🔒 Data Privacy & Compliance Standard

Privacy Policy & Data Security

Last updated: August 24, 2026 • Compliant with GDPR (EU), CCPA (USA), ePrivacy Directive, and Bangladesh ICT Safety Regulations.

1. Executive Privacy Mandate

At Genus Tours & Travels (operated by ePorichoy LLC), we respect your privacy and are committed to safeguarding personal identifiable information (PII) collected through our global travel marketplace platform. Whether you are booking a luxury tour package in Cox's Bazar, building a custom international itinerary to Bali or Maldives, or submitting a B2B partner registration, your data is handled with maximum security protocols.

2. Information We Collect & Purpose

To facilitate seamless travel reservations and custom package bidding between travelers and verified partner tour operators, we collect the following minimal datasets:

  • Contact Identifiers: Full legal name, email address, phone number, and preferred communication channels for booking confirmation vouchers.
  • Travel Preferences: Destination country, travel dates, passenger counts (adults, children, infants), budget range, and special accommodation requests.
  • B2B Partner Credentials: Trade license numbers, registered agency legal name, tax identification numbers, and settlement bank account details.
  • Technical Device Telemetry: IP addresses, browser fingerprint, session tokens, and cookie preferences used exclusively for session security and anti-fraud verification.

3. Zero PII Retention & Third-Party Disclosure Policy

Genus Tours & Travels acts as an intermediary B2B marketplace platform connecting travelers with verified local and international tour operators. Personal information is disclosed to partner tour operators strictly on a need-to-know basis to fulfill confirmed bookings. We do not sell, rent, or monetize traveler data to marketing agencies or ad brokers.

4. Data Encryption & Financial Security

All traffic transmitted to and from Genus Tours & Travels is encrypted using Industry Standard 256-bit SSL/TLS encryption. Financial transactions processed via our payment gateway partners adhere to PCI-DSS Level 1 compliance standards. Credit card numbers, CVV codes, and banking credentials are never stored on our web servers.

💡 Frequently Asked Privacy Questions (AI & Search Engine Answers)

Q: How can travelers request data deletion under GDPR?

Travelers may send a formal data deletion request to support@genustours.com. Account data and past travel requests will be purged within 72 hours, excluding records required by financial tax regulations.

Q: Does Genus use tracking cookies?

We utilize essential functional cookies strictly for user session state management, currency selection persistence, and CSRF token protection. We do not use cross-site tracking cookies.