Privacy
Privacy policy
Last updated 6 October 2026
Who this covers
DRIFORIA GLOBAL LLP (trade name Driforia) sells group and private trips, and travel eSIM data plans, on driforia.com. GSTIN 33ABAFD3579J1ZD. Registered office: 54/233, Seluvai Vaither Street, Madurai 625001, India. This notice describes the personal data we actually collect on this website. It is the notice for the Digital Personal Data Protection Act, 2023.
Grievance contact: Arun, contact@driforia.com, +919344253368. We acknowledge a grievance within 48 hours and aim to close it within 30 days.
Data we collect
Account. If you sign in, our sign-in provider stores your name, email, and profile photo. We copy the name, email, and last sign-in time into our database so your bookings can be shown on your account.
Booking. Checkout asks for your name, email, Indian mobile number, number of travellers, and travel date. We store those with the trip name, price, booking status, and payment reference. We do not store your card number, UPI PIN, or netbanking password. The payment page is run by our payment provider.
Trip enquiry. The enquiry form stores your name, email, optional phone, whether you agreed to WhatsApp, and the trip details you entered.
Contact form. Your name, email, and message are emailed to contact@driforia.com. They are not saved in the customer database.
Saved plans. Custom trip plans you save while signed in are stored against your account.
Private itinerary links. If we send you a proposal link, we record that it was opened, the device type, and a hashed network address. The hash is not your raw IP address.
Travel eSIM. If you buy an eSIM, we store your name, email, Indian mobile number, the plan name, the price, and the install details (QR code, ICCID, and activation code) so you can install it. We do not store your card number or UPI PIN.
Phone check. Phone verification is off unless we turn it on. If we ask you to verify a mobile number, we store that number and a short-lived code hash, not the code itself.
Why we use it
We use this data to take a booking, show it in your account, reply to an enquiry, send the confirmation details you asked for, and handle a refund or a payment dispute. We do not sell personal data. We do not run an advertising network or a newsletter.
Who else processes it
We share data only with the services that run the site:
- Clerk, for sign-in.
- Supabase, for the database.
- Cashfree, for UPI, card, netbanking, and wallet payments.
- eSIM Access, to create the eSIM after you pay. We send the plan code and our order reference. We do not send your card details.
- Resend, to deliver the contact-form email to us.
- Vercel, to host the site. Its analytics count page views and do not use a tracking cookie.
WhatsApp opens in a separate app when you choose to message us. A message you send there is handled by WhatsApp.
Cookies
The site sets a sign-in cookie so you stay logged in. That cookie is required for the account. We do not set advertising cookies, so there is no cookie banner asking you to accept ads.
How long we keep it
Enquiry details stay until you unsubscribe, delete your account, or ask us to erase them. Saved plans stay until you delete them or delete your account.
Paid booking, payment, and eSIM records stay after an account deletion. We need them to deliver the trip or the eSIM, issue a refund, and answer a payment dispute. We do not use those records to send promotional email once you have unsubscribed.
Your choices
Signed-in travellers can download a copy of their data, or delete the account, from My Bookings. Deletion removes the profile, saved plans, and enquiries tied to your verified email, and adds that email to the unsubscribe list. It does not erase a paid booking.
To stop follow-up and promotional email, use the unsubscribe page. You can also email contact@driforia.com to access, correct, or erase enquiry data. Booking messages about a trip you have paid for are not promotional.