Privacy Policy

Our Privacy policies

Last Updated: July 2026

Aetheria Tourism (“we,” “us,” “our,” or “Company”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website www.aetheriatourism.com and book travel experiences through our platform.

Please read this policy carefully. By using Aetheria Tourism, you consent to the practices described herein.

1. Information We Collect

1.1 Information You Provide Directly

When you book a travel experience, contact us, or interact with our platform, we collect:

Booking Information:

  • Full name
  • Email address
  • Phone number
  • Travel dates and destination preferences
  • Special requests (dietary restrictions, accessibility needs, etc.)
  • Preferred trip date

Payment Information:

  • Payment method (credit/debit card details)
  • Billing address
  • Transaction history

Communication:

  • Messages sent via our contact form or email
  • Inquiries about tours or experiences

Optional Information:

  • Feedback, reviews, or testimonials
  • Photos or videos (if you share them with us)

1.2 Information Collected Automatically

When you visit our website, we may collect:

  • Device information: IP address, browser type, operating system
  • Browsing behavior: Pages visited, time spent, links clicked
  • Cookies and tracking: To enhance user experience and analyze traffic (see Cookie Policy below)
  • Location data: General location based on IP address (not precise)

1.3 Information from Third Parties

We may receive information about you from:

  • Payment processors (Razorpay, Stripe)
  • Our partner tour operators
  • Review platforms or social media (if publicly shared)

2. How We Use Your Information

We use the information we collect for the following purposes:

Purpose Information Used Legal Basis
Processing bookings Name, email, phone, payment details, travel dates Contract performance
Tour coordination Name, email, phone, special requests Contract performance
Sending confirmations & reminders Email, phone number Legitimate interest
Payment processing Payment details, billing address Contract performance
Customer support Name, email, booking history, communication Legitimate interest
Marketing & newsletters Email address (with consent) Consent
Improving our website Browsing behavior, feedback Legitimate interest
Complying with laws Any relevant information Legal obligation
Fraud prevention Payment & account information Legitimate interest
Analytics & insights Aggregated, anonymized data Legitimate interest

3. Sharing Your Information

3.1 With Our Partners

We share essential booking information (name, email, phone, travel dates, special requests) with our vetted partner tour operators only to fulfill your booking.

Partners are contractually obligated to:

  • Protect your data confidentially
  • Use information solely for tour delivery
  • Not share your data with third parties
  • Comply with data protection regulations

3.2 With Service Providers

We may share information with trusted third parties who assist us:

  • Payment processors: Razorpay, Stripe (for secure payment processing)
  • Email services: For sending confirmations and communications
  • Analytics providers: For website improvement (data is anonymized)
  • Cloud hosting: For secure data storage

All service providers are contractually bound to protect your data.

3.3 Legal Requirements

We may disclose information if required by law or in response to:

  • Court orders or subpoenas
  • Government or regulatory requests
  • Fraud investigations
  • Protection of public safety

3.4 Business Transfers

If Aetheria Tourism is sold, merged, or acquired, your information may be transferred as part of that transaction. We will notify you of any such change and your choices.

3.5 What We Don't Do

We do not:

  • Sell your personal data to third parties for profit
  • Share your information for marketing without consent
  • Disclose information to unvetted parties

4. Data Shared During Tours - Protect Your Privacy

4.1 Minimizing Data Sharing

During your booked experience, you may need to provide limited information to certain individuals:

  • Tour guides and drivers (name, emergency contact only when necessary)
  • Hotel staff and restaurant employees (name for reservations only)
  • Activity coordinators (health/safety information only if required for your safety)
  • Equipment providers (booking confirmation details only)

However, you should minimize or avoid sharing unnecessary personal information with:

  • Other tour participants
  • Local vendors and service providers
  • Individuals asking to take photos or videos

4.2 What NOT to Share

We strongly recommend you do NOT share with guides, drivers, vendors, or other individuals during your tour:

  • Full passport or ID details (unless absolutely required for border crossing)
  • Home address or details about your property
  • Financial information (bank details, credit card numbers beyond payment)
  • Personal travel plans or dates for future trips
  • Sensitive health conditions or medical information (unless necessary for immediate safety)
  • Social media handles or personal contact details with strangers
  • Opinions or information that could identify you or compromise your security

4.3 Your Responsibility and Control

You have full control over what personal information you share during your tour. You assume responsibility for:

  • Deciding what information is necessary and appropriate to disclose
  • Protecting your own privacy and personal details
  • Being cautious about what you share with guides, drivers, vendors, and other participants
  • Declining to share information if you’re uncomfortable
  • Opting out of group photos or social media posts if desired

4.4 Aetheria's Limitation of Liability

Aetheria Tourism is NOT responsible for:

  • How tour guides, drivers, vendors, or other service providers collect, use, or protect your personal information
  • Data breaches or misuse by third-party service providers
  • Unauthorized sharing of information by individuals you interact with during the tour
  • Photos or recordings taken by guides, other participants, or locals without your consent
  • Information you voluntarily provide to hotel staff, restaurants, or local vendors
  • Consequences of personal information you choose to disclose during your experience

While we vet our partners for quality and safety, we cannot control or monitor how individual guides, drivers, vendors, or service providers handle your personal data during the experience. You are responsible for protecting your own privacy while on tour

5. Data Protection and Security

5.1 How We Protect Your Data (On Our Platform)

  • Encryption: Payment information is encrypted using industry-standard SSL/TLS
  • Secure servers: Data is stored on protected servers with firewalls
  • Access controls: Only authorized personnel can access sensitive data
  • Regular audits: We monitor and test security measures

5.2 Payment Security

Payment information is processed by PCI DSS-compliant payment processors (Razorpay, Stripe). We never store full credit card details on our servers.

5.3 Your Security Responsibilities

You are responsible for:

  • Keeping your booking confirmation and login credentials confidential
  • Notifying us immediately of unauthorized access to your account
  • Ensuring your email account is secure
  • Being cautious with personal information shared during tours (see Section 4)
  • Protecting your own privacy while traveling

No system is 100% secure. While we protect your data on our platform, we cannot guarantee absolute security, and we are not responsible for data shared with third parties during your experience.

6. Retention of Data

We retain your information for as long as necessary to:

  • Fulfill your booking and provide support (during and after your experience)
  • Comply with legal or tax obligations
  • Resolve disputes

Data Retention Timeline:

  • Booking records: Kept for 7 years (UK tax requirements)
  • Marketing lists: Retained until you unsubscribe
  • Payment records: Retained per payment processor requirements
  • Support tickets: Kept for 3 years for reference

After this period, data is securely deleted or anonymized.

7. Your Data Rights (UK/GDPR)

As a UK-registered company, we comply with the Data Protection Act 2018 and UK GDPR. You have the right to:

7.1 Right of Access

Request a copy of the data we hold about you (Subject Access Request)

7.2 Right to Rectification

Ask us to correct inaccurate or incomplete information

7.3 Right to Erasure

Request deletion of your data (“right to be forgotten”) unless we have a legal obligation to retain it

7.4 Right to Data Portability

Request your data in a portable, machine-readable format

7.5 Right to Object

Opt out of marketing communications, analytics, or certain processing

7.6 Right to Restrict Processing

Ask us to limit how we use your data

7.7 Rights Related to Automated Decision-Making

You have rights if decisions affecting you are made entirely by automated means
To exercise any of these rights, contact us at: [email protected]
We will respond within 30 days.
Note: These rights apply to data we control. Data shared with tour guides, drivers, or vendors during your
experience is not under our control and must be addressed directly with those individuals.

8. Cookies and Tracking Technologies

8.1 What Are Cookies?

Cookies are small files stored on your device that help us recognize you and personalize your experience.

8.2 Types of Cookies We Use

Type Purpose Duration
Essential – Required for website function (checkout, login) Session
Analytical – Track website usage and improve performance (Google Analytics) 1–2 years
Marketing – Remember your preferences for targeted content 1–2 years
Third-party – Used by partners (payment, analytics, social media) Varies

8.3 Managing Cookies

You can control cookies through your browser settings:

  • Chrome: Settings → Privacy → Cookies
  • Firefox: Preferences → Privacy → Cookies
  • Safari: Preferences → Privacy → Cookies

Disabling cookies may affect website functionality.

8.4 Analytics

We use Google Analytics to understand how visitors use our website. Google may collect information about your visits across websites. Review Google’s Privacy Policy for details.

9. Marketing Communications

9.1 Email Communications

  • Transactional: Booking confirmations, reminders, support (always sent)
  • Marketing: Newsletters, promotions, travel tips (only with consent)

9.2 Opting Out

You can unsubscribe from marketing emails by:

  • Clicking the “Unsubscribe” link at the bottom of any marketing email
  • Contacting us at [email protected]
  • Updating your preferences on our website

You will remain on transactional email lists (confirmations, reminders).

10. Third-Party Links and External Services

Our website may link to external websites or services that have their own privacy policies. We are not responsible for:

  • How external sites collect, use, or protect your data
  • Content or practices of external websites
  • Third-party privacy policies

Please review their policies before providing information.

11. Children's Privacy

Aetheria Tourism does not knowingly collect information from children under 13 years old. If we learn we’ve collected data from a child, we will delete it promptly.

Parents or guardians: If you believe we’ve collected data from a child, please contact us immediately at [email protected].

12. International Data Transfers

Aetheria Tourism is UK-registered. If you’re outside the UK, your data may be transferred to and processed in the UK. By using our services, you consent to this transfer.

For EU residents: We ensure appropriate safeguards (Standard Contractual Clauses) for data transfers.

13. Data Breaches

If a security breach compromises personal data collected or stored by Aetheria Tourism on our platform, we will:

  • Investigate the breach promptly
  • Notify affected individuals without undue delay
  • Notify relevant data protection authorities as required by law
  • Provide guidance on protective measures

Note: We are not responsible for data breaches involving information shared with third-party service providers (guides, drivers, vendors) during your tour. If you experience or suspect a breach involving a tour service provider, report it directly to that provider and notify us at [email protected].

14. Updates to This Policy

We may update this Privacy Policy as our practices evolve or to comply with new regulations. Changes will be posted here with an updated “Last Updated” date.

Continued use of our services following updates constitutes acceptance of the revised policy.

15. Contact Us

For questions, concerns, or to exercise your data rights:

📧 Email: [email protected]
📞 Phone: +971 50 583 1464
📍 Address: Downtown Dubai, United Arab Emirates
🌐 Website: www.aetheriatourism.com

Data Protection Officer (DPO)

For formal requests or complaints related to data protection, you may contact our Data Protection Officer:

📧 DPO Email: [email protected]

 

Regulatory Authority

If you have concerns about how we handle your data, you can lodge a complaint with the UK Information Commissioner’s Office (ICO):

🌐 Website: www.ico.org.uk
📞 Phone: 0303 123 1113

By using Aetheria Tourism, you acknowledge that you have read and understood this Privacy Policy.