PRIVACY

Clear measurement. No hidden checkout.

Last updated September 9, 2026. BoothTrail is a DBA of Manifesting Magic Holdings LLC.

Market host and vendor accounts

Market hosts and vendors may create a private account to maintain their own BoothTrail listing. BoothTrail stores the account email, a one-way password hash, listing details, uploaded listing photos, account role, review status, and security timestamps. Passwords must contain at least 21 characters and are never stored in readable form. Account and draft-listing records are encrypted outside the public website directory.

Each account can change only its own listing. Account creation requires a one-time invitation code that expires after seven days; BoothTrail stores only a one-way hash of that code. New listings stay private until BoothTrail reviews and publishes them. Public listing pages contain only information the account holder submitted for publication; an account holder can keep the contact name private. Account holders may request access, correction, unpublishing, or deletion through the contact address below.

Public booth map and venue diagrams

Listing owners may add dated booth appearances with a market or event name, dates and hours, products, booth directions, location coordinates, and an optional venue diagram. They choose whether each appearance shows an exact booth pin, the venue location, an approximate city area, or no public map location. Only confirmed appearances from published listings appear on the public map, and expired appearances are removed from discovery results automatically. An approximate city location does not publish the submitted street address and uses reduced coordinate precision.

The interactive map and address search use Google Maps Platform. Google may process the visitor's internet address, map interactions, and place-search requests under Google's terms. BoothTrail asks for browser location permission only after a shopper selects “Use my location.” That location is used in the browser to order nearby results and is not saved in the BoothTrail directory. Shoppers can decline location access and search by city, ZIP code, market, vendor, or product instead.

Vendor applications to market hosts

A vendor may apply through a published market-host page. BoothTrail collects the vendor's business name, contact name, email address, optional phone number, product description, optional website or social link, optional message, consent, application status, and security timestamps. The application is encrypted and can be viewed only by that market's authenticated host and the BoothTrail owner. It does not automatically create a public vendor listing.

Applicants must not submit passwords, Stripe or Square credentials, secret or API keys, banking information, card information, or unnecessary customer data. Market hosts use applications only to evaluate and communicate with prospective vendors for their market.

BoothTrail mobile application

The public Trail and Discover sections do not require an account. The native mobile application does not use advertising SDKs, does not sell personal information, and does not use personal information for cross-app tracking.

Optional pseudonymous mobile analytics

The installed mobile app asks before sending pseudonymous usage events. If you allow them, BoothTrail can count app opens, screen views, vendor-page visits, language changes, search usage, and nearby-alert results. Search words, private dispatch records, names, email addresses, phone numbers, contacts, messages, and exact device location are not included.

After you allow analytics, that installation receives a random identifier that is not tied to the owner account. The HostGleam service forwards the permitted event to Google Analytics 4 and may use the request's internet address transiently so Google can provide approximate country, region, or city reporting. BoothTrail does not save or display a customer's internet address in its own event store.

Optional nearby vendor alerts

A shopper may follow a vendor and separately enable nearby alerts. BoothTrail requests notification, foreground-location, and background-location permission only when an active campaign exists for a verified vendor location, market, or event. The phone checks entry into that limited area and displays the vendor's alert.

The vendor does not receive the shopper's live location, route, name, address, or a list of people inside the area. BoothTrail may count aggregate alert deliveries, opens, and vendor-page visits when pseudonymous analytics is also allowed. Nearby alerts can be turned off in the app, and operating-system location permission can be withdrawn in device settings.

Private owner workspace

The Bee Removal Dispatch workspace is restricted to the authorized owner account. It may contain information the owner enters for a removal job, including a service address, agreed price, appointment, bee location, customer name, customer phone number, notes, and a dispatch phone number. This information is used only to provide the private dispatch, backup, directions, and message-preparation functions requested by the owner. It is never displayed in the public BoothTrail directory.

Private records are protected on the device with XChaCha20-Poly1305 authenticated encryption. The encryption key is stored in the iPhone Keychain or Android Keystore. When backup is available, the private record is transmitted over HTTPS to BoothTrail's authenticated HostGleam service and stored outside the public website area. Access requires the owner account.

Owner account and device security

BoothTrail uses the owner's email address to authenticate the private workspace and maintain the owner session. A supported phone may ask Face ID, Touch ID, Android biometrics, or the device passcode to unlock the workspace. The operating system performs that check; BoothTrail does not receive or store a face image, fingerprint, or biometric template.

Text message preparation

The private workspace can prepare a bee-removal message addressed to the dispatch contact. BoothTrail opens the phone's normal Messages composer with the job details filled in. The owner reviews the message and chooses whether to send it. BoothTrail does not send the message automatically and does not read the phone's message history.

Store review demonstration

The mobile app includes an isolated sample-data demonstration for Apple and Google reviewers. It does not sign in, connect to HostGleam, send a text, or display real customer information. Changes in the demonstration are temporary.

Basic website measurement

BoothTrail uses Cloudflare Web Analytics for privacy-focused page-view and performance measurement. This helps us understand general traffic and keep the website reliable.

Optional detailed analytics

If you select “Allow analytics,” BoothTrail may use Google Analytics 4 and Microsoft Clarity to measure visits, traffic sources, engagement time, clicks, scrolling, page performance, conversions, heatmaps, and privacy-masked session replays. These tools are not used to identify a visitor by name or email address.

Form fields and editable areas are masked for Clarity. Detailed analytics and session-replay tools are disabled on the secure listing portal. BoothTrail does not intentionally send names, email addresses, passwords, phone numbers, payment details, order contents, or message text to analytics tools.

Your choice

Website analytics stays off unless you allow it in the on-site notice. Mobile analytics and nearby vendor alerts each require their own choice in the installed app. You can clear site data in your browser to reset the website choice, and you can clear app storage or use device settings to reset mobile permissions.

Vendor pages and checkout

Vendor pages hosted on BoothTrail use BoothTrail's analytics configuration. If a shopper follows a vendor's Stripe, Square, website, email, or other external link, that vendor or provider applies its own privacy and security practices. BoothTrail does not ask for or store a vendor's Stripe password, secret key, bank details, or customer card information, and BoothTrail does not receive or hold the vendor's customer payment through those links.

Information you choose to send

If you email BoothTrail or apply for a vendor or organizer page, we use the information you provide to respond, evaluate the request, create approved listings, provide services, maintain records, prevent misuse, and operate the business.

Shopper launch updates

If you choose to join BoothTrail's shopper launch list, we collect your email address, any ZIP code and interest you optionally provide, your consent, and the source of your signup. We use this information to send BoothTrail launch news and local-market updates. Subscriber records are stored encrypted outside the public website area and are not sent to Google Analytics or Microsoft Clarity.

You can unsubscribe or request access, correction, or deletion by emailing BoothTrail at the address below. We may retain a limited suppression record only to honor an unsubscribe request and prevent accidental re-enrollment.

Service providers

Website information may be processed by service providers used for hosting, security, email, and analytics, including Cloudflare, Google, and Microsoft, subject to their applicable terms and privacy practices.

Retention and deletion requests

Removing the app or clearing its storage removes the local application data controlled by the device, subject to the device's own backup behavior. To request deletion of the private owner account or its server backup, email BoothTrail from the owner account address. BoothTrail may retain limited records when required for security, fraud prevention, legal compliance, or resolving a request.

Questions

Email hello@boothtrail.com with a privacy question, access request, correction request, or deletion request concerning information you submitted.