Privacy Policy
These clauses come from our Terms & Conditions rather than being restated, so there is only one description of what we do with personal data.
Version 2026.07.31In short
- We collect traveller identity details, identity documents and payment references — the data needed to make a booking and to meet our verification obligations.
- We share it with the suppliers who must have it to deliver the service, and with our payment aggregator to process payment. We do not sell personal data, and we do not use it for any unrelated purpose.
- Payment card details are entered on the payment provider's own hosted page. We never see, handle or store card numbers.
- Which data protection law applies depends on which of our companies receives the payment — India's DPDP Act 2023, or Singapore's PDPA 2012.
6. Verification and compliance
- Before the rupee route opens, the Agency must provide: the lead traveller's name and Permanent Account Number, verified against the income-tax record; that traveller's PAN card, passport and, where the destination requires one, visa; the flight tickets for the journey; the Agency's own know-your-customer pack; and the declaration at clause 7.
- A document counts only once TDMC has checked it. Uploading is not completion. TDMC may reject a document that is illegible, expired, or does not correspond to the person or journey named, and will state the reason.
- The Agency confirms that it holds each traveller's consent to pass their personal data and identity documents to TDMC for these purposes, and that the information given is true. TDMC relies on that confirmation and is not obliged to look behind it.
- PAN verification is performed through Cashfree's verification service against the income-tax record. A verification that fails is not a judgement about the traveller; it means the route stays closed until the record matches.
- TDMC may decline or unwind a transaction where it reasonably suspects fraud, impersonation, money laundering, or a breach of applicable sanctions or exchange control law, and may report it where required to do so.
12. Personal data
- TDMC processes the personal data supplied for this transaction — traveller identity, identity documents and payment references — to perform the booking, to meet its verification obligations and to keep the records the law requires it to keep.
- Data is shared with the suppliers who must have it to deliver the services, and with the payment aggregator to process payment and verification. It is not sold and is not used for any unrelated purpose.
- Where the receiving company is TDMC GLOBAL TRAVEL REP LLP, processing is subject to the Digital Personal Data Protection Act, 2023. Where it is TRAVEL DMC PTE LTD, it is subject to the Personal Data Protection Act 2012.
- Documents withdrawn by the Agency are removed from view but retained in the audit record, because what was submitted and withdrawn is part of the compliance file.
Which law applies, and who to ask
- TDMC GLOBAL TRAVEL REP LLP
- The Digital Personal Data Protection Act, 2023
- TRAVEL DMC PTE LTD
- The Personal Data Protection Act 2012
To ask what we hold about you, to correct it, or to request its deletion where we are not required to retain it, write to [email protected]. Records we are obliged to keep for tax or compliance purposes are retained for as long as the relevant law requires, and no longer.
The full terms these clauses come from are on our Terms & Conditions page.