Privacy Policy
Effective July 23, 2026. Applies to nordfare.com, account.nordfare.com, and the Nordfare mobile app.
Nordfare is a private fare desk. We collect the minimum we need to price and arrange the travel you ask us for, we keep it secure, and we never sell it. This page explains exactly what we hold and why, in plain language.
What we collect
- Account details. Your name, email address, and, if you add it, a phone number.
- Travel requests. Routes, dates, cabin, party size, and any preferences you share: preferred airline or alliance, timing, date flexibility, and hotel briefs (purpose, area, rooms, room type).
- Loyalty numbers. Frequent-flyer or hotel programme numbers, only if you choose to save them in Settings.
- Approvals and records. When you approve a fare or a stay, we record the approval, the time, and the exact document you approved. This is the paper trail that protects you.
- Technical basics. A session cookie that keeps you signed in, and standard security logs (IP address and device type on sign-ins and sessions).
What we do not collect. No card numbers on the website or in the app. No location tracking. No access to your contacts or photos. No advertising identifiers, and no cross-app tracking of any kind. Hotels bill you directly; airfare payment is arranged with the desk and documented to you in writing.
How we use it
- To source, price, and document the fares and stays you request.
- To send transactional email: request received, options ready, approval confirmations, and ticket confirmations. Marketing email only if you opt in, and every one has an unsubscribe.
- To keep your account secure: sessions, sign-in codes, and audit logs.
- To keep the financial records we are required to keep as a travel business.
AI assistance, with human accountability
Our desk uses AI systems to organize fare evidence and draft documents. A human reviews everything before it reaches you, and every price you see must trace to captured evidence. AI providers process request text for us as service providers only; commercial API data is not used to train their models.
Who touches the data
We use a small set of service providers, each processing data only on our instructions: Cloudflare (hosting and delivery), Resend and Microsoft 365 (email), a licensed flight-offers feed (fare data for your requests), and Anthropic (AI processing). We do not sell personal information, we do not run third-party advertising, and we share data with no one else except where the law requires it.
Cookies
One strictly necessary session cookie signs you in to your account. There are no advertising or cross-site tracking cookies.
How long we keep it
Account details stay while your account is open. If you close your account (Settings, "Close account"), your name and contact details are removed; travel and approval records are kept only as required for financial recordkeeping, with your identity erased from them.
Your choices
- See and update your details any time in Settings.
- Close your account from Settings, as described above.
- Opt out of marketing email in Settings or via the unsubscribe link in any message.
- Ask us anything about your data at [email protected]. We answer access, correction, and deletion requests for all clients, wherever you live.
Children
Nordfare is a travel service for adults. We do not knowingly collect information from anyone under 18; travellers under 18 appear only as party members in a booking made by an adult.
Changes
If this policy changes in a way that matters, we will say so on this page and, for signed-in clients, by email. The effective date above always tells you the current version.
Contact
Nordfare · [email protected]