PinLoopGo Privacy Statement

Version: 1.0

Date: 15 July 2026

Trade name: PinLoopGo

Provider / controller: Via Per Via B.V.

Dutch Chamber of Commerce number: 42112242

Registered address: Tillichstraat 31, 9746 CC GRONINGEN

Privacy email: info@pinloopgo.com

Support email: info@pinloopgo.com

Website: https://www.pinloopgo.com/

1. What is this privacy statement about?

PinLoopGo is a service provided by Via Per Via B.V. PinLoopGo enables users, among other things, to have routes calculated, view them and follow them, for example circular walking routes where the start and end point are the same.

This privacy statement explains which personal data Via Per Via B.V. processes through PinLoopGo, why we do so, the legal basis on which we do so, how long we retain data, with whom we share data and what rights users have.

This privacy statement applies to:

  1. visiting the PinLoopGo website and web application;
  2. creating and using an account;
  3. generating, saving, downloading or following routes;
  4. using location functions;
  5. purchasing paid services, credits, bundles or subscriptions;
  6. contact with support or privacy contact persons;
  7. receiving service messages, newsletters or marketing communications;
  8. possible future functions such as reviews, photos, route tips or other user content.

2. Who is responsible for processing personal data?

The controller is:

Via Per Via B.V.

Trading under the name PinLoopGo

Dutch Chamber of Commerce: 42112242

Address: Tillichstraat 31, 9746 CC GRONINGEN

Email: info@pinloopgo.com

Via Per Via B.V. determines the purposes for which and the means by which personal data is processed through PinLoopGo.

3. What personal data do we process?

Depending on how a user uses PinLoopGo, we may process the following categories of personal data.

3.1 Account data

If a user creates an account, we may process:

  1. name;
  2. email address;
  3. username;
  4. password, stored in encrypted form;
  5. language preference;
  6. country or region;
  7. account settings;
  8. date of registration;
  9. login history and security information.

3.2 Contact and support data

If a user contacts us, we may process:

  1. name;
  2. email address;
  3. telephone number, if provided by the user;
  4. content of messages;
  5. attachments or screenshots sent by the user;
  6. date and time of contact;
  7. internal support notes;
  8. information required to handle a question, complaint or request.

3.3 Location data

PinLoopGo may process location data, for example to generate a route from the user’s current location or from a chosen starting point.

Location data may include:

  1. GPS location or approximate location;
  2. chosen starting point;
  3. route points, waypoints or coordinates;
  4. distance, direction, route preferences and route variant;
  5. time at which a route is generated or used;
  6. any location history, only if this function is available and the user uses or enables it.

Location data can be sensitive. We process location data only insofar as this is necessary for PinLoopGo to function, insofar as the user gives consent for this, or insofar as another valid legal basis applies.

3.4 Route data and usage data

We may process data about the use of routes and functions, such as:

  1. generated routes;
  2. saved routes;
  3. downloaded GPX files or route files;
  4. favourite routes or stations;
  5. selected distance, direction, route type or preferences;
  6. viewed station routes or route pages;
  7. interactions with map layers, points of interest or background information;
  8. errors, crashes, performance data and technical logs.

3.5 Payment and billing data

If a user purchases a paid service, credit, bundle or subscription, we may process:

  1. name;
  2. email address;
  3. billing address, if required;
  4. country;
  5. VAT details, if applicable;
  6. payment status;
  7. order number;
  8. subscription type;
  9. purchase date;
  10. renewal date;
  11. cancellation date;
  12. invoices and administrative data.

Full payment card details are generally processed by our payment service provider and not by Via Per Via B.V. itself, unless we expressly state otherwise.

3.6 Technical data

When PinLoopGo is used, technical data may be processed, such as:

  1. IP address;
  2. browser and browser version;
  3. device category;
  4. operating system;
  5. screen resolution;
  6. language settings;
  7. time zone;
  8. referring website;
  9. pages visited;
  10. click behaviour;
  11. session data;
  12. error messages;
  13. log files;
  14. cookie and similar identifiers.

3.7 Marketing and communication data

If a user subscribes to communications or consents to marketing, we may process:

  1. name;
  2. email address;
  3. communication preferences;
  4. subscription and unsubscription status;
  5. newsletters opened;
  6. links clicked;
  7. segments or interests, for example interest in walking routes, station routes, cities or regions.

3.8 User-submitted content

If PinLoopGo offers functions that allow users to post or share their own content, we may process:

  1. reviews;
  2. photos;
  3. route tips;
  4. comments;
  5. suggested corrections;
  6. users’ own routes;
  7. username or profile name;
  8. metadata associated with content, such as date, location or device information.

If PinLoopGo does not offer functions that allow users to publish content, this section becomes relevant only once such functions are made available.

4. Do we process special categories of personal data?

We do not ask users to provide special categories of personal data, such as data concerning health, religion, political opinions or biometric data.

Nevertheless, some data may be sensitive indirectly. Location data and route history, for example, may reveal information about a person’s home address, habits, workplace, health, religious beliefs or social activities.

Users should therefore take care when sharing Routes, location data and personal information. If a user shares special categories of personal data with us, for example in a support message, we process that data only insofar as necessary to handle the message or insofar as we are legally required to process it.

5. What do we use personal data for?

We process personal data for the following purposes.

5.1 Providing PinLoopGo

We use personal data to:

  1. operate the website and web application;
  2. calculate routes;
  3. display routes, map views and route instructions;
  4. make GPX files or other route files available;
  5. provide account functions;
  6. remember preferences;
  7. make saved or favourite routes available;
  8. provide support.

5.2 Location functions

We use location data to:

  1. generate routes from the user’s current location;
  2. generate routes from a chosen starting point;
  3. display relevant stations, routes, map points or points of interest;
  4. improve route instructions and map functions;
  5. calculate distance, direction and route variants.

5.3 Account management and security

We use personal data to:

  1. create and manage accounts;
  2. enable users to sign in;
  3. secure passwords;
  4. prevent misuse, fraud and unauthorised access;
  5. implement technical and organisational security measures;
  6. send notifications about security or account use.

5.4 Payments and administration

We use personal data to:

  1. process payments;
  2. manage subscriptions, credits or purchases;
  3. create invoices;
  4. check payment statuses;
  5. handle refunds or withdrawals;
  6. comply with tax and administrative obligations.

5.5 Support, complaints and communication

We use personal data to:

  1. answer questions;
  2. handle complaints;
  3. process reports concerning Routes, errors or dangerous situations;
  4. handle privacy requests;
  5. inform users about important changes;
  6. send service messages about accounts, purchases, security or availability.

5.6 Improvement, analysis and development

We use personal data and, where possible, aggregated or pseudonymised data to:

  1. improve PinLoopGo;
  2. resolve errors and outages;
  3. analyse performance and usability;
  4. understand popular routes, stations, regions and functions;
  5. develop new functions;
  6. detect misuse and overloading;
  7. improve the quality of route generation.

5.7 Marketing and newsletters

We use personal data to:

  1. send newsletters if the user subscribes to them;
  2. inform users about new functions, routes or offers;
  3. inform existing customers about similar services, insofar as legally permitted;
  4. manage marketing preferences;
  5. process unsubscribes.

Users can always unsubscribe from commercial emails via the unsubscribe link in the email or via info@pinloopgo.com. We may continue to send service messages for as long as necessary for the account or service.

5.8 Legal obligations and legal protection

We may process personal data to:

  1. comply with legal obligations;
  2. maintain our administration;
  3. respond to requests from competent authorities;
  4. investigate fraud, misuse or security incidents;
  5. protect the rights of Via Per Via B.V., users or third parties;
  6. bring or defend legal proceedings.

6. On what legal bases do we process personal data?

We process personal data only where there is a valid legal basis for doing so. Depending on the situation, we rely on the following legal bases.

Purpose

Examples

Possible legal basis

Providing the service

calculating a route, displaying an account, making saved routes available

performance of the contract

Using location from the current position

using GPS location to start a route

consent or performance of the contract, depending on the function

Account management

registration, login, security

performance of the contract, legitimate interests

Payment and billing

subscription, credit, invoice

performance of the contract, legal obligation

Support

questions, complaints, error reports

performance of the contract, legitimate interests

Service messages

important account or security information

performance of the contract, legitimate interests

Newsletter

commercial newsletter

consent, or legitimate interests for existing customers in relation to similar services where permitted

Analytics

measuring usage and improving the service

consent or legitimate interests, depending on the type of cookie/technology and its impact

Security and fraud prevention

log files, misuse detection

legitimate interests, legal obligation

Administration

statutory tax retention obligations

legal obligation

Legal claims

disputes, enforcement of terms

legitimate interests

Where we rely on consent as the legal basis, the user may withdraw that consent at any time. Withdrawal does not have retroactive effect.

7. Location data: additional explanation

Location data is important for PinLoopGo, but it can also be privacy-sensitive. We therefore apply the following principles:

  1. we request access to location data only when this is necessary for a function;
  2. the user can also choose a starting point manually if this function is available;
  3. we do not process location data for longer than necessary for the purpose for which it was collected;
  4. where possible, we try to limit, pseudonymise or aggregate route and location data;
  5. we do not sell individual location data to advertisers;
  6. we do not share individual location data with third parties for those third parties’ own marketing purposes unless the user expressly consents to this;
  7. the user can use browser or device settings to disable location access.

If a user disables location access, some PinLoopGo functions may work less well or may not work at all.

8. Cookies and similar technologies

PinLoopGo may use cookies, local storage, pixels, SDKs and similar technologies.

We distinguish, among other things, between:

  1. functional cookies and technologies: necessary for the website or web application to work properly, for example for login, sessions, language preferences or security;
  2. analytics cookies and technologies: intended to measure usage and improve PinLoopGo;
  3. preference cookies: intended to remember settings;
  4. marketing or tracking cookies: intended to follow users across websites or apps or to enable personalised marketing.

For cookies or similar technologies that require consent, we ask for consent in advance via a cookie banner or similar mechanism. The user can change or withdraw consent later.

More information is available in the PinLoopGo cookie statement.

9. From whom do we receive personal data?

We usually receive personal data directly from the user. We may also receive data from:

  1. browsers, devices and operating systems;
  2. payment service providers;
  3. hosting providers;
  4. analytics and monitoring services;
  5. map, routing and geocoding providers;
  6. authentication or login providers, if the user signs in through them;
  7. email and newsletter services;
  8. support tools;
  9. business partners, if the user gains access to PinLoopGo through a partner;
  10. public sources, insofar as relevant to background information and not to individual user profiles.

If a user provides us with personal data relating to someone else, for example by sharing a route with another person, the user must ensure that they have a valid reason or permission to do so.

10. With whom do we share personal data?

We share personal data only when this is necessary for the purposes described in this privacy statement, when the user has given consent, or when we are legally required to do so.

We may share personal data with the following categories of recipients.

10.1 Processors

We may engage service providers that process personal data on our behalf, such as:

  1. hosting providers;
  2. cloud providers;
  3. database providers;
  4. payment service providers;
  5. email and newsletter providers;
  6. analytics providers;
  7. monitoring and logging providers;
  8. map, routing and geocoding providers;
  9. customer service and support tools;
  10. administration and accounting software;
  11. security service providers.

Where necessary, we enter into data processing agreements with processors.

10.2 Independent controllers

Some parties determine for themselves how they process personal data. This may apply, for example, to:

  1. payment service providers;
  2. map or platform providers;
  3. app stores or browser platforms;
  4. social media platforms;
  5. external websites to which PinLoopGo links;
  6. public authorities or supervisory authorities.

The processing carried out by these parties is governed by their own privacy policies.

10.3 Legal obligations and protection of rights

We may share personal data with competent authorities, supervisory authorities, courts, advisers or counterparties when this is necessary to:

  1. comply with laws or regulations;
  2. respond to a valid legal request;
  3. investigate fraud, misuse or security incidents;
  4. protect our rights or those of users and third parties;
  5. establish, exercise or defend legal claims.

11. Transfers outside the European Economic Area

We aim to process personal data within the European Economic Area as much as possible.

Some service providers or sub-processors may process personal data in countries outside the European Economic Area. If this occurs, we ensure that appropriate safeguards are in place, such as:

  1. an adequacy decision by the European Commission;
  2. standard contractual clauses;
  3. additional technical and organisational measures;
  4. other transfer mechanisms permitted by law.

More information about international transfers can be requested via info@pinloopgo.com.

12. How long do we retain personal data?

We do not retain personal data for longer than necessary for the purposes for which it was collected, unless we are legally required to retain data for longer or longer retention is necessary for legal claims.

Provisional retention periods:

Data category

Indicative retention period

Account data

for as long as the account exists and for a maximum of 6 months afterwards, unless longer retention is necessary

Login and security logs

up to 24 months, unless needed for an investigation into misuse or security

Route data linked to an account

for as long as the user keeps it or for as long as necessary for the service.

Temporary route calculations without an account

as short as possible, with a maximum of 1 week

GPS or location data for an active session

only during the session or for as short a period as possible, unless the user enables route history

Favourite or saved routes

for as long as the account exists or until the user deletes them

Payment and billing data

in accordance with statutory tax retention periods

Support requests

up to 2 years after the request has been handled, unless longer retention is necessary

Newsletter data

until the user unsubscribes and, afterwards, on a limited basis as evidence of the unsubscribe request or consent

Cookie and analytics data

in accordance with the cookie statement and the settings of the tools used

User content

for as long as the content is available or until it is removed, unless longer retention is necessary

13. How do we protect personal data?

We take appropriate technical and organisational measures to protect personal data against loss, misuse, unauthorised access, disclosure, alteration and destruction.

These measures may include:

  1. encryption of connections;
  2. encrypted storage of passwords;
  3. access restrictions;
  4. logging and monitoring;
  5. back-ups;
  6. security updates;
  7. segregation of roles and permissions;
  8. data processing arrangements with service providers;
  9. periodic reviews of security measures;
  10. procedures for personal data breaches.

No website or app is completely secure. Users are responsible for choosing a strong password, keeping login details confidential and securing their own device.

14. Personal data breaches

If a security incident involving personal data occurs, we assess whether it constitutes a personal data breach and whether it must be reported to the Dutch Data Protection Authority and/or affected users.

We document personal data breaches in accordance with our legal obligations. If a personal data breach is likely to result in a high risk to the rights and freedoms of users, we inform the affected users insofar as required by law.

15. Users’ rights

Users have various privacy rights under the GDPR. Depending on the circumstances, users may request:

  1. access to their personal data;
  2. correction of inaccurate or incomplete data;
  3. erasure of personal data;
  4. restriction of processing;
  5. data portability;
  6. objection to processing;
  7. withdrawal of consent;
  8. objection to direct marketing;
  9. information about automated decision-making, where applicable.

A request can be sent to info@pinloopgo.com.

We may request additional information to verify the identity of the requester. We do not request more information than necessary to prevent misuse and protect privacy.

In principle, we respond to privacy requests within one month. In complex cases, this period may be extended in accordance with the applicable legal rules.

16. Withdrawing consent

If we process personal data on the basis of consent, the user may withdraw that consent at any time.

Withdrawal of consent does not affect processing that took place before the consent was withdrawn.

Examples:

  1. location access can be withdrawn through browser or device settings;
  2. cookie preferences can be adjusted;
  3. a newsletter subscription can be ended via the unsubscribe link in the newsletter;
  4. marketing consent can be withdrawn via info@pinloopgo.com.

If consent is withdrawn, some PinLoopGo functions may work less well or may no longer work.

17. Objection to marketing

Users can always object to the use of their personal data for direct marketing.

After a user unsubscribes, we no longer send commercial communications unless the user subscribes again later. We may still send service messages that are necessary for the account, purchases, subscriptions, security or changes to the service.

18. Automated decision-making and profiling

PinLoopGo may automatically calculate routes and display recommendations based on entered data, location, preferences, distance, direction, map data and the availability of roads or paths.

This automatic route calculation is intended to generate route suggestions. It is not intended to produce legal effects for users or similarly significantly affect them.

We do not use personal data for solely automated decision-making that produces legal effects or similarly significant effects, unless we expressly state this and it is legally permitted.

We may use segmentation or analysis for product improvement, personalisation or marketing where there is a valid legal basis for doing so.

19. Children and minors

PinLoopGo is intended for users aged 16 and over.

Users under the age of 16 may use PinLoopGo only with the consent of a parent or legal representative.

If we discover that we have collected personal data from a child under the age of 16 without valid consent, we will take appropriate measures, such as deleting the account or the relevant data, insofar as required by law.

Parents or legal representatives can contact us via info@pinloopgo.com.

20. Links to third-party websites and services

PinLoopGo may contain links to third-party websites, resources, maps, articles, platforms or services.

This privacy statement does not apply to third-party websites or services. We are not responsible for the way third parties process personal data. We recommend that users read the privacy statement of the relevant third party.

21. Open sources and background information

PinLoopGo may display background information from open sources, such as Wikipedia, Wikimedia Commons, Wikidata, OpenStreetMap, government databases or similar sources.

These sources are used for information about places, stations, points of interest, nature, culture, history or routes. In principle, we do not use these sources to identify individual users.

If background information is incorrect or contains personal data that a user believes should not be displayed, the user can contact us via info@pinloopgo.com.

22. Social media

If PinLoopGo uses social media pages or offers social media integrations, social media platforms may process personal data when users interact with those pages or buttons.

The processing carried out by social media platforms is governed by the privacy policy of the relevant platform.

We may process data that users share publicly or directly with us via social media platforms, for example comments, private messages or profile information visible to our page.

23. Business customers and partners

If PinLoopGo is used by or through business customers, partners, tourism organisations, hotels, transport operators, municipalities or other organisations, additional arrangements may apply.

Depending on the arrangement, Via Per Via B.V. may act as controller, joint controller or processor. This must be determined for each collaboration.

Business customers and partners may share personal data with Via Per Via B.V. only if there is a valid legal basis for doing so and the data subjects have been properly informed.

24. Merger, acquisition or transfer

If Via Per Via B.V., PinLoopGo or part of the activities is transferred, sold, merged or reorganised, personal data may be transferred to the relevant party insofar as this is necessary and legally permitted.

Users will be informed about this if required by law.

25. Complaints

If a user has a complaint about the way we process personal data, we ask them to contact us first via info@pinloopgo.com

Users also have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens), the Dutch supervisory authority for privacy and data protection.

26. Changes to this privacy statement

We may amend this privacy statement, for example if PinLoopGo changes, if we process different personal data, if we use different service providers or if legislation changes.

The most recent version is available via the PinLoopGo website or web application.

In the event of important changes, we inform users in an appropriate manner, for example via the website, web application, account area or email.

27. Contact

For questions about this privacy statement or the processing of personal data, please contact:

Via Per Via B.V. / PinLoopGo

Privacy email: info@pinloopgo.com

Support email: info@pinloopgo.com

Address: Tillichstraat 31, 9746 CC GRONINGEN

Dutch Chamber of Commerce: 42112242

Practical summary for users

This summary is intended to explain the main points in an understandable way. If there is any difference between this summary and the full privacy statement, the full privacy statement prevails.

  1. PinLoopGo uses personal data to calculate routes, manage accounts, process payments and provide support.
  2. Location data is used only when necessary for route functions or when the user gives consent.
  3. Users can disable location access through their browser or device.
  4. We do not sell individual location data to advertisers.
  5. We share data with service providers or third parties only when necessary for PinLoopGo, when legally required, or when the user gives consent.
  6. Users can exercise privacy rights such as access, correction, erasure, objection and withdrawal of consent.
  7. The cookie statement applies to cookies and tracking and, where necessary, we ask for consent.
  8. Questions or requests can be sent to info@pinloopgo.com