Privacy Policy
Outsiders Indy
Last Updated: July 7, 2026
Outsiders Indy ("Company," "we," "us," or "our") respects your privacy. This Privacy Policy explains what personal information we collect when you book or inquire about a trip, how we use it, how we protect it, and what choices you have.
By using our website or booking a trip with us, you agree to the practices described in this Privacy Policy.
1. Information We Collect
When you book a trip or contact us, we collect the following information directly from you:
- Full legal name — used to confirm your identity for bookings and, where applicable, with third-party venues or vendors.
- Email address — used for booking confirmations, trip updates, receipts, and customer service communications.
- Phone number — used for day-of-trip communications (e.g., delays, meeting point changes) and booking-related contact.
- Emergency contact name and phone number — collected solely for use in the event of a medical or safety emergency during a trip.
- Health or disclosure question responses — where a trip requires guests to disclose health, mobility, or fitness information relevant to participation, we collect your answers to assess trip suitability and guest safety.
We do not collect or store full payment card numbers. Payments are processed by a PCI-compliant third-party payment provider, and card details are transmitted directly and securely to that provider.
2. How We Use Your Information
We use the information above only for purposes directly related to operating your trip, specifically to:
- Confirm and manage your booking.
- Communicate with you about your trip (confirmations, itinerary changes, weather delays, cancellations).
- Contact your emergency contact if a medical or safety issue arises during a trip.
- Evaluate whether a trip is appropriate for your health, mobility, or fitness disclosures, and take reasonable safety precautions accordingly.
- Respond to customer service inquiries, refund/cancellation requests, or complaints.
- Comply with legal obligations, insurance requirements, or requests from law enforcement where required by law.
We do not use your information for targeted advertising, and we do not sell your personal information to third parties.
3. Sensitive Information & Consent
Health and disclosure information is treated as sensitive. We only collect this information where relevant to a specific trip's safety requirements, and only with your knowledge that you are providing it for that purpose. By voluntarily submitting health or disclosure information during booking, you consent to our limited use of that information as described in Section 2.
You are never required to disclose more than what a trip listing specifies is necessary for participation. If you have concerns about a specific health disclosure requirement, you may contact us before booking.
4. How We Share Your Information
We do not sell your personal information. We may share limited information with:
- Third-party vendors and venues involved in operating a specific trip (e.g., a venue needing a guest headcount or name list), limited to what is reasonably necessary for that trip.
- Payment processors, to process transactions securely. These processors receive payment details directly and are independently responsible for safeguarding that data under their own privacy and security standards.
- Emergency services or medical personnel, using your emergency contact information, if needed during a trip.
- Legal or governmental authorities, if required by law, subpoena, or court order.
- Service providers who support our operations (e.g., email or booking platform providers), under confidentiality obligations, and only to the extent necessary to provide their services to us.
We do not share health or disclosure information with any party other than as necessary for guest safety during the specific trip for which it was collected.
5. Data Retention
We retain personal information only as long as necessary to fulfill the purposes described in this policy, including:
- Booking and trip records: retained for 3 years to support customer service, accounting, and legal recordkeeping.
- Health/disclosure information: retained only for the duration necessary to plan and complete the relevant trip, after which it is deleted unless retention is required for legal or safety documentation purposes.
6. Data Security
We use reasonable administrative, technical, and physical safeguards designed to protect your personal information from unauthorized access, disclosure, alteration, or destruction. No method of storage or transmission is completely secure, and we cannot guarantee absolute security.
7. Your Privacy Choices & Rights
Indiana's comprehensive privacy law, the Indiana Consumer Data Protection Act (ICDPA), took effect January 1, 2026. The ICDPA applies to businesses that control or process the personal data of at least 100,000 Indiana residents annually, or at least 25,000 residents where more than half of gross revenue comes from data sales. Outsiders Indy does not currently meet these thresholds, and the ICDPA's specific requirements do not legally apply to our business at this time.
That said, as a matter of good practice, we are happy to honor reasonable consumer requests, including to:
- Access the personal information we hold about you.
- Correct inaccurate information.
- Delete your personal information, subject to legal or safety recordkeeping needs.
- Ask questions about how your information is used or shared.
To make a request, contact us at hello@outsidersindy.com. We will respond within a reasonable time.
8. Children's Privacy
Our services are intended for individuals who are 18 years of age or older, or minors accompanied and booked by a parent or legal guardian. We do not knowingly collect personal information directly from children under 13. If you believe a child has provided us with personal information without appropriate parental involvement, please contact us so we can address it.
9. Data Breach Notification
In the event of a security breach affecting your personal information, we will notify affected individuals and, where required, the Indiana Attorney General, in accordance with Indiana's data breach notification law (Ind. Code § 24-4.9).
10. Third-Party Links
Our website or communications may contain links to third-party websites (e.g., venues, payment providers). We are not responsible for the privacy practices of those third parties, and we encourage you to review their privacy policies separately.
11. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. The "Last Updated" date at the top of this policy indicates when it was last revised. Continued use of our website or services after changes are posted constitutes acceptance of the revised policy.
12. Governing Law
This Privacy Policy is governed by the laws of the State of Indiana, without regard to conflict-of-law principles.
13. Contact Us
Questions about this Privacy Policy or how we handle your information can be directed to:
Outsiders Indy
Email: hello@outsidersindy.com