Privacy Policy
Last updated: September 2026
1. Who we are
flyVia is a travel search and booking platform operated by flyVia GmbH, Frankfurt am Main, Germany. For privacy questions, contact flyvia@iuw7a.com.
2. Data we collect
Account data: name, email, hashed password. We never store plaintext passwords.
Booking data: passenger details you enter (required by airlines to issue tickets), contact details, and booking status.
Usage data: searches (route and dates, not linked to content of your other searches beyond aggregate analytics) and technical logs kept for security.
Payment data: handled exclusively by our PCI-DSS certified payment processor. We never receive or store your full card number.
3. Why we process it (legal bases)
Contract (Art. 6(1)(b) GDPR): to search, price and fulfill your bookings.
Legitimate interests (Art. 6(1)(f)): to secure the platform and prevent fraud.
Consent (Art. 6(1)(a)): for optional marketing communication, which you can withdraw at any time.
4. Processors we share data with
Flight data providers (e.g. Amadeus) to search and book inventory.
Our payment processor to take payments securely.
Email delivery provider to send transactional messages.
We never sell personal data.
5. Retention
Booking records are retained as required by tax and commercial law, then deleted or anonymized. Account data is deleted upon verified deletion requests, subject to the same statutory retention duties.
6. Your rights
You have the right to access, rectify, export and delete your data, and to object to or restrict certain processing. Contact flyvia@iuw7a.com; you may also complain to your local data protection authority.
7. Cookies
flyVia uses a single strictly-necessary session cookie for authentication. We do not use advertising or tracking cookies.