Privacy Policy
Our Privacy policies
Last Updated: July 2026
Aetheria Tourism (“we,” “us,” “our,” or “Company”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website www.aetheriatourism.com and book travel experiences through our platform.
Please read this policy carefully. By using Aetheria Tourism, you consent to the practices described herein.
1. Information We Collect
1.1 Information You Provide Directly
When you book a travel experience, contact us, or interact with our platform, we collect:
Booking Information:
- Full name
- Email address
- Phone number
- Travel dates and destination preferences
- Special requests (dietary restrictions, accessibility needs, etc.)
- Preferred trip date
Payment Information:
- Payment method (credit/debit card details)
- Billing address
- Transaction history
Communication:
- Messages sent via our contact form or email
- Inquiries about tours or experiences
Optional Information:
- Feedback, reviews, or testimonials
- Photos or videos (if you share them with us)
1.2 Information Collected Automatically
When you visit our website, we may collect:
- Device information: IP address, browser type, operating system
- Browsing behavior: Pages visited, time spent, links clicked
- Cookies and tracking: To enhance user experience and analyze traffic (see Cookie Policy below)
- Location data: General location based on IP address (not precise)
1.3 Information from Third Parties
We may receive information about you from:
- Payment processors (Razorpay, Stripe)
- Our partner tour operators
- Review platforms or social media (if publicly shared)
2. How We Use Your Information
We use the information we collect for the following purposes:
| Purpose | Information Used | Legal Basis |
|---|---|---|
| Processing bookings | Name, email, phone, payment details, travel dates | Contract performance |
| Tour coordination | Name, email, phone, special requests | Contract performance |
| Sending confirmations & reminders | Email, phone number | Legitimate interest |
| Payment processing | Payment details, billing address | Contract performance |
| Customer support | Name, email, booking history, communication | Legitimate interest |
| Marketing & newsletters | Email address (with consent) | Consent |
| Improving our website | Browsing behavior, feedback | Legitimate interest |
| Complying with laws | Any relevant information | Legal obligation |
| Fraud prevention | Payment & account information | Legitimate interest |
| Analytics & insights | Aggregated, anonymized data | Legitimate interest |
3. Sharing Your Information
3.1 With Our Partners
We share essential booking information (name, email, phone, travel dates, special requests) with our vetted partner tour operators only to fulfill your booking.
Partners are contractually obligated to:
- Protect your data confidentially
- Use information solely for tour delivery
- Not share your data with third parties
- Comply with data protection regulations
3.2 With Service Providers
We may share information with trusted third parties who assist us:
- Payment processors: Razorpay, Stripe (for secure payment processing)
- Email services: For sending confirmations and communications
- Analytics providers: For website improvement (data is anonymized)
- Cloud hosting: For secure data storage
All service providers are contractually bound to protect your data.
3.3 Legal Requirements
We may disclose information if required by law or in response to:
- Court orders or subpoenas
- Government or regulatory requests
- Fraud investigations
- Protection of public safety
3.4 Business Transfers
If Aetheria Tourism is sold, merged, or acquired, your information may be transferred as part of that transaction. We will notify you of any such change and your choices.
3.5 What We Don't Do
We do not:
- Sell your personal data to third parties for profit
- Share your information for marketing without consent
- Disclose information to unvetted parties
4. Data Shared During Tours - Protect Your Privacy
4.1 Minimizing Data Sharing
During your booked experience, you may need to provide limited information to certain individuals:
- Tour guides and drivers (name, emergency contact only when necessary)
- Hotel staff and restaurant employees (name for reservations only)
- Activity coordinators (health/safety information only if required for your safety)
- Equipment providers (booking confirmation details only)
However, you should minimize or avoid sharing unnecessary personal information with:
- Other tour participants
- Local vendors and service providers
- Individuals asking to take photos or videos
4.2 What NOT to Share
We strongly recommend you do NOT share with guides, drivers, vendors, or other individuals during your tour:
- Full passport or ID details (unless absolutely required for border crossing)
- Home address or details about your property
- Financial information (bank details, credit card numbers beyond payment)
- Personal travel plans or dates for future trips
- Sensitive health conditions or medical information (unless necessary for immediate safety)
- Social media handles or personal contact details with strangers
- Opinions or information that could identify you or compromise your security
4.3 Your Responsibility and Control
You have full control over what personal information you share during your tour. You assume responsibility for:
- Deciding what information is necessary and appropriate to disclose
- Protecting your own privacy and personal details
- Being cautious about what you share with guides, drivers, vendors, and other participants
- Declining to share information if you’re uncomfortable
- Opting out of group photos or social media posts if desired
4.4 Aetheria's Limitation of Liability
Aetheria Tourism is NOT responsible for:
- How tour guides, drivers, vendors, or other service providers collect, use, or protect your personal information
- Data breaches or misuse by third-party service providers
- Unauthorized sharing of information by individuals you interact with during the tour
- Photos or recordings taken by guides, other participants, or locals without your consent
- Information you voluntarily provide to hotel staff, restaurants, or local vendors
- Consequences of personal information you choose to disclose during your experience
While we vet our partners for quality and safety, we cannot control or monitor how individual guides, drivers, vendors, or service providers handle your personal data during the experience. You are responsible for protecting your own privacy while on tour
5. Data Protection and Security
5.1 How We Protect Your Data (On Our Platform)
- Encryption: Payment information is encrypted using industry-standard SSL/TLS
- Secure servers: Data is stored on protected servers with firewalls
- Access controls: Only authorized personnel can access sensitive data
- Regular audits: We monitor and test security measures
5.2 Payment Security
Payment information is processed by PCI DSS-compliant payment processors (Razorpay, Stripe). We never store full credit card details on our servers.
5.3 Your Security Responsibilities
You are responsible for:
- Keeping your booking confirmation and login credentials confidential
- Notifying us immediately of unauthorized access to your account
- Ensuring your email account is secure
- Being cautious with personal information shared during tours (see Section 4)
- Protecting your own privacy while traveling
No system is 100% secure. While we protect your data on our platform, we cannot guarantee absolute security, and we are not responsible for data shared with third parties during your experience.
6. Retention of Data
We retain your information for as long as necessary to:
- Fulfill your booking and provide support (during and after your experience)
- Comply with legal or tax obligations
- Resolve disputes
Data Retention Timeline:
- Booking records: Kept for 7 years (UK tax requirements)
- Marketing lists: Retained until you unsubscribe
- Payment records: Retained per payment processor requirements
- Support tickets: Kept for 3 years for reference
After this period, data is securely deleted or anonymized.
7. Your Data Rights (UK/GDPR)
As a UK-registered company, we comply with the Data Protection Act 2018 and UK GDPR. You have the right to:
7.1 Right of Access
Request a copy of the data we hold about you (Subject Access Request)
7.2 Right to Rectification
Ask us to correct inaccurate or incomplete information
7.3 Right to Erasure
Request deletion of your data (“right to be forgotten”) unless we have a legal obligation to retain it
7.4 Right to Data Portability
Request your data in a portable, machine-readable format
7.5 Right to Object
Opt out of marketing communications, analytics, or certain processing
7.6 Right to Restrict Processing
Ask us to limit how we use your data
7.7 Rights Related to Automated Decision-Making
You have rights if decisions affecting you are made entirely by automated means
To exercise any of these rights, contact us at: [email protected]
We will respond within 30 days.
Note: These rights apply to data we control. Data shared with tour guides, drivers, or vendors during your
experience is not under our control and must be addressed directly with those individuals.
8. Cookies and Tracking Technologies
8.1 What Are Cookies?
Cookies are small files stored on your device that help us recognize you and personalize your experience.
8.2 Types of Cookies We Use
Type Purpose Duration
Essential – Required for website function (checkout, login) Session
Analytical – Track website usage and improve performance (Google Analytics) 1–2 years
Marketing – Remember your preferences for targeted content 1–2 years
Third-party – Used by partners (payment, analytics, social media) Varies
8.3 Managing Cookies
You can control cookies through your browser settings:
- Chrome: Settings → Privacy → Cookies
- Firefox: Preferences → Privacy → Cookies
- Safari: Preferences → Privacy → Cookies
Disabling cookies may affect website functionality.
8.4 Analytics
We use Google Analytics to understand how visitors use our website. Google may collect information about your visits across websites. Review Google’s Privacy Policy for details.
9. Marketing Communications
9.1 Email Communications
- Transactional: Booking confirmations, reminders, support (always sent)
- Marketing: Newsletters, promotions, travel tips (only with consent)
9.2 Opting Out
You can unsubscribe from marketing emails by:
- Clicking the “Unsubscribe” link at the bottom of any marketing email
- Contacting us at [email protected]
- Updating your preferences on our website
You will remain on transactional email lists (confirmations, reminders).
10. Third-Party Links and External Services
Our website may link to external websites or services that have their own privacy policies. We are not responsible for:
- How external sites collect, use, or protect your data
- Content or practices of external websites
- Third-party privacy policies
Please review their policies before providing information.
11. Children's Privacy
Aetheria Tourism does not knowingly collect information from children under 13 years old. If we learn we’ve collected data from a child, we will delete it promptly.
Parents or guardians: If you believe we’ve collected data from a child, please contact us immediately at [email protected].
12. International Data Transfers
Aetheria Tourism is UK-registered. If you’re outside the UK, your data may be transferred to and processed in the UK. By using our services, you consent to this transfer.
For EU residents: We ensure appropriate safeguards (Standard Contractual Clauses) for data transfers.
13. Data Breaches
If a security breach compromises personal data collected or stored by Aetheria Tourism on our platform, we will:
- Investigate the breach promptly
- Notify affected individuals without undue delay
- Notify relevant data protection authorities as required by law
- Provide guidance on protective measures
Note: We are not responsible for data breaches involving information shared with third-party service providers (guides, drivers, vendors) during your tour. If you experience or suspect a breach involving a tour service provider, report it directly to that provider and notify us at [email protected].
14. Updates to This Policy
We may update this Privacy Policy as our practices evolve or to comply with new regulations. Changes will be posted here with an updated “Last Updated” date.
Continued use of our services following updates constitutes acceptance of the revised policy.
15. Contact Us
For questions, concerns, or to exercise your data rights:
Email: [email protected]
Phone: +971 50 583 1464
Address: Downtown Dubai, United Arab Emirates
Website: www.aetheriatourism.com
Data Protection Officer (DPO)
For formal requests or complaints related to data protection, you may contact our Data Protection Officer:
📧 DPO Email: [email protected]
Regulatory Authority
If you have concerns about how we handle your data, you can lodge a complaint with the UK Information Commissioner’s Office (ICO):
🌐 Website: www.ico.org.uk
📞 Phone: 0303 123 1113
By using Aetheria Tourism, you acknowledge that you have read and understood this Privacy Policy.