NOMARA

website privacy policy

Effective update date: 10.14.2025 

1. Who we are 

Controller: Nomad African Travel s.r.o., trading as NOMARA ("NOMARA", "we", "us") 

IČO: 191 03 913 

Registered office: Granitova 1115/2, Prague, Czech Republic 

Website: www.nomaraafricatravel.com 

Contact for privacy matters: [email protected] 

This Policy explains how we collect and use personal data on our website and when we arrange African travel services as an agent via our partners. It applies to visitors, prospective customers, customers, and anyone contacting us. 

2. What data we process 

  • Identity and contact data: name, title, email, phone, address, nationality, passport details when required for bookings. 

  • Booking and itinerary data: travel dates, destinations, companions, preferences such as room or dietary needs, and chosen activities. 

  • Sensitive data (only if volunteered and needed): dietary requirements and relevant medical or mobility information, strictly for safety and fitness to travel and only with your explicit consent. 

  • Transaction data: amounts paid, currency, due dates; payment card details are handled by our payment processors and are not stored by us. 

  • Communications: emails, enquiry forms, and live chat transcripts. 

  • Technical and usage data: IP address, device and browser type, pages viewed, time on page, clicks, and referring URLs. 

  • Marketing and cookies data: your consent choices and interaction with Meta Pixel and Google Ads remarketing. 

3. How we use your data (purposes and legal bases) 

  • Enquiries and bespoke bookings, administering your trip. Legal basis: contract or pre-contractual steps, and legitimate interests for routine administration. 

  • Payments and fraud prevention via Stripe and Wise. Legal basis: contract, legitimate interests and legal obligation. 

  • Customer support, including LiveChat.com chat. Legal basis: contract and legitimate interests. 

  • Marketing communications where you opt in, you may unsubscribe any time. Legal basis: consent, and for existing customers, legitimate interests where permitted. 

  • Remarketing and analytics cookies (Meta Pixel and Google Ads) only after opting in via our Consent Manager. Legal basis: consent. You can withdraw your consent in the cookie banner at any time. 

  • Stories, photos, and testimonials. With your explicit consent, we may feature your photos or feedback to inspire other travelers. You can withdraw your consent at any time; this does not affect materials already produced. 

  • Compliance with tax and accounting, risk screening and handling claims. Legal basis: legal obligation and legitimate interests. 

  • Security, detecting abuse, and keeping our services secure. Legal basis: legitimate interests. 

  • Special category data (for example, medical notes for activity suitability) is processed only when necessary, with your explicit consent and limited to what partners require for safety. 

4. Cookies, pixels and similar tech 

We use a Consent Management Platform compatible with Squarespace. Non-essential cookies, for example Meta Pixel and Google Ads, are disabled until you accept them. You can change settings any time via on-site “Cookie settings”. We and trusted partners use cookies to measure performance, enable live chat, and support remarketing after you opt in. 

5. Who receives your data 

Processors (acting on our instructions): 

  • LiveChat.com (website chat and website monitoring) 

  • SafariPortal.com (CRM and itinerary management) 

  • Microsoft 365 (email and document hosting) 

  • Website hosting, analytics and consent platform providers 

Independent controllers we work with: 

  • Payment providers: Stripe (card payments) and Wise (card/transfer payments). They process your payment data directly. 

  • On trip partners in Africa: accommodation providers, charter and commercial flight operators, and activity providers (e.g., hot air balloons and other extras). We share only what is necessary to deliver your services; they then act as independent controllers for their own compliance. 

  • Insurers/assistance providers: if you request assistance or in emergencies and public authorities where legally required. 

6. International transfers 

Many partners are located outside the EEA, primarily in African countries. Where EU or EEA adequacy is not in place, we rely on EU Standard Contractual Clauses, partner safeguards, and necessity for contract performance, for example to reserve your room or flight. 

7. How long we keep data 

  • Customer and booking records and invoices: 10 years to meet accounting and tax rules. 

  • Live chat and enquiry records: 2 years after last contact. 

  • Marketing databases: until you opt out or after 3 years of inactivity. 

  • Cookies: per your choices in our Consent Manager and provider defaults. 

8. Your rights 

You can request access, rectification, erasure, restriction, portability, and objection (including profiling/marketing). Where we rely on consent, you may withdraw it at any time (does not affect prior processing).  

To exercise rights, email us at [email protected]. We may verify identity before acting. 

9. Children 

Our website is not intended for children under 16. Where children’s data is needed for travel, for example age for activity eligibility, a parent or guardian must supply it, and we share the minimum necessary with partners. 

10. Security 

We use appropriate technical and organizational measures, including encryption in transit, access controls, and vendor due diligence. No method is 100% secure; we continuously improve safeguards. 

11. Changes 

We may update this Policy from time to time. Material changes will be highlighted on our website. 

12. Contact NOMARA 

NOMARA, Granitova 1115/2, Prague, Czech Republic. 

Email: [email protected]