privacy policy.
Last updated 19 September 2026
This policy explains what spaced. (“we”, “us”) collects when you use get-spaced.com, join our waitlist, or use the spaced. app, and what we do with it. The short version: we collect what the product needs, we never sell it, Spaces are private to their members, and you can leave whenever you like.
1. Who we are
The data controller is spaced. (“spaced.”). You can reach us about anything in this policy at hello@get-spaced.com. We handle personal data in line with the UK GDPR, the EU GDPR and the Data Protection Act 2018.
2. The website and the waitlist
When you join the waitlist we collect your name, your email address, whether you ticked the marketing consent box, the time you signed up, and basic campaign information (for example which link or ad brought you here, from utm_ parameters). We do not collect payment details or precise location on the website.
We use your email to confirm you are on the list and to invite you to early access when the app is ready (our legitimate interest in running the waitlist you asked to join). If you ticked the consent box we may also send product news, launch updates and the occasional offer (consent). Marketing is opt-in: if you did not tick the box we will not send marketing, and you can unsubscribe from any email in one click or by writing to hello@get-spaced.com.
Waitlist entries are stored in our database (Google Firebase, see §7) and in our customer relationship system (GoHighLevel, see §7), which sends the emails. The website itself never sends email.
3. The app: what we collect
| What | Details | Why (legal basis) |
|---|---|---|
| Account | Your sign-in identity (Apple, Google or email and password), display name, optional profile photo, email address. Optionally, bank details you choose to type in so friends can pay you back. | To run your account (contract). Bank details only if you enter them (consent); you can clear them any time. |
| Space content | Space names, dates and destinations; itinerary items; bills, who paid and who owes what; receipts you scan; photos, Live Photos and videos you share; who is a member of which Space. | To provide the product to you and the other members of that Space (contract). |
| Photo metadata | Photos keep their embedded metadata (EXIF), including capture time, camera information and location (GPS). See §4. | Contract, and your choice each time you share a photo. |
| Device tokens | A push-notification token for each device you sign in on. | To send the notifications you enable (contract / consent via your device settings). |
| Analytics | Aggregated usage events (for example “a Space was created”, “photos were uploaded”) with device type and app version. No advertising identifiers. | Legitimate interest in understanding how the app is used and improving it. |
| Crash reports | Stack traces, device model, OS version and app version when the app crashes. | Legitimate interest in keeping the app working. |
4. Photos and location data, please read this
When you share a photo or video into a Space, we keep the file exactly as taken, in original quality, and we do not strip its embedded metadata. That means any location data (EXIF/GPS) in a photo you share is kept and is shared with the members of that Space exactly as your camera recorded it. Other members can see where a photo was taken and can save the original, including that metadata, to their own device.
If you would rather not share a location, turn off location for your camera app, or remove the location from the photo in your phone’s photo library before sharing it. spaced. never shows your live or current location; only what is inside the files you choose to share.
Media is stored on Bunny.net (see §7) and is only ever served through short-lived, signed links generated after we have checked that the person asking is a member of that Space. There are no public URLs.
5. Bills: records only
spaced. never holds, moves or processes money. Bills, splits, balances and “marked as paid” are records that the members of a Space keep between themselves; settling up happens outside the app, however you and your friends prefer. We are not a payment service, a bank, or a financial adviser, and nothing in the app is financial advice.
Bills are visible only to the people on them (the payer and the participants). Balances are visible only to the person they belong to. Nobody, including other members of the Space, can see a bill they are not part of.
6. Receipt scanning
If you choose to scan a receipt, the receipt image is sent to Anthropic’s Claude API (see §7) to read the merchant, total and line items so you can assign them to people. Only receipts you explicitly choose to scan are sent; the result is shown to you as an editable checklist and you can always enter a bill by hand instead.
7. Who processes data for us
We use a small number of service providers (“processors”) who act only on our instructions:
| Processor | What for |
|---|---|
| Google Firebase (Google Cloud, EU/UK region for our database) | Sign-in, database, server functions, push notifications, analytics, crash reporting, app integrity checks. |
| Bunny.net | Storage and delivery of photos and videos, and video processing. |
| Anthropic | Reading receipt images you choose to scan (§6). Anthropic does not use API data to train its models. |
| Vercel | Hosting this website. |
| GoHighLevel | Our contact list and the email we send: waitlist signups, and app users (name, email, how you signed up, and whether you asked for marketing email). |
| Google Maps Platform (Places, Maps SDK) | Searching for a destination or a place for an itinerary item, showing the itinerary map, and the photos of places shown on plans. What you type into a place search is sent to Google as you type. |
| Pexels | Stock cover photo suggestions for a Space, searched by its destination name. |
| Apple and Google | Sign in with Apple / Google, the app stores, and maps links you open from an itinerary. |
Some of these providers process data outside the UK and EU (mainly in the United States). Where that happens we rely on adequacy decisions or the UK and EU standard contractual clauses, plus the providers’ own security measures.
We do not sell personal data and we do not share it with advertisers. We may disclose data if the law requires it, or to protect the rights and safety of our users.
7a. AI: receipts and itinerary suggestions
Two features use Anthropic’s Claude, server-side, and only when you ask for them:
- Receipt scanning (§6): the receipt image you chose to scan.
- “Plan it for me”: your Space’s destination and dates, and the answers you give on the vibe, pace and who is going. No names, no photos, no bills, and nothing about the other members.
Anthropic processes this on our instructions and does not use it to train models. Suggestions are drafts: nothing is added to your itinerary until someone taps to add it.
7b. Marketing email, and the record of what you agreed
When you create an account we ask you to accept these terms and the Terms of Use, and separately ask whether you want marketing email. The two are asked separately on purpose: agreeing to the terms is required to have an account, marketing is entirely optional and is never pre-ticked. We store which version you accepted and when, which is our record that you did.
You can turn marketing email off at any time in Settings → Marketing email, or by using the unsubscribe link in any marketing email. Either way you still receive the email the service needs to send you: account and security notices, and things you asked for. We rely on your consent for marketing, and on our legitimate interest in running the app for service email.
8. Other members of your Spaces
A Space is a shared, private group. Everything you put into a Space (itinerary items, bills you are on, photos and videos) is visible to the members of that Space, and they can download the originals of anything shared. Please only share what you are happy for the whole group to have. Anyone with a Space’s join code can join it, so share codes with care; the creator can generate a new code at any time, which invalidates the old one.
9. How long we keep things
- Waitlist: until you unsubscribe or ask us to delete you, or until the waitlist is closed after launch, whichever comes first.
- Account and Spaces: for as long as your account exists. Spaces are kept for as long as at least one member remains in them, so the group keeps its memories; a Space’s creator can delete it once all balances are settled.
- After you delete your account: your profile, sign-in identity, device tokens, bank details and your personal balance records are deleted within 30 days. Photos, videos and bills you have shared into a Space stay in that Space, credited to “Deleted member” instead of your name, so the group’s shared record stays intact. If you want specific photos or bills removed before deleting your account, delete them in the app first (bills only by their creator or payer, and only while nobody has paid towards them), or ask the Space’s creator to delete the Space.
- Analytics and crash data: aggregated, kept for up to 14 months.
- Backups: daily encrypted backups of the database are kept for 30 days.
10. Your rights
Under UK and EU data-protection law you can ask us to access the data we hold about you, correct it, delete it, restrict or object to how we use it, and receive a copy in a portable format. Where we rely on consent you can withdraw it at any time. Most of this you can do yourself in the app (edit your profile, delete photos or bills, delete your account); for anything else email hello@get-spaced.com and we will respond within 30 days. You also have the right to complain to a supervisory authority: in the UK that is the Information Commissioner’s Office (ico.org.uk).
11. Security
Data is encrypted in transit and at rest. Access to Space content is checked on our servers on every request, media links expire quickly, and only the people on a bill can read it. No system is perfectly secure; if we ever discover a breach that affects you we will tell you and the relevant authority as the law requires.
12. Children
spaced. is for people aged 16 or over. We do not knowingly collect data from anyone younger. If you believe a child has created an account, email hello@get-spaced.com and we will remove it.
13. Cookies and analytics on this website
This website uses one strictly necessary cookie to keep our own administrators signed in to the admin area. It does not use advertising cookies. If we add privacy-respecting analytics we will only measure visits in aggregate and will not track you across other websites.
14. Changes
We will update this page when anything changes and note the date at the top. For significant changes to how we use your data we will tell you in the app or by email before they take effect.
15. Contact
Questions, requests or complaints: hello@get-spaced.com.