1. Introduction
SkyGate Travel Technology ("SkyGate," "we," "us," or "our"), registered in Tbilisi, Georgia, is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal data when you use our white-label travel platform, website, APIs, and related services (collectively, the "Services").
By accessing or using our Services, you acknowledge that you have read, understood, and agree to be bound by this Privacy Policy. If you do not agree, please discontinue use of our Services immediately.
2. Data Controller
The data controller responsible for your personal data is:
SkyGate Travel Technology
Tbilisi, Georgia
Email: sales@skygate.travel
Phone: +995 550 002 283
3. Personal Data We Collect
We may collect the following categories of personal data:
- Identity Data: Full name, date of birth, nationality, passport or ID number (required for travel bookings).
- Contact Data: Email address, phone number, postal address.
- Account Data: Username, password (hashed), account preferences, role assignments.
- Transaction Data: Booking details, payment method, billing address, transaction history, invoices.
- Technical Data: IP address, browser type and version, device identifiers, operating system, time zone, referral URLs.
- Usage Data: Pages visited, features used, search queries, click patterns, session duration.
- Communication Data: Support tickets, chat transcripts, emails, feedback submissions.
4. How We Collect Data
- Directly from you: When you register, make bookings, contact support, or submit forms.
- Automatically: Through cookies, server logs, and analytics tools when you interact with our Services.
- From third parties: Payment processors, identity verification services, travel suppliers, and analytics providers.
5. Legal Basis for Processing (GDPR Art. 6)
- Contract Performance: Processing necessary to fulfill your bookings and deliver our Services.
- Legitimate Interests: Fraud prevention, security, analytics, and service improvement.
- Consent: Marketing communications, non-essential cookies, and optional profiling.
- Legal Obligation: Tax reporting, anti-money laundering (AML), and regulatory compliance.
6. How We Use Your Data
- Processing and managing travel bookings (flights, hotels, tours).
- Providing, maintaining, and improving our platform and Services.
- Processing payments and issuing invoices.
- Communicating with you regarding your account, bookings, and support requests.
- Personalizing your experience and providing relevant recommendations.
- Detecting, preventing, and addressing fraud, security incidents, and technical issues.
- Complying with applicable laws, regulations, and legal processes.
- Sending marketing communications (with your prior consent, where required).
7. Data Sharing and Disclosure
We may share your personal data with:
- Travel Suppliers: Airlines, hotels, tour operators, and transfer companies as necessary to fulfill your bookings.
- Payment Processors: Stripe, PayPal, and other payment gateways for transaction processing.
- White-Label Partners: The travel agency operating your branded platform, in accordance with their own privacy policies.
- Service Providers: Hosting, analytics, customer support, and email delivery providers acting on our behalf.
- Legal and Regulatory Bodies: When required by law, court order, or governmental request.
We do not sell your personal data to third parties for their own marketing purposes.
8. International Data Transfers
Your data may be transferred to and processed in countries outside of your jurisdiction, including Georgia and the European Economic Area (EEA). Where data is transferred outside the EEA, we ensure adequate safeguards are in place, such as Standard Contractual Clauses (SCCs) approved by the European Commission, or reliance on adequacy decisions.
9. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including satisfying legal, accounting, or reporting requirements. Booking data is retained for a minimum of 5 years for tax and regulatory compliance. Account data is deleted within 90 days of account closure, unless retention is required by law.
10. Your Rights
Under applicable data protection laws (including GDPR), you have the right to:
- Access: Request a copy of your personal data.
- Rectification: Request correction of inaccurate or incomplete data.
- Erasure: Request deletion of your data ("right to be forgotten").
- Restriction: Request limitation of processing in certain circumstances.
- Portability: Receive your data in a structured, commonly used, machine-readable format.
- Objection: Object to processing based on legitimate interests or direct marketing.
- Withdraw Consent: Where processing is based on consent, withdraw it at any time.
To exercise any of these rights, contact us at sales@skygate.travel. We will respond within 30 days.
11. Data Security
We implement industry-standard technical and organizational measures to protect your data, including 256-bit SSL/TLS encryption, secure data centers, access controls, regular security audits, and intrusion detection systems. However, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.
12. Children's Privacy
Our Services are not intended for individuals under the age of 18. We do not knowingly collect personal data from children. If we become aware that we have collected data from a child without parental consent, we will take steps to delete such data promptly.
13. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be notified via email or a prominent notice on our website. Continued use of our Services after changes constitutes acceptance of the revised policy.
14. Contact Us
For questions or concerns about this Privacy Policy or our data practices, contact us at:
SkyGate Travel Technology
Email: sales@skygate.travel
Phone: +995 550 002 283
WhatsApp: +995 550 002 283