LEGAL

Privacy policy.

LAST UPDATED: [DATE] · APPLIES TO SAFR.AE AND OUR EMAIL AND WHATSAPP ALERTS

Template notice for the site owner: this is a working draft covering UAE Federal Decree-Law No. 45 of 2021 on Personal Data Protection and, where relevant, GDPR. Replace every [BRACKETED] field and have it reviewed by a UAE-qualified lawyer before launch. Delete this box when you publish.

1. Who we are

Safr ("we", "us") is operated by [COMPANY NAME], a company registered in [FREE ZONE / EMIRATE], United Arab Emirates, under trade licence [LICENCE NUMBER], with a registered address at [ADDRESS].

We are the data controller for the information described here. For anything about your data, email [PRIVACY EMAIL].

2. What we collect

Information you give us

Information collected automatically

What we never collect: we do not take payment card details, passport or Emirates ID numbers, or any booking details. We are not part of your transaction with the airline, so we never see it.

3. Why we collect it, and our legal basis

4. Who we share it with

We do not sell your personal data. We never have and we will not. We share it only with service providers who help us run Safr, and only to the extent they need:

We may also disclose information where required by UAE law, a court order, or a lawful request from a regulator or authority.

Affiliate links: when you click through to an airline or booking site, that site sets its own cookies and collects its own data under its own policy. We receive only aggregate confirmation that a booking occurred — never your booking details, passenger names or payment information.

5. How long we keep it

6. Your rights

Under UAE Federal Decree-Law No. 45 of 2021 (and GDPR if you are in the EU/UK) you can:

Email [PRIVACY EMAIL] with the subject "Data request". We respond within 30 days and never charge for it.

7. Security

Data is encrypted in transit (HTTPS) and at rest. Access to the subscriber database is limited to team members who need it and protected by multi-factor authentication. No system is perfectly secure — if a breach affects your data, we will notify you and the relevant authority as required by law.

8. International transfers

Some of our providers store data outside the UAE (typically the EU or United States). Where that happens we rely on providers offering an adequate level of protection and appropriate contractual safeguards. You can ask us which providers hold what.

9. Children

Safr is not intended for anyone under 18 and we do not knowingly collect data from children. If you believe a child has given us their information, contact us and we will delete it.

10. Changes and contact

If we change this policy materially we will email subscribers before it takes effect. The date at the top always reflects the current version.

Questions: [PRIVACY EMAIL] · contact form