📞 +44 7411 551435  |  ✉️ info@tripmax.co.uk
🕐 24/7 — Always Available
🔒 Legal

Privacy Policy

How TripMax UK collects, uses, stores and protects your personal data — fully compliant with UK GDPR and the Data Protection Act 2018.

📅 Last Updated: 1 June 2025
🏢 Controller: TripMax UK Ltd
📧 DPO Email: privacy@tripmax.co.uk
📑 Contents
📘
Introduction
Our Commitment to Your Privacy

TripMax UK Ltd ("TripMax", "we", "us", "our") is committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, store, and share your personal information when you visit tripmax.co.uk, use our services, or contact us.

We comply fully with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. Please read this policy carefully. By using our website or services, you acknowledge that you have read and understood this policy.

ℹ️
If you have any questions about this policy or wish to exercise your data rights, please contact us at privacy@tripmax.co.uk or call +44 7411 551435.
🏢
Section 1
Who We Are (Data Controller)

The data controller responsible for your personal data is:

Company NameTripMax UK Ltd
Registered Address1 Travel House, High Street, London, EC1A 1BB
Websitewww.tripmax.co.uk
Emailinfo@tripmax.co.uk
Privacy Contactprivacy@tripmax.co.uk
Telephone+44 7411 551435
ICO RegistrationRegistered with the Information Commissioner's Office (ICO)
📋
Section 2
Personal Data We Collect

We collect the following categories of personal data depending on how you interact with us:

CategoryExamplesHow Collected
Identity DataFull name, date of birth, nationality, passport numberApplication forms, consultation
Contact DataEmail address, phone/WhatsApp number, postal addressWebsite forms, calls, WhatsApp
Travel DataDestination, travel dates, visa type, itineraryBooking forms, consultations
Financial DataBank statements (for visa applications), payment detailsProvided by client for visa docs
Employment DataEmployer name, job title, payslips (for visa applications)Provided by client for visa docs
Technical DataIP address, browser type, pages visited, cookiesAutomatically via website
Communications DataEmails, WhatsApp messages, call recordsDirect communication with us
⚠️
Special Category Data: For visa applications, we may process passport biometric data and travel history. This is processed solely under your explicit consent and to fulfil the visa application service you have requested.
⚙️
Section 3
How We Use Your Data

We use your personal data for the following purposes:

We never sell your personal data to third parties for their own marketing purposes. Your data is used solely to deliver the services you have requested from TripMax.
⚖️
Section 4
Legal Basis for Processing

Under UK GDPR, we must have a valid legal basis for processing your personal data. We rely on the following:

PurposeLegal Basis
Visa application and travel booking servicesContract — processing is necessary to perform the service you have engaged us for
Responding to enquiriesLegitimate Interests — to respond to your enquiry and manage our customer relationships
Passport & biometric data (special category)Explicit Consent — you provide this data with full consent for your visa application
Financial records and invoicingLegal Obligation — required for tax and accounting compliance under UK law
Marketing emails and newslettersConsent — only where you have opted in; you may withdraw at any time
Website analytics and cookiesLegitimate Interests / Consent — to improve our website; consent obtained via cookie banner
🤝
Section 5
Who We Share Your Data With

We share your personal data only where strictly necessary to deliver our services or comply with legal obligations. Recipients include:

ℹ️
All third parties we work with are contractually obligated to handle your data securely and only for the specific purpose we have instructed. We do not allow third parties to use your data for their own purposes.
🌍
Section 6
International Data Transfers

Visa applications by their nature require transferring your personal data to countries outside the UK — specifically to embassies, consulates, and VFS Global centres in Europe and elsewhere. These transfers are necessary to fulfil your service contract with us.

Where we transfer data to countries outside the UK that do not have an adequacy decision from the ICO, we ensure appropriate safeguards are in place, including:

🗓️
Section 7
How Long We Keep Your Data
Data TypeRetention PeriodReason
Visa application files5 years after completionLegal compliance & future applications
Booking & financial records7 yearsHMRC tax compliance requirement
Website enquiry data2 yearsCustomer service & follow-up
Marketing preferencesUntil consent withdrawnConsent-based processing
Technical / website analytics13 monthsStandard analytics cycle
Complaint records3 yearsLegal protection

After the applicable retention period, your data is securely deleted or anonymised. You may request early deletion subject to our legal obligations — see Your Rights below.

🍪
Section 8
Cookies

Our website uses cookies — small text files stored on your device — to improve your experience and analyse site usage. We use the following types:

Cookie TypePurposeDuration
EssentialRequired for the website to function (forms, navigation)Session
AnalyticsGoogle Analytics — understand how visitors use the site13 months
FunctionalRemember your preferences (e.g. language, form data)1 year
MarketingUsed if you have opted into remarketing ads90 days

You can manage or disable cookies via your browser settings at any time. Disabling essential cookies may affect site functionality. For full details, see our Cookie Policy.

🛡️
Section 9
Your Rights Under UK GDPR

Under UK GDPR, you have the following rights regarding your personal data:

ℹ️
To exercise any of these rights, contact us at privacy@tripmax.co.uk. We will respond within 30 days. There is no charge for most requests.
🔒
Section 10
How We Protect Your Data

We take the security of your personal data seriously and have implemented appropriate technical and organisational measures to protect it against unauthorised access, loss, or destruction, including:

In the event of a data breach that poses a risk to your rights and freedoms, we will notify the ICO within 72 hours and inform affected individuals without undue delay.

👶
Section 11
Children's Data

Our services are not directed at children under 16. We do not knowingly collect personal data from children. Where a child is included in a family visa application, the data of the minor is processed solely for the purpose of the visa application and under the consent and direction of the parent or guardian.

If you believe we have inadvertently collected data from a child without appropriate consent, please contact us immediately at privacy@tripmax.co.uk.

🔄
Section 12
Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, services, or legal requirements. The "Last Updated" date at the top of this page will always reflect the most recent version.

We encourage you to review this policy periodically. For significant changes, we will notify you by email (if we hold your contact details) or by a prominent notice on our website.

Questions about your privacy?

Our team is available 24/7 to answer any data protection questions or process your rights requests.