Privacy Policy

Last updated: 24 August 2026

  1. Who We Are

FLY PRO S.R.L., trading as “Fly Pro”, is a company established in Romania that provides travel reservation, assistance and corporate travel services.

Company details:

Legal name: FLY PRO S.R.L.
CUI: 52750773
Trade Register number: J2025080989007
Registered office: Bucharest, Romania
Email: support@flypro.ro
Refund email: refund@flypro.ro
Phone and WhatsApp: +40 749 267 670

For the purposes of Regulation (EU) 2016/679 (“GDPR”), Fly Pro is the controller of the personal data described in this Policy, except where a travel supplier acts as an independent controller.

  1. Scope

This Policy applies when you:

  • Visit or use our website;

  • Request a quotation;

  • Make or manage a booking;

  • Contact us by email, telephone, WhatsApp or a website form;

  • Travel under a booking managed by Fly Pro;

  • Act as a corporate customer or authorised travel coordinator;

  • Subscribe to marketing communications.

  1. Personal Data We May Collect

We may collect:

Identity and contact data:

  • Full name;

  • Title;

  • Date of birth;

  • Gender where required by a supplier;

  • Nationality;

  • Email address;

  • Telephone number;

  • Residential or business address.

Travel-document data:

  • Passport or identity-document details;

  • Document number, issue and expiry dates;

  • Visa information;

  • Traveller verification data required by the supplier or authorities.

Booking data:

  • Flights, hotels, transfers and itinerary details;

  • Departure and destination information;

  • Loyalty-programme details;

  • Seating, baggage and room preferences;

  • Group and conference information;

  • Booking history, changes, cancellations and refunds.

Corporate data:

  • Company name;

  • Job title;

  • Corporate travel policy;

  • Cost centre;

  • Booking approver;

  • Billing and invoice information.

Special assistance data:

  • Accessibility requirements;

  • Mobility assistance;

  • Dietary information;

  • Health-related information that is strictly necessary for the requested assistance.

Financial data:

  • Payment status;

  • Transaction identifiers;

  • Invoice and refund information.

Full card details are normally processed directly by an authorised payment provider and are not stored by Fly Pro unless expressly stated and lawfully permitted.

Technical data:

  • IP address;

  • Device and browser information;

  • Website activity;

  • Cookie preferences;

  • Form and security logs.

Communication data:

  • Emails;

  • Contact-form submissions;

  • Recorded booking instructions;

  • WhatsApp messages;

  • Complaints and customer-service records.

  1. Sources of Personal Data

We may receive data:

  • Directly from you;

  • From your employer or authorised corporate travel coordinator;

  • From another traveller authorised to book for you;

  • From airlines, hotels, transfer companies and travel platforms;

  • From payment, fraud-prevention and technology providers;

  • Through cookies and website technologies;

  • From public authorities where legally permitted.

A person providing information about another traveller confirms that they are authorised to do so and will make this Policy available to that traveller.

  1. Purposes and Legal Bases

We process personal data for the following purposes:

To respond to enquiries and prepare quotations:

Legal basis: steps requested before entering into a contract and our legitimate interest in responding to genuine business enquiries.

To create and perform bookings:

Legal basis: performance of a contract or steps requested before entering into a contract.

To communicate traveller data to airlines, hotels and other suppliers:

Legal basis: performance of the booking contract and compliance with legal obligations.

To process payments, invoices and refunds:

Legal basis: performance of a contract, compliance with accounting and tax obligations and prevention of fraud.

To provide travel support and manage changes:

Legal basis: performance of a contract and, where applicable, protection of vital interests.

To process accessibility or health-related assistance information:

Legal basis: explicit consent, vital interests or another condition permitted by Article 9 GDPR.

To manage corporate customer accounts:

Legal basis: performance of the corporate agreement and Fly Pro’s legitimate interests in administering the business relationship.

To comply with legal, tax, security and regulatory duties:

Legal basis: compliance with legal obligations.

To protect legal rights and resolve disputes:

Legal basis: legitimate interests and the establishment, exercise or defence of legal claims.

To send marketing:

Legal basis: consent or another basis expressly permitted by applicable electronic-communications law.

Consent may be withdrawn at any time without affecting processing performed before withdrawal.

  1. Data Minimisation

We collect only data reasonably necessary for the requested service.

Passport, identity and special-assistance data will not be requested merely for marketing purposes. Customers should not send unnecessary passport copies, financial information or medical documents through unsecured channels.

  1. Sharing Personal Data

We may share necessary data with:

  • Airlines and ticketing providers;

  • Hotels and accommodation providers;

  • Ground-transport and car-hire companies;

  • Conference and event providers;

  • Global distribution and booking systems;

  • Payment processors and banks;

  • Insurance and assistance providers;

  • Accounting, audit and legal advisers;

  • Website hosting, CRM, email and IT providers;

  • Fraud-prevention and cybersecurity providers;

  • Government, immigration, border, tax or law-enforcement authorities where legally required.

Travel suppliers may process personal data as independent controllers under their own privacy notices.

Fly Pro does not sell personal data.

  1. WhatsApp and Third-Party Communication Services

If you contact Fly Pro through WhatsApp, your personal data will also be processed by WhatsApp/Meta under its own terms and privacy policy.

Do not send full payment-card details, passwords or unnecessary sensitive documents through WhatsApp.

Where possible, Fly Pro may ask you to use a more secure method for transmitting passport or sensitive information.

  1. International Data Transfers

International bookings may require personal data to be transferred outside the European Economic Area.

Fly Pro will use an applicable legal mechanism, including:

  • An European Commission adequacy decision;

  • Standard Contractual Clauses or other appropriate safeguards;

  • A transfer necessary to perform the travel contract;

  • Another GDPR-permitted transfer mechanism.

Article 49 derogations will only be used where their legal conditions are satisfied and will not replace appropriate safeguards for regular data transfers.

  1. Retention

Fly Pro keeps data only for as long as necessary.

Typical retention criteria are:

  • Enquiries that do not become bookings: up to 24 months after the last meaningful contact;

  • Marketing data: until consent is withdrawn or after a reasonable period of inactivity;

  • Booking and contract records: for the duration of the relationship and the applicable legal limitation period;

  • Invoices and accounting documents: for the statutory period required by Romanian tax and accounting law;

  • Complaint and legal-claim records: until final resolution and expiry of applicable limitation periods;

  • Cookie data: for the period shown in the cookie-consent tool;

  • Passport and special-assistance data: deleted or restricted when no longer necessary, unless retention is legally required.

Data may be retained longer where required by law, litigation, fraud prevention or a competent authority.

  1. Your GDPR Rights

Subject to applicable conditions, you have the right to:

  • Be informed;

  • Access your personal data;

  • Correct inaccurate or incomplete data;

  • Request erasure;

  • Request restriction;

  • Object to processing based on legitimate interests;

  • Object to direct marketing at any time;

  • Receive portable data where applicable;

  • Withdraw consent;

  • Request information about international-transfer safeguards;

  • Not be subject to a legally significant decision based solely on automated processing where GDPR provides this right;

  • Lodge a complaint with a supervisory authority.

Requests may be sent to support@flypro.ro.

Fly Pro will respond without undue delay and normally within one month. This may be extended by up to two additional months for complex or numerous requests, in which case you will be informed within the first month.

We may request proportionate information to verify your identity.

  1. Automated Processing

Fly Pro does not make legally significant decisions about travellers solely through automated processing unless this is expressly explained and permitted by law.

Automated tools may be used to organise enquiries, identify booking options, send reminders or detect suspicious activity, subject to human oversight where appropriate.

  1. Marketing

Marketing emails or messages will only be sent where lawful.

You may opt out by:

Transactional communications about an active enquiry, booking, disruption, payment or refund are not marketing.

  1. Cookies

Essential cookies may operate without consent where legally permitted.

Analytics, advertising and other non-essential cookies will not be activated before valid consent is obtained.

The website must provide:

  • “Accept All”;

  • “Reject All”;

  • Granular cookie choices;

  • A method to withdraw consent as easily as it was given.

Further information should be provided in the website’s Cookie Policy and cookie settings.

  1. Security

Fly Pro uses proportionate technical and organisational measures designed to protect data, including access controls, secure systems, staff confidentiality measures and service-provider review.

No internet system is completely secure. Where a personal-data breach creates a legal notification obligation, Fly Pro will notify the competent authority and affected individuals as required by GDPR.

  1. Children

Children may not independently create travel contracts unless legally permitted.

Data concerning a child may be processed when provided by a parent, guardian or properly authorised corporate representative for a legitimate booking.

  1. Complaints

Please contact Fly Pro first at support@flypro.ro.

You also have the right to complain to the Romanian National Supervisory Authority for Personal Data Processing:

ANSPDCP
Website: https://www.dataprotection.ro/
Complaint information: https://www.dataprotection.ro/?lang=en&page=Plangeri_RGPD

  1. Changes

Fly Pro may update this Policy where services, suppliers, technologies or laws change. Material changes will be communicated where required.

  1. Contact

FLY PRO S.R.L.
CUI: 52750773
Registered office: Bucharest, Romania
Email: support@flypro.ro
Phone/WhatsApp: +40 749 267 670