitimate interests (security, fraud prevention, improving the Service), legal obligation (tax and accounting records), and consent (optional health information, testimonials, marketing). You can withdraw consent at any time.
7. Health and sensitive information
Health details are optional. We use them only to tailor your plan and never for advertising. We are not a healthcare provider and are not a "covered entity" under HIPAA; clinicians should avoid entering patient identifiers beyond what is needed for a trip.
8. Children's information
The Service is intended for adults. We do not knowingly collect information directly from children under 13 (or under 16 in the EU/UK). Parents and guardians may enter their children's details to build family plans, and can ask us to access or delete that information at any time. If you believe a child has given us information directly, contact us and we will delete it.
9. Retention
- Plans are available for one year and may be kept in your account after expiry until you delete them or close your account.
- Account data is kept while your account is open and deleted within 30 days of a deletion request, except where we must keep it.
- Purchase records are kept as long as required for tax, accounting and legal purposes (generally up to 7 years).
- Contact messages are kept as long as needed to respond and follow up, typically no more than 2 years.
10. Security
We use encryption in transit (HTTPS), access controls that limit each user to their own data, encrypted storage for sensitive financial fields, and restricted administrative access. No system is perfectly secure; if a breach affects your information we will notify you as required by law.
12. Advertising measurement
We measure the effectiveness of our Google Ads using Google's measurement tag. It records which ad click brought a visitor to our site and whether that visit led to choosing a plan, starting checkout, or completing a purchase, together with the purchase value in US dollars. Google acts as the recipient of this measurement data. We never send your trip details, health information, questionnaire answers, or plan contents to Google, and we do not send customer-matching identifiers such as your email address.
In regions whose laws require consent for this kind of measurement (including the EEA, UK and Switzerland), the tag stays off until you accept it in the cookie banner, and you can change your choice anytime from the "Cookie settings" link in the footer. We keep a record of each choice, when it was made, and the notice that was shown, so acceptance and withdrawal are provable. Elsewhere, measurement runs without a banner. Declining never limits what you can do on the site.
13. Bot protection
Our contact form and sign-in page use Cloudflare Turnstile to tell people apart from automated bots. Turnstile processes technical signals such as your IP address and browser characteristics to run this check. It does not use this data for advertising. Cloudflare's own privacy policy governs how it handles that data.
14. Your rights and choices
Depending on where you live, you may have the right to:
- access or get a copy of your personal information;
- correct inaccurate information;
- delete your information and account;
- receive your data in a portable format;
- opt out of marketing, sale, sharing or targeted advertising (we don't do these);
- limit use of sensitive information and withdraw consent;
- object to or restrict processing (EU/UK), and complain to your local data protection authority;
- appeal a decision about your request.
These include rights under the California Consumer Privacy Act (CCPA/CPRA) and privacy laws in Virginia, Colorado, Connecticut, Utah, Texas, Oregon, Florida and other states. Email support@readytogoglobal.com to make a request. We will verify your identity and respond within 45 days (30 days in the EU/UK). You may use an authorized agent. We will not discriminate against you for exercising your rights.
15. International transfers
We are based in the United States, and our providers may process data in the U.S. and other countries. Where required, we rely on appropriate safeguards such as Standard Contractual Clauses for transfers from the EU/UK.
16. Third-party links
Plans and pages may link to embassies, carriers, hospitals and other sites. Their privacy practices are governed by their own policies.
17. Changes to this policy
We may update this policy. The "Last updated" date shows the current version, and we will notify you of material changes by email or on the site.
18. Contact us
Tank Worldwide (Ready To Go Global) · Florida, USA · support@readytogoglobal.com. See also our Terms and Conditions.
This document is provided for general information and should be reviewed by a licensed attorney before relying on it.