London Air Logo

Privacy Policy

Learn how we safeguard and protect your personal and agency data.

Homechevron_rightPrivacy Policy

1. Overview & Our Commitment

London Air Travels respects the privacy of our partner agencies, corporate clients, and their respective passengers. This Privacy Policy details our practices concerning the collection, storage, transmission, and protection of information across our booking portal and API services.

2. Information We Collect

To issue flight tickets and facilitate travel logistics, we collect necessary identifying information:

Passenger Data

  • Full Name (matching passport)
  • Date of birth & Gender
  • Passport Number & Expiry
  • Frequent Flyer details
  • Contact telephone & email

Agency Credentials

  • Agency Name & Trade License
  • Official Email & Phone
  • E-TIN / VAT Registration No.
  • Billing & Ledger Records
  • Authorized User Accounts

3. How We Use Passenger & Agency Data

We strictly use collected information for legitimate travel fulfillment purposes:

  • Creating PNR reservations across airline reservation systems and global distribution systems (Amadeus, Sabre, Galileo).
  • Transmitting Advanced Passenger Information (API) required by international immigration authorities.
  • Processing electronic tickets, seat assignments, baggage allotments, and meal requests.
  • Facilitating date amendments, flight re-routings, cancellations, and wallet refund reconciliations.

4. Third-Party & Airline Disclosures

We do not sell, rent, or trade your personal or agency information. Data is disclosed only to authorized entities necessary to execute travel services:

  • Operating Airlines: For passenger manifest creation, e-ticket issuance, and flight notifications.
  • GDS Platforms: Direct secure API endpoints for real-time inventory locking.
  • Customs & Border Security: Legally required international border security protocols.
  • Payment Gateways: PCI-DSS compliant banking partners for fund settlements.

5. Data Security & Storage Standards

We employ enterprise-grade security mechanisms to safeguard data against unauthorized access, loss, or alteration:

🔒 256-Bit SSL/TLS Encryption: All browser-to-server traffic is end-to-end encrypted.

🛡️ Restricted Role-Based Access: Only authorized ticketing personnel can access passport information.

Zero Plaintext Credential Storage: Agency passwords and API keys are salted and hashed using industry-standard cryptography.

6. Cookies & Session Management

Our portal uses essential cookies and local session storage to maintain authentication states, track active flight searches, and remember user preferences. You may disable cookies in your browser settings, but certain booking features may be impaired.

7. Your Data Rights & Consent

Partner agencies and passengers have the right to request access to their stored booking history, request correction of erroneous contact records, or request deletion of agency accounts subject to statutory aviation audit retention laws.

8. Data Retention Schedule

Flight booking logs and financial transaction invoices are retained in accordance with IATA BSP compliance, civil aviation regulations, and national taxation requirements (typically up to 5 years).