Entity: Your Flights · 30 N Gould St Ste R, Sheridan, WY 82801 · State of Incorporation: Wyoming, USA · Phone: +1 (810) 505-5186
Introduction and Scope
This Privacy Policy applies to all personal information collected by ("the Company," "we," "our," or "us") through:
- Telephone consultations with our agents at
- Contact forms, callback request forms, or other online submission forms on our website
- Email correspondence to
- Any other channel through which you interact with Your Flights
This Policy does not apply to the data practices of airlines, payment processors, or other third-party service providers, each of which has its own privacy policy. We encourage you to review the privacy policies of all third parties with whom you transact.
By engaging with our services, you consent to the data practices described in this Privacy Policy. If you do not agree, please do not use our services.
Information We Collect
We collect the following categories of personal information, only to the extent necessary to fulfill your travel booking request and operate our business:
A. Information You Provide Directly
- Identity Information: First name, last name, date of birth (for ticketing), and gender (if required by carrier)
- Contact Information: Phone number, email address, and mailing address
- Travel Document Information: Passport number, nationality, expiration date (for international bookings)
- Payment Information: Credit/debit card number, expiration date, CVV, and billing address (processed via PCI-DSS compliant payment systems; we do not store full card numbers)
- Travel Preferences: Preferred airlines, seat preferences, meal requirements, and frequent flyer numbers
- Callback Request Details: Travel dates, origin/destination, number of passengers, and budget preferences
B. Information Collected Automatically
- Call Recordings: Telephone calls with our agents may be recorded for quality assurance, fraud prevention, and dispute resolution. You will be notified at the beginning of any recorded call.
- Website Usage Data: IP address, browser type, pages visited, time on site, and referring URL — collected via standard server logs and analytics tools.
- Cookies and Similar Technologies: We use cookies and similar tracking technologies to improve website functionality and analyze traffic. See our Cookie section below.
How We Use Your Information
Your personal information is used exclusively for the following purposes:
- Processing and confirming flight bookings, changes, and cancellations on your behalf
- Communicating with you about your booking, itinerary, and any relevant travel updates
- Processing payments and issuing refunds or credits
- Verifying your identity and preventing fraudulent transactions
- Complying with legal obligations, airline requirements, and government regulations
- Providing customer support and resolving disputes
- Improving our services and internal agent training (using anonymized or aggregated data)
- Sending transactional communications (booking confirmations, itinerary updates) — not promotional marketing without your opt-in consent
We do not use your personal information for automated decision-making or profiling that produces legal or similarly significant effects.
Explicit Guarantee: We Do Not Sell Your Data
Your Flights will NEVER sell, rent, lease, trade, or otherwise transfer your personal information — including but not limited to your phone number, email address, name, travel history, or payment information — to any third-party telemarketers, lead generation companies, data brokers, list vendors, or advertising networks for commercial marketing purposes.
Specifically, we guarantee the following:
- Phone Numbers: Your telephone number is used solely to contact you regarding your specific travel booking inquiry or callback request. It will never be sold, shared, or transferred to any third-party telemarketer, robocall service, or marketing firm.
- Email Addresses: Your email address is used only for transactional communications related to your booking. It will never be sold or transferred to any third-party email marketing service, data broker, or advertising platform.
- Travel History: Your booking history and travel preferences are retained solely for internal customer service purposes and will not be monetized or disclosed to any third party for marketing purposes.
This guarantee applies regardless of the value offered in exchange for your data, and no internal decision-making authority has the power to override this commitment without first amending this Privacy Policy with public notice.
Limited Data Sharing with Third Parties
We share your personal information only in the following strictly limited circumstances:
- Airlines and Carriers: Passenger name, travel document details, and contact information are transmitted to the operating airline as required to ticket and confirm your flight booking.
- Payment Processors: Payment card information is shared with our PCI-DSS Level 1 compliant payment processor solely for transaction processing. We do not retain full card numbers after transaction completion.
- Global Distribution Systems (GDS): Booking data is entered into GDS platforms (such as Amadeus, Sabre, or Travelport) as required to search and reserve airline inventory.
- Legal Compliance: We may disclose your information to government authorities, courts, or law enforcement agencies when legally required by subpoena, court order, or other valid legal process.
- Fraud Prevention: We may share information with financial institutions or fraud prevention services when investigating or preventing fraudulent activity.
In all cases of third-party sharing, we require contractual data protection commitments from recipients that are consistent with this Privacy Policy.
Data Security and Encryption
We implement the following security measures:
- SSL/TLS Encryption: 256-bit SSL encryption for all web transmissions; TLS 1.2/1.3 enforced.
- PCI-DSS Compliance: Payment card data is handled only through PCI-DSS Level 1 certified processors. We never store raw card numbers on our systems.
- 3D Secure 2.0 (3DS2): Supported for card-present and card-not-present transactions to authenticate cardholders and prevent unauthorized use.
- Call Recording Security: Recorded calls are stored on encrypted servers with access limited to authorized personnel.
- Access Controls: Internal systems use role-based access controls, and all employee access to customer data is logged and auditable.
- Data Minimization: We retain only the personal data necessary for the purposes described in this Policy and delete or anonymize data when no longer needed.
Despite these measures, no method of data transmission over the internet is 100% secure. In the unlikely event of a data breach that affects your personal information, we will notify you as required by applicable law.
California Consumer Privacy Act (CCPA) — Notice to California Residents
If California law is determined to apply, California residents have the following rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):
- Right to Know: The right to request disclosure of the categories and specific pieces of personal information we have collected about you, the sources, and the purposes.
- Right to Delete: The right to request deletion of your personal information, subject to certain legal exceptions.
- Right to Correct: The right to request correction of inaccurate personal information.
- Right to Opt-Out of Sale: As stated in Section 4, we do not sell personal information. Therefore, no opt-out is necessary, but you may make a request at any time.
- Right to Non-Discrimination: We will not discriminate against you for exercising your CCPA rights.
To exercise these rights (if applicable), contact us at or .
General Data Protection Regulation (GDPR) — Notice to EEA Residents
If you are located in the European Economic Area (EEA), the United Kingdom, or Switzerland, the General Data Protection Regulation (GDPR) or applicable equivalent law may provide you with additional rights regarding your personal data:
- Right of Access (Art. 15): You may request a copy of the personal data we hold about you.
- Right to Rectification (Art. 16): You may request correction of inaccurate or incomplete personal data.
- Right to Erasure (Art. 17): You may request deletion of your personal data ("right to be forgotten"), subject to legal retention obligations.
- Right to Restrict Processing (Art. 18): You may request that we limit how we use your data in certain circumstances.
- Right to Data Portability (Art. 20): You may request your personal data in a structured, machine-readable format.
- Right to Object (Art. 21): You may object to the processing of your personal data for certain purposes.
- Right to Lodge a Complaint: You have the right to lodge a complaint with a supervisory authority in your country of residence.
Our lawful bases for processing personal data under GDPR are: (a) performance of a contract (processing necessary to book your travel); (b) legal obligation (compliance with DOT, airline, and financial regulations); and (c) legitimate interests (fraud prevention, dispute resolution).
Data Retention
We retain personal information for the following periods:
- Booking Records: 7 years from the date of travel, as required for tax, accounting, and legal compliance purposes.
- Call Recordings: 2 years from the date of the call, unless the recording is relevant to an active dispute or legal proceeding.
- Payment Records: Tokenized payment references are retained for 5 years for accounting and chargeback documentation. Raw card numbers are never stored beyond the point of transaction authorization.
- Website Analytics Data: Aggregated, anonymized data retained indefinitely; IP-linked data retained for up to 2 years.
- Callback Request Data (Non-Converted): If you submitted a callback form but did not complete a booking, your contact details are retained for 90 days and then deleted unless you have consented to further contact.
Contact Us Regarding Privacy
For any privacy-related questions, data subject requests, or concerns, please contact us:
- Phone: (Phone Support)
- Email:
- Mail: ,
We will respond to verifiable privacy requests within 45 days. If we require additional time (up to 90 days), we will notify you in writing within the initial 45-day window.
This Privacy Policy was last updated on August 1, 2025. We reserve the right to update this Policy at any time. The most current version will always be posted at www.yourflightsllc.com/privacy-policy.
© 2026 Your Flights · All rights reserved · 30 N Gould St Ste R, Sheridan, WY 82801
Questions? Call +1 (810) 505-5186 or email support@yourflightsllc.com