Privacy
Simple privacy.
GoToBe is built for local belonging, not surveillance. We keep the data model small, use only necessary cookies for login, and avoid ad-tech-style tracking.
This page explains what we store, how long we keep it, and how to ask for access, correction, or deletion without having to hunt for a hidden contact route.
What we store
Only what is needed to make GoToBe work.
Your email address is used for login and product emails you trigger yourself.
We also store your name, optional phone number, home area, and notification choices.
Your memberships, RSVPs, place claims, and admin actions are stored so the product can run and be moderated responsibly.
How long we store it
Short windows where possible, longer only where the account requires it.
Login links (magic links): expire automatically after 30 minutes, then become unusable.
Session cookie: valid for 30 days from last login. Also cleared when you sign out.
Profile and memberships: kept for as long as your account is active. Use the feedback page if you want your account deleted — we anonymize or remove your data within 30 days.
Page views and operational logs: kept for 90 days for product health and debugging, then deleted automatically.
Log of admin and moderation actions: kept while the account is active so we can document responsible decisions.
Backups: Cloudflare D1 keeps automatic backups for up to 30 days for disaster recovery.
Cookies
Only necessary cookies.
GoToBe uses two strictly necessary cookies.
gotobe_session: HttpOnly, Secure, SameSite=Lax. Keeps you logged in. Expires after 30 days or when you sign out.
gotobe_locale: HttpOnly. Remembers your language choice (DK/EN). Expires after 1 year.
Both cookies are exempt from the consent requirement under ePrivacy / the cookie directive, because they are necessary to deliver the service you have explicitly asked for. There are no advertising or analytics third-party cookies.
Email is only used when the action requires it.
Magic links are used for login and expire after 30 minutes.
Confirmations, reminders, and area overviews are only sent when the relevant action or preference exists.
You can control overviews and reminders from My GoToBe.
Operational logging
We log for operations and debugging, not for advertising.
Our server logs request paths, response status, duration, and errors, so we can find and fix bugs responsibly. Logs are kept for 90 days.
GoToBe also records simple first-party page views for product health and learning. That data stays inside GoToBe's own infrastructure and is not used for advertising.
Admin actions also write a log for claims, moderation, merges, and profile updates.
We have not enabled any advertising or third-party scripts for behavioral tracking in the product shell.
Your rights
Access, correction, and deletion should be easy to ask for.
You can request access to, correction of, or deletion of your data at any time. Use the feedback page and we will follow up from there.
You also have the right to complain to the Danish Data Protection Agency (Datatilsynet) if you believe we handle your data incorrectly.
Data controller
Who runs GoToBe.
GoToBe is run as an independent project by Jørgen Stage Larsen in Denmark.
You can contact the data controller directly at jorgen@larsen.zone for questions about your data, access, or deletion.
If anything is unclear, use the feedback page. We read those messages ourselves and follow up from there.
You can also read more about the project direction and promise on the About page.
