Skip to main content

Legal

Privacy Policy

How SuperStation95 LLC collects, uses, stores and protects personal information, and the rights you have over your data.

Last reviewed: July 2026

1. Who we are

SuperStation95 LLC, 30500 State Hwy 181, Spanish Fort, AL 36527, United States, is the controller responsible for personal information collected through this website. You can reach us by phone on +1 251-355-0231 or through the contact page. We are the entity that decides why and how personal information is processed in connection with this site, and this policy is our account of that processing.

We are a publisher of travel knowledge, not a travel agency, tour operator, air carrier or booking platform. We do not sell travel products, we do not take reservations, and we do not process payment information for flights, hotels, cruises or any other travel service. Because of that, the personal information we handle is comparatively narrow, it relates to how people read the site, how they contact us, and whether they choose to receive our newsletter.

This policy applies to superstation95.com and to any subdomain, mobile view or syndicated feed operated by SuperStation95 LLC. It does not apply to third party sites we link to, even where those links appear inside our articles, and it does not apply to any airline, hotel or agency site you may visit after reading our content.

2. Information we collect

  • Information you give us directly, such as your name, email address, phone number and the content of a message sent through the contact form.
  • Newsletter subscription details, which are limited to an email address, the date of subscription and the source page where you signed up.
  • Technical information generated automatically, such as IP address, approximate location derived from that address, browser type and version, device type, operating system, referring page and pages viewed.
  • Cookie and similar technology data as described in the Cookie Policy, including analytics identifiers and preference settings.
  • Correspondence you send us after the initial contact, including replies, attachments and any corrections you ask us to make to published content.

3. How we use information

  • To answer enquiries, corrections and permission requests, and to keep a record of that correspondence in case it needs to be revisited.
  • To send the newsletter to people who asked for it, and nothing else, since we do not use the subscriber list for any purpose beyond that publication.
  • To operate, secure and improve the website, including diagnosing errors and understanding load patterns.
  • To understand which articles are useful, in aggregate rather than individually, so that future coverage reflects what readers actually need.
  • To comply with legal obligations, respond to lawful requests from public authorities, and to establish, exercise or defend legal claims.

4. Cookies, analytics and cross-reference

This website uses cookies and similar technologies for essential site functions, for remembering your preferences, and for aggregate analytics that tell us which pages are read and for how long. We do not use cookies to build individual advertising profiles, and we do not operate third party advertising networks on the site.

The full detail of which cookies are set, their purpose, their duration and how to control them through your browser or through our consent tool is set out in our separate Cookie Policy, which should be read alongside this section rather than as a substitute for it. Where consent is the legal basis for a non-essential cookie, you can withdraw that consent at any time through the cookie settings link available on every page.

Analytics data is processed in aggregate wherever possible. Where an analytics provider assigns an identifier to your browser to distinguish repeat visits, that identifier is pseudonymous and is not linked to your name or email address unless you separately provide those to us through the contact form or the newsletter.

5. Contact form handling and spam filtering

When you submit the contact form, the information you enter, together with technical details such as your IP address and submission timestamp, is sent to our support mailbox and stored in our helpdesk system. We use this information only to respond to you and to keep an internal record of the exchange.

We run automated spam filtering on incoming submissions to protect our team from unsolicited bulk messages and to keep genuine enquiries from being lost in noise. This filtering looks at patterns such as submission speed, known spam signatures and message content, and it may reject or quarantine a message automatically. It does not produce any decision about you as an individual and has no legal or similarly significant effect, it simply decides whether a message reaches a human inbox.

If a submission is wrongly filtered as spam and you do not receive a reply, please try again or call us directly, since we have no reliable way to notice a message that was never delivered to a person.

6. Newsletter consent and unsubscribing

Subscribing to the newsletter is entirely optional and is based on your consent, given when you enter your email address into the signup form. We use a confirmed opt-in process where required by local law, meaning you may need to click a link in a confirmation email before we begin sending regular issues.

You can withdraw consent and unsubscribe at any time using the link included in every newsletter email, or by contacting us directly if that link ever fails to work. Unsubscribing removes you from future sends immediately within our system, though a message already queued for delivery before you unsubscribed may still arrive because email delivery across providers is not instantaneous.

We keep a suppression record of unsubscribed addresses for a limited period after cancellation so that we do not accidentally re-add the same address later. This suppression record contains only the email address and the date of unsubscribing, and it is used for no other purpose.

7. Legal bases

Where the GDPR or a similar framework applies, we rely on consent for the newsletter and for non-essential cookies, on legitimate interests for site security, spam filtering and aggregate analytics, and on legal obligation where a particular retention period or disclosure is required by law.

Our legitimate interest assessments weigh the benefit of the processing against the impact on individuals, and we do not rely on legitimate interests for anything that involves profiling, advertising targeting or sharing personal information with unrelated third parties. Where we rely on legitimate interests, you have the right to object, and we will stop unless we can demonstrate compelling grounds to continue.

8. Sharing

We do not sell personal information, and we do not share it with third parties for their own independent marketing use. We share data only with service providers who host the site, deliver email, provide analytics or support our helpdesk, and only to the extent needed to perform those services. Those providers act on our instructions under contract and are not permitted to use the data for their own purposes.

We may disclose information where required by law, court order or a lawful request from a public authority, or where necessary to protect the rights, property or safety of SuperStation95 LLC, our readers, or others. If our business were ever reorganized, sold or merged, personal information may be transferred to the successor entity, subject to the same commitments described in this policy.

9. International transfers

Our service providers may process data in countries other than your own, including the United States, where our company is based. Where required by the GDPR, UK GDPR or a similar framework, transfers out of the relevant region are covered by appropriate safeguards, such as standard contractual clauses or an adequacy decision recognized by the relevant authority.

We choose service providers with attention to their own security and compliance practices, and we review those arrangements periodically rather than treating them as fixed once agreed.

10. Retention

Contact messages are retained for up to 24 months, after which they are deleted unless a longer period is needed to resolve an ongoing matter or to meet a legal obligation. Newsletter records are retained until you unsubscribe, plus a short suppression period so that we do not email you again by mistake.

Aggregate technical logs are retained for a maximum of 14 months, after which they are deleted or reduced to fully aggregated statistics that no longer identify an individual browser or device. We do not keep personal information indefinitely on the basis that it might become useful later, retention periods are set with a purpose in mind and are reviewed as part of this policy's update cycle.

11. Server logs and security monitoring

Like almost every website, our hosting infrastructure automatically records server logs for each request, including IP address, timestamp, requested page, response code and user agent string. These logs exist primarily to keep the site running reliably and to detect and investigate abuse, intrusion attempts and unusual traffic patterns.

Server logs are processed on the basis of our legitimate interest in keeping the site secure and available, and access to raw logs is limited to the personnel and providers who need them for that purpose. We do not use server logs to build a profile of individual reading habits, though the same underlying request data does feed into the aggregate analytics described above.

12. Do-not-track and Global Privacy Control

Some browsers send a Do Not Track signal, and some browsers or extensions send a Global Privacy Control signal indicating that you do not wish your information to be shared or sold. There is no single accepted technical standard across the industry for interpreting these signals, but where our cookie consent tool is able to detect a Global Privacy Control signal, we treat it as a valid request to opt out of non-essential cookies and honor it in the same way as a manual opt-out.

Because we do not sell personal information and do not run third party advertising on the site, the practical effect of these signals is mainly to disable optional analytics cookies rather than any sale or sharing arrangement, since no such arrangement exists here.

13. Your rights

  • Access to the personal information we hold about you.
  • Correction of information that is inaccurate or incomplete.
  • Deletion, where we have no overriding obligation to retain it.
  • Restriction of, or objection to, certain processing.
  • Portability of information you provided to us, in a structured and commonly used format.
  • Withdrawal of consent at any time, without affecting the lawfulness of processing carried out before that withdrawal.
  • Complaint to your local supervisory authority or, in the United States, to the relevant state attorney general or consumer protection office.

14. EU and UK GDPR specifics

If you are located in the European Economic Area or the United Kingdom, the GDPR or the UK GDPR gives you the rights listed above, and it also entitles you to lodge a complaint with a supervisory authority in your country of habitual residence, place of work, or the place where an alleged infringement occurred, without needing to contact us first, although we would welcome the chance to resolve a concern directly.

For readers in the European Economic Area, the lead supervisory authority framework may not apply to us in the same way it applies to businesses established in the EU, since SuperStation95 LLC is a United States company, but the rights themselves remain available to you under the GDPR wherever it applies to our processing of your data. UK readers can contact the Information Commissioner's Office, and readers elsewhere in the EEA can contact their national data protection authority, a list of which is maintained by the European Data Protection Board.

15. California privacy rights, CCPA and CPRA

California residents have rights under the California Consumer Privacy Act as amended by the California Privacy Rights Act, including the right to know what personal information we have collected, used, disclosed or sold about them in the preceding twelve months, the right to request deletion of that information, the right to correct inaccurate information, and the right to opt out of the sale or sharing of personal information.

We do not sell personal information and we do not share it for cross-context behavioral advertising as those terms are defined under California law, so there is nothing to opt out of on that specific point, but you may still submit a request to know or a request to delete using the contact details in this policy.

California residents also have the right not to receive discriminatory treatment for exercising any of these rights. We will not deny goods or services, charge a different price, or provide a different level of service because you exercised a privacy right, and since our site is free to use in the first place, there is no paid tier that could be affected in any event.

16. Automated decision making

We do not use personal information to make decisions about you through automated means that produce legal or similarly significant effects, and we do not carry out profiling in that sense. The spam filtering described earlier decides only whether a message reaches a human inbox, and any automated flag can be overridden by contacting us directly through another channel.

17. Data breach notification

If a security incident occurs that results in unauthorized access to, or loss of, personal information we hold, and that incident creates a risk to the rights and freedoms of the individuals affected, we will assess the incident promptly and notify the relevant supervisory authority and affected individuals within the timelines required by applicable law, which is typically within 72 hours of discovery for reportable incidents under the GDPR, and without unreasonable delay under comparable US state laws.

Notification, where required, will describe the nature of the incident, the categories of information involved, the likely consequences and the steps we have taken or plan to take in response, so that affected individuals can decide what action, if any, they wish to take.

18. How to exercise a request

To exercise any of the rights described in this policy, contact us through the contact page or by phone on +1 251-355-0231, describing the request and the account or email address it relates to. We may ask you to verify your identity before acting on a request, for example by confirming the email address associated with a newsletter subscription or a prior contact form submission, since we need to be reasonably confident we are speaking to the person the data belongs to before disclosing or deleting it.

We aim to acknowledge a verified request within five business days and to respond substantively within 30 calendar days, which is the general timeline recognized under the GDPR and most US state privacy laws. Where a request is complex or we have received a high volume of requests, we may extend that period, and we will tell you if we do so along with the reason for the extension.

There is no charge for making a request in most circumstances. We may decline or charge a reasonable fee for requests that are manifestly unfounded, excessive or repetitive, and if we decline a request we will explain why and tell you how to escalate the matter to a supervisory authority.

19. Children

The site is intended for adults planning their own travel. We do not knowingly collect personal information from children under 13, and if we become aware that a child has provided personal information through the contact form or newsletter signup, we will delete it promptly. Parents or guardians who believe a child has provided information to us should contact us so that we can address it.

20. Security

We use encryption in transit for site traffic, access controls limiting who within our team and provider network can view personal information, and regular review of the providers we rely on. Server logs, contact submissions and newsletter records are stored with providers that maintain their own security certifications and controls, which we assess before engaging them.

No online service can promise perfect security, and we do not claim to. If you have reason to believe your information has been compromised through this site, please tell us immediately so we can investigate.

21. Changes

We update this policy when our practices change, when the law requires it, or when we add a new feature that affects how personal information is handled. The review date at the top of the page always reflects the current version, and where a change is significant we will highlight it on the site or, for newsletter subscribers, in an email notice.