Privacy Policy for Intraverse (GDPR & NDPR Compliant)
Effective Date: 01/02/2026
Last Updated: 01/01/2026
1. Introduction
Intraverse ("Company", "we", "us", "our") is a travel technology platform that enables users to search, book, and sell travel-related services including flights, accommodations, tours, and insurance.
We are committed to protecting your personal data in compliance with the EU General Data Protection Regulation (GDPR) and the Nigeria Data Protection Regulation (NDPR).
This Privacy Policy explains how we collect, process, store, and protect your personal data when you use our mobile application, website, and related services (collectively, the "Services").
2. Data Controller
Intraverse acts as the Data Controller for personal data processed through the platform.
Contact Details:
Intraverse
Email: support@intraverse.africa
Website: https://intraverse.africa
3. Legal Basis for Processing (GDPR)
We process your personal data under the following lawful bases:
- Contractual Necessity: To provide booking and travel services
- Legal Obligation: Compliance with regulatory and financial laws
- Legitimate Interests: Improving services, fraud prevention, and business operations
- Consent: Marketing communications and optional features
4. Categories of Personal Data Collected
a. Identity Data
- Full name
- Date of birth
- Government-issued identification (where required for bookings)
b. Contact Data
- Email address
- Phone number
c. Account & Business Data
- Login credentials
- Agent/Independent business details
d. Financial & Transaction Data
- Booking history
- Payment records (processed via third-party providers)
- Wallet balances and transactions
e. Technical Data
- IP address
- Device type
- Browser/app usage data
- Log files
f. Location Data
- Approximate geographic location
5. Purpose of Processing
We process personal data to:
- Provide booking and travel services
- Process payments and manage wallets
- Facilitate ticket issuance and travel fulfillment
- Communicate service updates and notifications
- Provide customer support
- Improve platform functionality and user experience
- Prevent fraud and enhance security
- Comply with legal and regulatory requirements
6. Data Sharing and Disclosure
We may share your data with:
- a. Travel Service Providers: Airlines, hotels, insurance providers, and tour operators
- b. Payment Processors: Secure third-party payment gateways
- c. Technology Providers: Cloud hosting, analytics, and infrastructure providers
- d. Regulatory Authorities: Where required by applicable laws or legal processes
- e. Corporate Transactions: In case of mergers, acquisitions, or restructuring
We do not sell personal data to third parties.
7. International Data Transfers
Your personal data may be transferred outside Nigeria or the European Economic Area (EEA).
Where such transfers occur, we ensure appropriate safeguards, including:
- Standard Contractual Clauses (SCCs)
- Data Processing Agreements (DPAs)
- Transfers to jurisdictions with adequate data protection laws
8. Data Retention
We retain personal data only for as long as necessary to:
- Fulfill the purposes outlined in this policy
- Comply with legal, tax, and regulatory obligations
- Resolve disputes and enforce agreements
9. Data Security
We implement industry-standard security measures, including:
- Encryption (data in transit and at rest where applicable)
- Secure access controls
- Regular security audits and monitoring
Despite these measures, no system is completely secure.
10. Your Data Protection Rights
Under GDPR and NDPR, you have the right to:
- Access your personal data
- Rectify inaccurate or incomplete data
- Erase your data ("Right to be Forgotten")
- Restrict processing of your data
- Data portability
- Object to processing based on legitimate interests
- Withdraw consent at any time
To exercise these rights, contact:
support@intraverse.africa
11. Automated Decision-Making & Profiling
Intraverse may use automated systems to:
- Recommend travel options
- Detect fraudulent activities
These processes do not produce legal or similarly significant effects without human oversight.
12. Cookies & Tracking Technologies
We use cookies and similar technologies to:
- Improve user experience
- Analyze platform performance
- Personalize content
Users may control cookie preferences via device or browser settings.
13. Children's Data
Our services are not intended for individuals under 18 years of age. We do not knowingly collect personal data from children. If identified, such data will be deleted promptly.
14. Third-Party Links and Services
Our platform may include links to third-party services. We are not responsible for their privacy practices.
15. NDPR Compliance Statement
In accordance with the Nigeria Data Protection Regulation (NDPR):
- We ensure lawful processing of personal data
- We implement adequate security measures
- We conduct periodic data protection audits (where required)
- We ensure third-party processors comply with NDPR standards
16. Data Breach Notification
In the event of a data breach:
- We will notify affected users where required
- We will inform relevant regulatory authorities in compliance with GDPR and NDPR timelines
17. Updates to This Policy
We may update this Privacy Policy periodically. Users will be notified of material changes via the app or email. Continued use of the Services constitutes acceptance of updates.
18. Contact & Complaints
For privacy-related inquiries or complaints:
Intraverse
Email: support@intraverse.africa
Website: https://intraverse.africa
You also have the right to lodge complaints with:
- Nigeria Data Protection Authority (NDPA)
- Relevant EU Data Protection Authorities (if applicable)