Privacy Policy for Intraverse (GDPR & NDPR Compliant)

Effective Date: 01/02/2026

Last Updated: 01/01/2026

1. Introduction

Intraverse ("Company", "we", "us", "our") is a travel technology platform that enables users to search, book, and sell travel-related services including flights, accommodations, tours, and insurance.

We are committed to protecting your personal data in compliance with the EU General Data Protection Regulation (GDPR) and the Nigeria Data Protection Regulation (NDPR).

This Privacy Policy explains how we collect, process, store, and protect your personal data when you use our mobile application, website, and related services (collectively, the "Services").

2. Data Controller

Intraverse acts as the Data Controller for personal data processed through the platform.

Contact Details:
Intraverse
Email: support@intraverse.africa
Website: https://intraverse.africa

3. Legal Basis for Processing (GDPR)

We process your personal data under the following lawful bases:

  • Contractual Necessity: To provide booking and travel services
  • Legal Obligation: Compliance with regulatory and financial laws
  • Legitimate Interests: Improving services, fraud prevention, and business operations
  • Consent: Marketing communications and optional features

4. Categories of Personal Data Collected

a. Identity Data

  • Full name
  • Date of birth
  • Government-issued identification (where required for bookings)

b. Contact Data

  • Email address
  • Phone number

c. Account & Business Data

  • Login credentials
  • Agent/Independent business details

d. Financial & Transaction Data

  • Booking history
  • Payment records (processed via third-party providers)
  • Wallet balances and transactions

e. Technical Data

  • IP address
  • Device type
  • Browser/app usage data
  • Log files

f. Location Data

  • Approximate geographic location

5. Purpose of Processing

We process personal data to:

  • Provide booking and travel services
  • Process payments and manage wallets
  • Facilitate ticket issuance and travel fulfillment
  • Communicate service updates and notifications
  • Provide customer support
  • Improve platform functionality and user experience
  • Prevent fraud and enhance security
  • Comply with legal and regulatory requirements

6. Data Sharing and Disclosure

We may share your data with:

  • a. Travel Service Providers: Airlines, hotels, insurance providers, and tour operators
  • b. Payment Processors: Secure third-party payment gateways
  • c. Technology Providers: Cloud hosting, analytics, and infrastructure providers
  • d. Regulatory Authorities: Where required by applicable laws or legal processes
  • e. Corporate Transactions: In case of mergers, acquisitions, or restructuring

We do not sell personal data to third parties.

7. International Data Transfers

Your personal data may be transferred outside Nigeria or the European Economic Area (EEA).

Where such transfers occur, we ensure appropriate safeguards, including:

  • Standard Contractual Clauses (SCCs)
  • Data Processing Agreements (DPAs)
  • Transfers to jurisdictions with adequate data protection laws

8. Data Retention

We retain personal data only for as long as necessary to:

  • Fulfill the purposes outlined in this policy
  • Comply with legal, tax, and regulatory obligations
  • Resolve disputes and enforce agreements

9. Data Security

We implement industry-standard security measures, including:

  • Encryption (data in transit and at rest where applicable)
  • Secure access controls
  • Regular security audits and monitoring

Despite these measures, no system is completely secure.

10. Your Data Protection Rights

Under GDPR and NDPR, you have the right to:

  • Access your personal data
  • Rectify inaccurate or incomplete data
  • Erase your data ("Right to be Forgotten")
  • Restrict processing of your data
  • Data portability
  • Object to processing based on legitimate interests
  • Withdraw consent at any time

To exercise these rights, contact:
support@intraverse.africa

11. Automated Decision-Making & Profiling

Intraverse may use automated systems to:

  • Recommend travel options
  • Detect fraudulent activities

These processes do not produce legal or similarly significant effects without human oversight.

12. Cookies & Tracking Technologies

We use cookies and similar technologies to:

  • Improve user experience
  • Analyze platform performance
  • Personalize content

Users may control cookie preferences via device or browser settings.

13. Children's Data

Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal data from children. If identified, such data will be deleted promptly.

14. Third-Party Links and Services

Our platform may include links to third-party services. We are not responsible for their privacy practices.

15. NDPR Compliance Statement

In accordance with the Nigeria Data Protection Regulation (NDPR):

  • We ensure lawful processing of personal data
  • We implement adequate security measures
  • We conduct periodic data protection audits (where required)
  • We ensure third-party processors comply with NDPR standards

16. Data Breach Notification

In the event of a data breach:

  • We will notify affected users where required
  • We will inform relevant regulatory authorities in compliance with GDPR and NDPR timelines

17. Updates to This Policy

We may update this Privacy Policy periodically. Users will be notified of material changes via the app or email. Continued use of the Services constitutes acceptance of updates.

18. Contact & Complaints

For privacy-related inquiries or complaints:
Intraverse
Email: support@intraverse.africa
Website: https://intraverse.africa

You also have the right to lodge complaints with:

  • Nigeria Data Protection Authority (NDPA)
  • Relevant EU Data Protection Authorities (if applicable)
Subscribe