Privacy Policy — EntryPolicies.com

Last checked: September 03, 2026 · Next review: August 2026 · Sources: IATA Travel Centre + Official government websites

Last Updated: August 29, 2026

1. Data Controller

EntryPolicies is a static informational website. The data controller responsible for this site can be reached at:

We do not have a Data Protection Officer as we do not engage in large-scale processing of personal data.

2. Information We Collect

We protect traveler privacy. EntryPolicies does not collect or log passport numbers, travel plans, or personal data. The 'Can I Go?' homepage widget operates entirely client-side via JavaScript — your passport selection and travel destination preferences never leave your browser.

EntryPolicies is a fully static website. There are no user accounts, no contact forms that store data, no comment systems, and no server-side data collection mechanisms. All interactive features run entirely in your browser.

3. Third-Party Services

Advertising

EntryPolicies does not currently serve third-party display advertising. If we introduce an advertising partner in the future, we will update this policy and obtain your consent before any advertising cookies are set.

Affiliate Marketing

We participate in affiliate marketing programs (e.g., SafetyWing). When you click on an affiliate link, a cookie may be placed in your browser to track any resulting purchases for commission attribution.

Legal basis: EntryPolicies' own code does not currently set any affiliate tracking cookies. If advertising or affiliate tracking is introduced in the future, consent will be obtained via the advertising network's consent management platform.

Please refer to the respective partner's privacy policy for details on their data handling.

Hosting & Logs

Our hosting provider (Cloudflare) may collect anonymous server metrics for performance and security purposes. These are standard technical logs and are not accessible to or processed by EntryPolicies.

4. Legal Basis for Processing

Since we do not collect personal data directly, no legal basis for processing is required on our part. For third-party services:

  • Advertising cookies (if introduced in the future): Consent (GDPR Article 6(1)(a))
  • Affiliate tracking cookies (if introduced in the future): Consent (GDPR Article 6(1)(a)) via the advertising network's consent management platform
  • Server logs: Legitimate interest (GDPR Article 6(1)(f)) — network security and stability

5. Recipients of Personal Data

We do not share any personal data with third parties. The only entities that may process data related to your visit are:

  • Affiliate partners (e.g., SafetyWing)
  • Cloudflare Inc. (server logs)

6. International Data Transfers

Cloudflare Inc. processes data in the United States. Data transfers are governed by the EU-U.S. Data Privacy Framework and applicable Standard Contractual Clauses. Affiliate partners may process data in their respective jurisdictions — please consult their privacy policies for transfer details.

7. Data Retention

We do not retain any personal data. Third-party retention periods are determined by their respective policies:

  • Affiliate cookies: typically 30–90 days depending on the partner
  • Server logs: retained by Cloudflare for up to 30 days for security purposes

Affiliate Partners & Third-Party Services

We partner with travel service providers through affiliate programs. When you click an affiliate link and make a purchase, we may earn a commission at no extra cost to you. Our affiliate partners include:

  • SafetyWing (travel medical insurance) — When you visit their site, SafetyWing may collect personal data per their privacy policy. Their services are subject to Norwegian data protection law.
  • YESIM (eSIM services) — YESIM may collect device and payment information when you visit their site.
  • Compensair/AirHelp (flight delay compensation) — AirHelp may collect flight and personal details when you use their service.
  • Travelpayouts (travel booking affiliate network) — Travelpayouts is operated by JetRadar Ltd. and may set tracking cookies. Data may be transferred to servers in Cyprus. For details, see Travelpayouts Privacy Policy.

Affiliate links on this site are marked with rel="sponsored" as required by search engine guidelines. Our editorial content is independent of affiliate relationships — we recommend services based on relevance to travelers, not commission rates.

8. Your Rights Under GDPR

As a data subject within the European Economic Area, you have the following rights:

  • Right of access (Article 15): Request confirmation of whether personal data concerning you is being processed
  • Right to rectification (Article 16): Request correction of inaccurate personal data
  • Right to erasure (Article 17): Request deletion of your personal data
  • Right to restriction (Article 18): Request restriction of processing
  • Right to data portability (Article 20): Request your data in a structured, machine-readable format
  • Right to object (Article 21): Object to processing based on legitimate interest

Since we do not collect personal data, there is typically no data to access, rectify, erase, or port.

9. Right to Withdraw Consent

If advertising or affiliate tracking cookies are introduced in the future, you may withdraw your consent at any time by clearing cookies in your browser settings or using the advertising network's consent management controls. Withdrawal of consent does not affect the lawfulness of processing based on consent before its withdrawal.

10. Right to Lodge a Complaint

If you believe that your personal data has been processed in violation of GDPR, you have the right to lodge a complaint with a supervisory authority in the EU Member State where you reside, work, or where the alleged infringement occurred.

11. Provision of Personal Data

Providing personal data is not a statutory or contractual requirement. You are not obliged to provide any personal data to use this website. EntryPolicies' own code does not process personal data; any processing would occur only through third-party services we may introduce in the future.

12. Automated Decision-Making and Profiling

We do not engage in automated decision-making, profiling, or any form of algorithmic assessment of individual visitors.

13. Your California Privacy Rights (CCPA)

If you are a resident of California, California Civil Code Section 1798.100 et seq. (the California Consumer Privacy Act or CCPA) provides you with additional rights regarding your personal information.

EntryPolicies does not sell your personal information in the traditional sense — we do not exchange personal data for money. We do not currently share personal information for cross-context behavioral advertising. If we introduce advertising in the future, California residents will have the right to opt out of any such data sharing.

California residents have the following rights:

  • Right to Know: You may request, up to twice in a 12-month period, that we disclose the categories and specific pieces of personal information we have collected about you, the sources from which it was collected, the business purpose for collecting it, and the categories of third parties with whom it was shared.
  • Right to Delete: You may request that we delete any personal information we have collected from you, subject to certain exceptions.
  • Right to Opt Out of Sale/Sharing: You have the right to opt out of the sale or sharing of your personal information for cross-context behavioral advertising. You can exercise this right by:
    • Using the opt-out links provided in the Cookies section below
    • Using the advertising network's consent management controls (if advertising is introduced in the future)
  • Right to Non-Discrimination: We will not discriminate against you for exercising any of your CCPA rights.

To exercise your CCPA rights, please contact us at [email protected]. We will verify your request using the information you provide. We may need to request additional information from you to verify your identity before processing your request.

We do not collect or sell the personal information of consumers we actually know are under 16 years of age.

14. Children's Privacy (COPPA)

EntryPolicies is not directed at children under the age of 13. We do not knowingly collect, use, or disclose personal information from children under 13. If we become aware that a child under 13 has provided us with personal information, we will take steps to delete such information promptly. If you believe that a child under 13 has provided us with personal information, please contact us at [email protected] so that we can take appropriate action.

Our website does not contain content specifically designed to attract children, and we do not use any third-party services that knowingly collect data from children under 13.

15. Cookies

EntryPolicies' own code does not set any cookies. Theme preference is stored locally in your browser via localStorage and is never transmitted to our servers. No consent banner is used, and no tracking cookies are set by our code.

If we introduce advertising (e.g., Mediavine) in the future, the advertising network may use cookies and its own consent management platform to obtain your consent where required. We will update this policy at that time.

To manage cookies set by third-party services, you can:

Changes to This Policy

We may update this privacy policy from time to time. We will indicate the date of the most recent revision at the top of this page. Continued use of the site after changes constitutes acceptance of the updated policy.

Contact

For privacy-related inquiries: [email protected]