BachHQHome

Privacy Policy

Last updated: July 30, 2026

Bach HQ ("we", "us") helps maids of honor plan bachelorette trips, split costs, and collect money from guests. This policy explains what we collect and how we use it.

What we collect

  • Account info (organizers): email, name, password hash.
  • Trip content: trip name, destination, dates, itinerary, guest list, expenses, photos uploaded to The Wall.
  • Guest info: name and RSVP status entered by guests via the public link. No guest account is required.
  • Payments: processed by Stripe. We store payment metadata (amount, status, timestamp) but never card numbers.
  • Product analytics: see the section below.

How we use it

To operate the trip you created, calculate splits, send reminder emails to guests who opted in, and route money to the organizer's connected Stripe account. We do not sell your data.

Money flow

Bach HQ uses Stripe Connect destination charges. Guest payments settle directly into the organizer's Stripe account. Bach HQ never holds or escrows funds.

Product analytics

We use our own first-party analytics to understand how people move through Bach HQ — for example, how many people who open the homepage go on to create a trip. We do not use Meta, TikTok, Google Ads, or any other third-party advertising pixels, and we do not set third-party cookies.

For each recorded event we store only:

  • An anonymous session ID — a random value generated in your browser and kept in your browser's local storage. It is not linked to your identity and you can clear it by clearing site data.
  • No account identifier — analytics events are not tagged with your Bach HQ user ID, even when you are signed in.
  • The event name (from a fixed allowlist, e.g. "landing_view" or "trip_created") and a timestamp.
  • The page path and the referring URL.
  • UTM campaign parameters in the link you arrived on: source, medium, campaign, content, and term.

We deliberately do not store IP addresses, email addresses, guest names, trip content, or any card data in analytics events. Analytics records are retained for 13 monthsand then automatically deleted.

Service providers

  • Supabase — database, authentication, and file storage.
  • Stripe — payment processing and payouts to organizers (including Stripe Connect).
  • Resend — transactional and reminder email delivery.
  • Cloudflare — application hosting and delivery.
  • Google Maps Platform — address autocomplete and map links.

These providers process data on our behalf in order to run the product. We do not sell your data.

Your choices

You can delete a trip from your dashboard at any time, which removes all associated guests, expenses, photos, and reminders. Email hello@bachhq.ai for account deletion.

Contact