Data Protection Policy
GoTripBroker · gotripbroker.com
Last updated: 29 July 2026
Version 1.0
Note: Structured template for legal review. Have a qualified lawyer finalise before go-live.
Security
Data encrypted at rest (AES-256) and in transit (TLS 1.2+). RBAC and audit logs. Payment via PCI-DSS compliant Razorpay; no card data stored. Retention: account data lifetime plus 7 years; KYC per regulations; booking data 7 years; chat messages 1 year post-booking. Rights under DPDP Act 2023: access, correct, delete. Breach notification within 72 hours as required by law. Contact: info@gotripbroker.com
For questions about this policy, contact
info@gotripbroker.com
GoTripBroker / GoTripBroker · gotripbroker.com