Personal data is any information that relates to you as a user of a site and through which you can be directly or indirectly identified.
If you create an account in our system, your orders will be tied to this account and displayed in your personal “private office”. We will also store personal data of the passengers that you have entered, so that you can reuse it when creating new orders. Nobody except you has the access to the passengers’ personal data stored in your personal “private office”. You can delete your account in your personal “private office”. In this case all personal data associated with your account, including your orders, will be deleted from the system.
Personal data related to orders is stored in an encrypted form. Only you and our company’s employees have the access to this data. Our employees use your personal data only for purposes of analysing and solving technical problems (for example, an error during the booking due to an unacceptable format of the data). Use of personal data for other purposes is prohibited by the nondisclosure agreement that is signed by each of our employees. Personal data from the orders will be deleted after the completion of the service execution time, after the end of the acceptable terms of exchanges and refunds for the services and after the end of the reporting period.
We send e-mail and sms notifications only:
During the account registration process you can also subscribe to our newsletter in order to receive news about our company, information about profitable promotions and our special offers. You can unsubscribe at any time by clicking the "unsubscribe" link we provide in each letter.
Our system does not obtain or store card data. All payments are processed through reliable and certified systems of banks or payment gateways. We only obtain and process data concerning the successful or unsuccessful result of your payment.
You have the right to obtain, edit or completely delete your personal data.
You have the right to request the following information by e-mail or phone:
The system does not process personal data for the purposes of making automated decisions that can affect the order price or decisions restricting your rights as a subject of personal data.
We obtain from you the following information:
|Data type||The use||Where is being transferred to||Data storage period|
|Browser language||To determine the language version of the site||Not transferred||Not stored|
|Browser type||To determine specific parameters for the correct display of a website||Transmitted to reservation systems, if required||Stored in logs up to 3 years (only for analysing and solving technical problems)|
|Internet Protocol address (IP)||For an approximate definition of the nearest departure airport. To limit the number of attempts of performing the operations that are critical for the security (protection against brute force selection)||Transmitted to reservation systems, if required||Stored in logs up to 3 years (only for analysing and solving technical problems)|
|Parameters of the search request||To pre-fill the search form, in case the user updates the webpage or returns to the website||Transmitted to reservation systems to get offers (results of search)||Not more than a week on the server side, 1 year in the client's browser|
|Passengers data (purchasing process)||For booking and issuing tickets||To reservation systems and airlines||3 months after the end of the service (in an encrypted form)|
|Passengers data (private office)||To re-enter personal data automatically to the new orders||Not transferred||Unlimitedly in an encrypted form (until being removed by the user)|
|User's e-mail address (purchasing process)||For booking and issuing tickets. To send e-tickets and e-mail notifications about the status of the order||To reservation systems and airlines||3 months after the end of the service (in an encrypted form)|
|User's phone number (purchasing process)||For booking and issuing tickets. To send SMS-messages to notify about the status of the order||To reservation systems and airlines||3 months after the end of the service (in an encrypted form)|
|User's e-mail address (registration process)||To indentify the user. For password recovery.||To the mailing list management system in the case of direct user consent||Unlimitedly in an encrypted form (until the removal of the user)|
|User's password||For authentication||Not transferred||Unlimitedly in an encrypted form (until the removal of the user), as a hash sum.|
Cookies are files with data related to our system and stored on the side of your device. You manage the stored data yourself and you can delete it at any time. It is not recommended to completely disable the cookies functionality as this can adversely affect the availability of the certain functionality of our system.
We use personal data from these files only for the purposes listed below.
We identify your device and restrict unauthorized access to your personal data from any other devices. Because of this you can purchase tickets without creating an account in our system.
During the process of the authentication (at the moment when user enters username and password), we store your data through a unique session identifier stored in the cookie. So you do not need to re-enter your login and password each time you perform the operations that require authorization.
To improve the quality of the system:
We save the site settings that are convenient for you, for example, the language or the currency.
We also save the last entered search parameters, so in case you return to the webpage with the search form you do not have to fill out the search form again.
To collect analytical data:
We strive to improve our service, to increase its speed and make it more convenient for the customers.
For effective and useful advertising:
We use ad serving systems (for example, Google AdWords, Yandex.Direct) to promote our solution.
The ad serving systems collect anonymous statistical data about visitors of the websites for the purposes of an effective and unobtrusive advertising campaigns.
1. Security of access to personal data is provided by authentication and authorization.
2. Security of access to personal data by unregistered customers is provided through unique access codes or identification of the device of the customer (through a cookie).
3. Employees of companies that have access to personal data, sign a non-disclosure agreement and have to pass two-factor authentication.
4. During the process of transmission and storage (including backups) personal data is encrypted. To check the integrity of the encrypted data the checksum algorithm is used. Encryption algorithm: symmetric-key algorithm with 256-bit key and random initialization vector.
5. Secure storage of passwords (via hash value without the ability to restore the user's original password).
6. Passwords and access codes to personal data are protected from brute force selection.
7. Protection against data loss is organized through a real-time replication and daily backups systems.
8. All operations of accessing personal data are logged.
Phone: 8 800 5555 800
Date of publication: 24/05/2018