dexjourney

PRIVACY NOTICE

Your collection stays yours.

DexJourney is a browser-based collection tracker. Depending on the deployment, it can run as a local-only preview or use a DexJourney email account to sync trainer profiles. It never signs in to Pokémon GO.

What is saved

In signed-in cloud mode, DexJourney stores your email address, trainer profile names, caught status, collection tags, form and variant records, imported optional fields, evolution progress, account timestamps, and up to 20 earlier collection snapshots per trainer in its database. A secure session cookie keeps you signed in. Theme preference, local restore points, and any older, not-yet-migrated local profiles can remain in this browser’s local storage.

CSV and JSON files are parsed on your device. In cloud mode, the resulting collection records are sent to your DexJourney account when you save or import them; the original file itself is not retained as an upload.

Passwords and game accounts

DexJourney email access uses a one-time sign-in link and does not store a DexJourney password. It never asks for or stores a Pokémon GO, Google, Facebook, Apple, Pokémon Trainer Club, Niantic, or Scopely password. Do not enter game credentials into a collection file.

Service providers and security records

The cloud deployment uses Hostinger for website and database hosting and the configured email provider to deliver sign-in links. These providers process the information needed to operate those services under their own terms. DexJourney also keeps limited request, session, and rate-limit records, such as hashed network identifiers, to prevent abuse and secure accounts. One-time link and session secrets are stored as hashes rather than in reusable plain text.

Third-party requests

The dashboard loads fonts from Google Fonts and character sprites from the PokéAPI sprite repository hosted by GitHub. Those providers may receive ordinary technical request information such as an IP address, browser details, and the requested asset URL under their own privacy practices.

Privacy-safe product measurement

DexJourney measures a small set of first-party product actions so the owner can understand whether guest mode, event checklists, Hunt Planner goals, and account upgrades are useful. A random identifier is created in this browser and stored in local storage. The server stores only a keyed hash of that identifier plus aggregate counters and dates—never the raw identifier, a Pokémon collection, trainer name, email address, or IP address in the product-measurement table.

The measured actions are: starting guest mode, making a guest change, changing an event checklist, completing an event checklist, adding an event Hunt Planner goal, opening the account upgrade screen, and completing an authenticated account conversion. DexJourney uses no advertising pixels or cross-site tracking cookies. Anonymous journey records are automatically eligible for deletion after 90 days.

Optional public trainer showcases

A signed-in trainer can intentionally publish a public showcase link. Before publishing, the trainer chooses whether the page includes Journey level and XP, collection score and released-species count, up to three earned badges, and up to three favorite Pokémon. Email addresses, login details, CP, IVs, locations, notes, tags, and unselected collection data are not included. Showcase pages are excluded from search indexing by default. The trainer can update, disable, or replace the link at any time.

Shareable collection comparisons

A signed-in trainer can create a private, expiring comparison link containing only the selected profile name and Pokémon marked Wanted or Available to Trade, including available quantity and visible category labels. The visitor’s selections and imported CSV remain in that visitor’s browser unless the visitor intentionally saves them to a separate DexJourney account. The link owner cannot view the visitor’s collection or individual selections.

DexJourney records anonymous comparison totals for link opens, completed comparisons, save starts, and authenticated account conversions. The comparison table stores a keyed hash of a random browser identifier, timestamps, and the highest aggregate selection count—not email addresses, raw identifiers, IP addresses, or collection contents. These records use the same retention period as anonymous product measurement and are automatically eligible for deletion after 90 days. Replacing a link clears its prior comparison funnel; disabling or expiration prevents further access.

Retention, backup, and deletion

Cloud account and collection data remains until you delete a trainer or your account. DexJourney retains the latest 20 collection restore points per trainer and automatically removes older ones. Profile deletion removes that profile’s history, showcase, comparison links, and associated anonymous comparison records; account deletion removes the account’s email, profiles, collections, histories, showcases, comparisons, and active sessions. Expired sign-in and session records are periodically removed. Anonymous product-measurement and comparison records are retained for up to 90 days. Local profiles and local restore points remain until they are reset or cleared through your browser. Export a CSV backup before deleting anything you may need later.

DexJourney account access is separate from Pokémon GO. A checklist entry reflects what you record or import; it is not verified against a game account.

Last updated July 27, 2026.