1. Compliance
Wookco Inc. is designed to comply with US privacy laws, including the California Consumer Privacy Act as amended by the CPRA, and the European Union General Data Protection Regulation (GDPR).
2. Information We Collect
- Personal identification: name, email, phone number and traveler details you provide when booking.
- Payment metadata: transaction references and billing country. Card details are handled by PCI-DSS compliant providers such as Stripe and Omise.
- Device data & cookies: browser type, approximate location and cookie identifiers, according to your cookie preferences.
3. How We Use Information
We use your data to process bookings, calculate and report the eco-impact of your trips, provide support, prevent fraud and, with your consent, send updates and offers.
4. Data Retention & Security
Data is encrypted in transit using TLS and at rest using industry-standard encryption. Access is limited to staff who need it.
We keep booking records for as long as required for legal, tax and accounting purposes, and delete or anonymise other data when it is no longer needed.
5. Your Data Rights
Depending on where you live, you may access, correct, export or delete your data, and object to certain processing.
- US residents: to submit a "Do Not Sell or Share My Personal Information" request, email privacy@wookco.com with the subject "Do Not Sell My Info".
- EU residents: to submit a data deletion or access request, email privacy@wookco.com with the subject "Data Deletion Request".
We respond within the timeframes required by law (generally 30–45 days).
6. Contact
Privacy questions? Email privacy@wookco.com.
