Privacy Policy

At Travel Insurance Geek (“we,” “us,” “our,” or “Travel Insurance Geek”), accessible via travelinsurancegeek.com, we value your privacy and are committed to protecting your personal data. This Privacy Policy outlines how we collect, use, store, disclose, and protect your personal information when you visit our website or interact with us. Our data processing practices adhere to the applicable privacy legislation, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA), emphasizing transparency, user control, and robust security.

1. Introduction

At Travel Insurance Geek, we take our responsibility to safeguard your personal data seriously. We are dedicated to ensuring the protection of your rights and freedoms in relation to your personal data. This Privacy Policy is designed to explain how we collect and handle your information, and to provide you with the tools to control your data.

2. Scope of Policy and Data Controller Role

This Privacy Policy applies to all users of travelinsurancegeek.com and governs the collection and processing of personal data obtained through our website and related communications. For the purposes of the GDPR and other applicable privacy laws, Travel Insurance Geek acts as the Data Controller in relation to your personal data.

3. Categories of Personal Data We Process

We may collect and process the following categories of personal data, depending on your interaction with our website and services:

a) Usage Data:
Includes information about how you use our website, such as IP address, browser type, pages visited, referral URLs, time spent on the website, session statistics, and date/time of access.

b) Account Data:
Includes information provided when creating or managing your account, including full name, mailing address, email address, and telephone number.

c) Profile Data:
Includes details regarding your preferences, insurance selections, product interests, site behavior, and history of customer interactions.

d) Communication Data:
Includes information from your communications with us, such as emails, customer support tickets, contact forms, chat transcripts, and any feedback or inquiries.

e) Technical Data:
Includes device type, operating system, browser settings, regional and language preferences, device identifiers, and system configurations.

f) Transaction Data:
Includes payment information (such as transaction IDs, billing or delivery details), and insurance-related purchases made through or referred by our site.

g) Preference Data:
Includes consent to receive marketing communications, newsletter subscriptions, and indications of your interest in specific insurance products or promotions.

4. Legal Bases for Processing

We process your personal data only when lawful to do so. The legal bases for our processing activities include:

– Consent: Where you have provided clear, affirmative consent for the processing of your data for specific purposes.
– Contract: Where processing is necessary to perform a contract with you or to take steps at your request before entering a contract.
– Legal Obligation: Where processing is required to comply with legal obligations to which we are subject.
– Legitimate Interests: Where processing is necessary for our legitimate business interests, provided these interests are not overridden by your fundamental rights and freedoms.

5. Your Rights

Under the GDPR and CCPA, you may have the following rights, subject to applicable limitations:

– Right of Access – to request access to the personal data we hold about you.
– Right to Rectification – to request correction of inaccurate or incomplete data.
– Right to Erasure – to request deletion of your personal data, where legally permissible.
– Right to Restrict Processing – to request that we limit the processing of your personal data in certain circumstances.
– Right to Data Portability – to receive your personal data in a structured, commonly used, and machine-readable format.
– Right to Object – to object to the processing of your data based on legitimate interest or for direct marketing.
– Right to Withdraw Consent – to withdraw your consent at any time, where we rely on consent to process your data.

To exercise any of these rights, please contact us at [email protected].

6. Security Measures

We implement a wide range of organizational, administrative, and technical security measures to protect your personal data. These include:

– Encryption of sensitive information during transmission and at rest
– Role-based access controls and authentication protocols
– Regular security audits and penetration testing
– Secure data storage with physical and network safeguards
– Continuous staff training on data protection best practices
– Regular backup and disaster recovery plans

While we strive to use commercially reasonable means to protect your personal data, we cannot guarantee absolute security.

7. International Data Transfers

Where necessary, we may transfer your data outside of your region, including to the United States or other countries where data protection laws may differ. In such instances, we employ appropriate safeguards, such as Standard Contractual Clauses approved by the European Commission or reliance on adequacy decisions to ensure that your data receives an adequate level of protection.

8. Data Retention

We retain personal data only as long as necessary for the purposes for which we collected it, including for legal, regulatory, accounting, or reporting obligations. Retention timeframes by data type are as follows:

– Usage and Technical Data: up to 18 months
– Account and Profile Data: as long as the account remains active, and up to 5 years following termination
– Communication Data: up to 3 years after your last contact
– Transaction Data: up to 7 years for financial and audit purposes
– Preference Data: until consent is withdrawn or data becomes outdated

We regularly evaluate retention needs and securely dispose of data when no longer required.

9. Cookie Policy

Our website uses cookies and other similar tracking technologies to enhance user experience and provide personalized content. The categories of cookies we use include:

– Essential Cookies: Required for core functionality, such as security and session management.
– Functional Cookies: Enable enhanced features like language preferences and saved settings.
– Analytics Cookies: Collect anonymous data to analyze website usage and performance.
– Performance Cookies: Improve website load times and responsiveness.

Cookies do not grant us access to your device or any personal data beyond that which you explicitly provide.

10. Cookie Management & Compliance

In accordance with the GDPR and CCPA, we provide users with the ability to:

– Opt-in to non-essential cookies via a cookie consent banner
– Modify cookie preferences at any time through a cookie settings panel
– Revoke consent or opt out of cookie tracking where required

Users can also manage cookies directly via browser settings. Blocking essential cookies may impair some site functionality.

11. Children’s Privacy

Our website and services are not directed at children under the age of 13, and we do not knowingly collect personal data from minors. If we learn that we have inadvertently collected data from a child under 13, we will promptly delete such information. Parents or guardians who believe their child has provided personal data without consent should contact us at [email protected].

12. Policy Updates

We reserve the right to revise or update this Privacy Policy at our discretion. Substantive changes affecting your privacy rights will be communicated clearly on our website or via email where appropriate. We encourage you to review this policy periodically to remain informed about how your personal data is protected.

13. Contact

If you have any questions, requests, or concerns regarding this Privacy Policy, your data, or our data practices, please contact us at:

Email: [email protected]

We are committed to complying with applicable privacy laws and ensuring a responsible data protection environment for all visitors of travelinsurancegeek.com. Thank you for trusting Travel Insurance Geek to safeguard your personal information.