Privacy Policy

Last updated: 05 March 2026

This Privacy Policy explains how E-TOURS ONLINE BOOKING LIMITED ("we", "us") collects and processes personal data when you use www.etours.ie, create an account, make a booking or purchase, contact us, or interact with our communications and digital platforms. It applies to the website and any pages or services that link to this Policy.

1) Who we are & contact details

Data Controller: E-TOURS ONLINE BOOKING LIMITED
Registered address: 93 MARLBOROUGH STREET, DUBLIN, D01 X2W6, IRELAND
Company registration number: 783730
Contact email for privacy matters: info@etours.ie
Jurisdiction: Ireland (EU GDPR applies).

2) At a glance (summary)

  • What we collect: contact details, account information, booking and payment details, communications, and technical/usage data from your device.
  • Why: to provide and improve our services, manage bookings and payments, communicate with you, personalise content (where permitted), ensure security, and comply with legal obligations.
  • Legal bases: contract, legal obligation, legitimate interests, and consent where required (e.g., non-essential cookies/marketing).
  • Sharing: with trusted service providers (e.g., hosting, payments, communications, analytics where consented), partners involved in fulfilment, authorities where required by law.
  • Your rights: access, rectification, erasure, restriction, objection, portability, and to withdraw consent; you may complain to the Data Protection Commission (DPC) in Ireland.

3) What data we collect

We collect the following categories of personal data, depending on your interaction with us:

  • Identity and contact: name, email address, phone number, postal address, country/region.
  • Account details: username, password, preferences, saved items.
  • Booking and payment: traveller and booking information, billing address, payment method (processed by our payment provider), transaction history.
  • Communications: enquiries, customer service messages, feedback, survey responses, reviews.
  • Technical and usage: IP address, device identifiers, browser type, pages viewed, clicks, session duration, referrer URLs, and approximate location derived from your IP address.
  • Cookies and similar technologies: consent choices, cookie IDs, and signals used for analytics or advertising where permitted by law and your preferences.

Special category data: If you choose to provide information about health or accessibility needs in connection with a booking, we will only process it when necessary and on the basis of your explicit consent or another applicable justification under the GDPR.

4) How and why we use your data (purposes & lawful bases)

We only process personal data where we have a lawful basis. The table below links our purposes to the relevant lawful bases under Article 6 GDPR.

Purpose Examples Lawful basis
Provide the website and core functionality Operate and secure our site/app; remember settings; use essential cookies; diagnose and fix issues Legitimate interests in running a secure, reliable service; contract when providing an account or requested service; legal obligation for certain security/fraud logs
Manage accounts, orders and bookings Create and manage your account; process orders/bookings; send confirmations and updates; provide customer service Contract; legal obligation for financial/tax records
Payments and fraud prevention Process payments via payment providers; detect and prevent fraudulent or abusive activity Contract; legitimate interests in preventing fraud; legal obligation where applicable
Customer support and service communications Respond to enquiries and support requests; send critical service messages Contract or legitimate interests in service quality and safety
Improve and secure our services Analytics, metrics, quality assurance, load testing, and security monitoring Legitimate interests in improving performance and security.
Marketing communications Send newsletters and offers; tailor content to your interests (subject to your choices). Consent where required under e‑privacy rules; legitimate interests for similar products/services to existing customers with an opt‑out
Analytics and advertising cookies Measure audience and campaign performance; personalise ads where applicable. Consent prior to setting non‑essential cookies or similar technologies.

5) Cookies and similar technologies

We use cookies and similar technologies (such as pixels and local storage) to operate our website and, with your consent, to measure usage and personalise content or advertising. Non-essential cookies are only set after you provide consent through our cookie banner or settings. You can change or withdraw your choices at any time via the 'Cookie Settings' link in our footer.
We provide a detailed Cookie List within the banner/settings, describing each cookie's purpose, provider and lifespan.

6) Sharing your data

We share personal data with trusted service providers who act on our behalf (for example: hosting and cloud infrastructure, payment processing, email/SMS delivery, analytics where consented, customer service, and security/fraud providers). We also share data with partners involved in fulfilling your booking or order, and with authorities or advisers where required by law. We require our processors to implement appropriate security measures and to process personal data only according to our instructions.

7) International data transfers

If we transfer personal data outside the European Economic Area (EEA), we will do so in compliance with Chapter V of the GDPR using appropriate safeguards such as adequacy decisions or Standard Contractual Clauses, together with supplementary measures where necessary. Details of relevant safeguards are available on request.

8) How long we keep your data

We retain personal data only for as long as necessary for the purposes described above, including to comply with legal, accounting or reporting requirements. We apply documented retention schedules and delete or anonymise data when it is no longer needed. If you hold an account, we will retain associated data while your account is active and for a reasonable period thereafter, unless a longer period is required by law.

9) Your rights under the GDPR

You have the right to request access to your personal data, rectification, erasure, restriction of processing, data portability, and to object to processing based on our legitimate interests. Where we rely on consent, you may withdraw it at any time without affecting the lawfulness of processing before withdrawal. To exercise your rights, contact info@etours.ie. You also have the right to lodge a complaint with the Data Protection Commission (DPC) in Ireland. We encourage you to contact us first so we can address your concerns promptly.

10) Children

Our services are not directed to children under the age of 16. If we discover we have collected personal data from a child without appropriate consent, we will delete it promptly.

11) Security

We implement technical and organisational measures appropriate to the risks, including access controls, encryption in transit and at rest where appropriate, monitoring and regular testing. No system is completely secure; we maintain incident response processes and will notify authorities and affected individuals where required by law.

12) Changes to this Policy

We may update this Policy to reflect changes to our processing or legal requirements. We will post the updated version with a new 'Last updated' date and, where appropriate, notify you via email or an in-product notice.

13) Contact us

E-TOURS ONLINE BOOKING LIMITED
93 MARLBOROUGH STREET, DUBLIN, D01 X2W6, IRELAND
Email: info@etours.ie
Please write "Privacy Request" in the subject line of your email

14) Glossary (helpful terms)

  • GDPR: Regulation (EU) 2016/679, the General Data Protection Regulation.
  • Controller/Processor: the entity deciding purposes and means of processing (controller) and entities processing on its behalf (processors).
  • Legitimate interests: our interests in running and improving our services balanced against your rights and freedoms.
  • Cookies and similar technologies: small files or code used to store or access information on your device, including for essential functionality, analytics and advertising (subject to your choices).

15) Appendix: Cookie List (example)

Your cookie banner/consent management platform should display a current list of cookies/technologies. Below is an example structure-replace with your live inventory:

  • Strictly necessary: session_id (first-party) - maintains session state; expires end of session.
  • Analytics (requires consent): _ga / _ga_* (Google Analytics) - usage statistics; lifespan up to 24 months.
  • Advertising (requires consent): _fbp (Meta) - ad personalisation and measurement; lifespan up to 3 months.