Legal

Privacy

What we collect, why, for how long — and the two promises other travel sites don’t make.

Draft for counsel review — structure and commitments final; statutory wording (CCPA/CPRA notices, state disclosures) to be completed before launch.

What we collect, and why

In plain English

we collect what a ticket needs, and not much else.

  • Booking data — traveller names, dates of birth, gender markers and itineraries: required by airlines to issue tickets.
  • Travel documents — passport details where routes require them: transmitted to the airline, retained only as long as ticketing requires.
  • Contact details — to deliver e-tickets and reach you when something needs a decision.
  • Payment card — collected at checkout and encrypted immediately (AES-256-GCM). It is read only by a named agent, with a reason and a logged access, to charge it when your ticket is issued, and destroyed after. Your security code is used once and never retained. Nothing is charged until issuance; our security page sets out exactly what happens to a card.
  • Special assistance and meal preferences — only if you volunteer them, used only for the booking concerned, deletable on request independently of the booking.

Calls are recorded — and we tell you first

In plain English

desk calls are recorded for accuracy and training. You hear a notice before you’re connected, in every state, every time.

Because our desk quotes fares and takes booking decisions by phone, calls are recorded. A recording notice plays at the start of every call regardless of which US state you are calling from. Card numbers are never read out on a call — you enter your card yourself on our secure checkout, so it stays out of the recording entirely. Recordings are retained for [12] months and then deleted.

The two promises

In plain English

we don’t sell your data, and if your booking came through a travel agency, we never market to you at all.

No sale, no sharing for advertising. We do not sell personal information, and we do not share it with third parties for their marketing.

Trade passengers are off limits. If your ticket was booked through one of our agency partners, your contact details exist in our systems to deliver tickets and handle disruption — we will not send you marketing of any kind. This is also a contractual promise to your agency.

Text messages

In plain English

if you give us your mobile number, we text you about your trip — and we never share that number for anyone’s marketing.

When you give us a mobile number and consent to SMS, we use it to send booking, ticketing and time-sensitive travel messages, and marketing only if you separately opt in. Your number and your consent are never shared with third parties or affiliates for their marketing. You can stop the messages at any time by replying STOP. The full terms — what we send, how often, and how to opt out — are on our SMS terms page.

How long we keep things

In plain English

booking records for as long as tax law requires; everything else, much shorter.

  • Booking and invoice records — [7] years (tax and accounting law).
  • Payment card — encrypted at rest and destroyed once your ticket is issued, or within 7 days at the latest. The security code is used once and never retained.
  • Passport details — for the ticketing process, then removed from active systems.
  • Call recordings — [12] months.
  • Callback requests that never became bookings — [90] days.

Your choices

In plain English

ask and we’ll show you, fix it, or delete what law lets us delete — by email, without a form maze.

Email privacy@airwaysticketing.com to access, correct or delete your data, or to opt out of marketing (every marketing email also has a working unsubscribe). We respond within [30] days. State-specific rights notices (California and others) will appear here in full at launch.

Airways Ticketing is a trading name of Airways Hub Solutions LLC, 2121 Schmitt Cir, Algonquin, IL 60102, USA.

Cookies

In plain English

the site works without tracking you around the internet.

We use cookies necessary for the booking flow, and measurement that is configured server-side and consent-gated where law requires. We do not run third-party advertising trackers on booking or payment pages — those pages carry no third-party tags at all.