Last updated August 9, 2026 · Effective August 9, 2026
The short version. We collect what a booking actually needs: who you are, where the walk happens, your dog's health and behaviour, and the messages and photos that go with it. We use it to run the service. We do not sell your personal information, we do not share it for cross-context behavioural advertising, and we do not run third-party ad trackers on this site.
Two kinds of data here are unusually sensitive and are handled with specific limits, described in sections 4 and 5: precise location during a walk, and recorded voice messages between staff and Guides.
This policy explains how [[ENTITY]], doing business as Dingo, handles personal information through dingocare.com and the Dingo apps for iPhone, Apple Watch and Mac. It applies to pet parents (“Clients”), independent pet-care professionals (“Guides”), applicants, and visitors.
Dingo operates in California and Nevada and is not directed to users outside the United States.
Guides are independent businesses, not our employees. When a Guide receives your address or your dog's information in order to perform a booking, they receive it as an independent business responsible for their own handling of it — see section 8.
| Category | Specifics | Where it comes from |
|---|---|---|
| Identifiers | Name, email, phone, account ID, profile photo | You, at sign-up |
| Location of service | Home or pickup address, gate codes, access notes, parking notes | You |
| Your dog | Name, breed, age, weight, photo, vaccination and licence status, medical conditions, medications, allergies, feeding and behavioural notes, bite or aggression history, recall reliability | You |
| Booking records | Services booked, dates, times, assigned Guide, status, notes, cancellations | Generated in use |
| Payment records | Amounts, platform fee, tips, last four digits and card brand, payout records, receipts, subscription status | Stripe — we never receive your full card number |
| Communications | Messages between you, your Guide and our staff; voice messages between staff and Guides; support emails and calls | You and Guides |
| Precise location | GPS points recorded along a walk route while a booking is active | The Guide's device |
| Photos | Walk photos, report-card images, dog and profile photos | You and Guides |
| Guide onboarding | Government ID, business licence, insurance certificate, background-check result, tax identification, Stripe payout details | Guides, and our screening providers |
| Device and technical | IP address, device type, OS version, app version, push notification token, crash and error logs, timestamps | Automatically |
We collect what a booking needs and stop there. We do not ask for a Social Security number except where tax law requires it of a Guide, we do not collect biometric identifiers, and we do not buy personal information from data brokers.
Under California law, two things we handle are “sensitive personal information”: precise geolocation and the contents of communications, including recorded audio. We use both only to provide the service you asked for and for the security and safety purposes described below. We do not use or disclose sensitive personal information to infer characteristics about you, and we do not use it for advertising or profiling of any kind.
A Guide's government ID, licence and background-check result are also sensitive, and are visible only to the small number of Dingo staff who need them to make an approval decision.
Live tracking is one of the main reasons people use Dingo, and it is also continuous information about where a specific person is. So it is bounded deliberately, in the product and not just in this policy:
GPS accuracy varies with device, terrain and signal. A route is a good record of a walk, not a precise statement of position at a given second.
Dingo staff and Guides can send each other short recorded voice messages — an operational tool for people who are outdoors with their hands full.
California and several other states require the consent of everyone involved to record a confidential conversation. A voice message you deliberately record and send is your own consent to that recording. Do not use the feature to record someone else, or a conversation with a third party, without their knowledge.
Photos your Guide takes during a booking are uploaded so you can see them, and they stay attached to that booking's record. You can download and share them freely — they are pictures of your dog.
Be aware of how walk photos are stored. They live at long, randomly generated web addresses that are not listed anywhere, are not linked from any public page, and are not indexed by search engines — but the address itself is not password-protected. Anyone you send a photo link to can open it, which is what makes sharing one with family easy, and it also means we will not claim the file is locked when it isn't. Your dog's profile photo works the same way. Everything genuinely private — voice messages, Guide identity documents — is in restricted storage that requires a signed, expiring link, and section 12 describes that.
We will not use a photo of your dog in marketing without your separate, specific permission.
Payments are processed by Stripe. Card details go directly from your device to Stripe and are never stored on Dingo's systems — we hold only the last four digits, the card brand, and Stripe's reference tokens, so you can recognise your own payment method.
Saved cards and billing are managed through Stripe's own hosted portal, reached from your account settings. Stripe's handling of your information is governed by Stripe's privacy policy.
Guides are paid through Stripe Connect, which collects the tax identification and bank details required to pay them and to issue a Form 1099-NEC.
Your Guide receives what they need to perform the booking: your name, the service address and access notes, your phone number, and your dog's health, vaccination and behavioural information. They need the behavioural information in particular — withholding it is how people and animals get hurt. Guides are independent businesses and are contractually required to keep it confidential and to use it only for the booking.
Service providers that process data on our instructions, under contract, and only for us:
| Provider | What it does |
|---|---|
| Supabase | Database, file storage and authentication — the primary system of record |
| Stripe | Payments, subscriptions, Guide payouts, tax forms |
| Apple | App distribution, push notifications, Sign in with Apple |
| Maps display on the website; Sign in with Google | |
| Vercel | Website hosting |
| Email delivery | Transactional email — confirmations, receipts, report cards |
| Background screening | Guide identity and criminal-record checks (Guides only, with consent) |
Legal and safety. We may disclose information when required by law, subpoena or court order; to respond to a genuine emergency involving a risk of death or serious injury to a person or an animal; to animal control or law enforcement in connection with a bite or cruelty report; to enforce our Terms; or to protect our rights. Where we are permitted to tell you about a legal request, we will.
Business transfer. If Dingo is acquired or merges, personal information may transfer as part of that transaction. The acquirer remains bound by this policy until you are given notice of any change, and you will have the chance to delete your account first.
Dingo does not sell personal information, and does not share it for cross-context behavioural advertising — as those terms are defined by the California Consumer Privacy Act. We have not done so in the preceding twelve months, including for anyone under 16. We also do not sell “covered information” as defined by Nevada Revised Statutes chapter 603A.
If that ever changes, we will update this section, tell you before it takes effect, and provide a working opt-out. We are not going to change it quietly.
A Nevada resident may nevertheless submit a verified request directing us not to sell their covered information, using the designated request address in section 16. We will respond within 60 days, and may extend by 30 days where reasonably necessary, with notice to you.
We use cookies and local storage for things the site cannot work without: keeping you signed in, remembering your session, and security. We do not use third-party advertising cookies, ad-network pixels, or cross-site tracking technologies.
We use limited first-party analytics to understand which pages and features are used and to find errors. This is aggregate and operational.
Do Not Track. Because we do not track users across third-party websites, there is no cross-site tracking here for a Do Not Track signal to switch off. We do not respond differently to DNT headers. We disclose this because California law requires the disclosure.
Global Privacy Control. We honour GPC signals as opt-out requests where they apply. As we do not sell or share personal information, a GPC signal does not change what happens to your data here.
| Data | Retention | Why |
|---|---|---|
| Account profile | Until you delete it — deletion is immediate | There is no grace period and no soft-delete; see section 14 |
| Booking and payment records | 7 years, with your identity removed once you delete your account | Tax, accounting and dispute records required by law |
| Messages | 3 years from the booking — but direct messages are deleted with your account | Dispute and safety investigation. Conversations are personal content, so they go with the person; see section 14 |
| Voice message audio | 90 days, deleted automatically | Operational value is short; the sensitivity is not |
| Walk route GPS points | 1 year | Report cards, and reconstructing an incident |
| Walk photos | While your account is active, unless you delete them | They are yours |
| Incident reports | 7 years | Bite and injury records have long legal tails |
| Guide licence, insurance and screening records | 7 years after the engagement ends | Contractor-classification and insurance evidence |
| Server and security logs | 90 days | Security investigation |
Where a period is set by law — tax, insurance, or the statute of limitations on an injury claim — we keep the record for that period even if you ask us to delete it, and we will tell you which exception applies.
No system is perfectly secure, and anyone who tells you otherwise is selling something. If a breach affects your personal information, we will notify you and the relevant authorities as required by California Civil Code §1798.82 and Nevada Revised Statutes §603A.220.
If you believe you have found a security vulnerability, please tell us at dingocare@gmail.com. We will not pursue legal action against anyone who reports a genuine vulnerability in good faith, accesses no more data than needed to demonstrate it, and gives us a reasonable chance to fix it.
Whether or not a particular privacy statute currently applies to a business our size, we offer these rights to everyone who uses Dingo:
To exercise any of them, email dingocare@gmail.com or call (424) 558-4842. We will verify your identity against your account before acting — usually by confirming control of the email on file — and respond within 45 days, extendable once by a further 45 days with notice. There is no charge. An authorised agent may act for you with written permission.
California residents may also request the disclosures described in Civil Code §1798.83 (the “Shine the Light” law) about disclosure of personal information to third parties for their direct marketing. We make no such disclosures, but you may ask and we will confirm that in writing.
If we decline a request, we will tell you why, and you may appeal by replying to our response. If you are unsatisfied, you may contact the California Privacy Protection Agency or the California Attorney General.
You can delete your account from inside the app at any time — Settings → Delete account — without emailing anyone or explaining why. You can also ask us to do it.
Deletion is immediate and permanent. There is no grace period and no way for us to undo it — so export anything you want to keep first.
The rule we apply is simple, and it is worth stating so you know exactly what happens: personal content goes with you; financial records stay, with your name removed.
Both the California Consumer Privacy Act and Nevada law recognise this: a deletion right does not require a business to destroy records it must retain to meet a legal obligation. We have kept that exception as narrow as we can make it.
Deleted data is purged from backups on the normal backup rotation, within 90 days.
Dingo is for adults. You must be 18 to hold an account. We do not knowingly collect personal information from anyone under 13, and we do not knowingly sell or share the personal information of anyone under 16 — we do not sell or share personal information at all.
If you believe a child has provided us with personal information, contact us and we will delete it promptly.
We will update this policy as the service changes. For material changes we will give at least 30 days' notice by email and in the app before they take effect, and update the date at the top. Non-material changes take effect on posting. Previous versions are available on request.
Contact — and Nevada designated request address:
Under California Civil Code §1789.3, California users may also contact the Complaint Assistance Unit of the Division of Consumer Services of the California Department of Consumer Affairs at 1625 North Market Blvd., Suite N 112, Sacramento, CA 95834, or (800) 952-5210.
Dingo — Dog Adventures, Overnight Care & Walking Services · Santa Barbara, CA · Operating in California and Nevada. See also our Terms of Service.