This policy applies to all services offered by True Africa Escape, including safari bookings, Kilimanjaro climbs, newsletter subscriptions, and any interaction with our website or communication channels. We never sell your data.
Personal Identifiers: Full name, date of birth, nationality, passport details (only for park entry and flights), email address, phone numbers, postal address, and emergency contacts. Payment Information: When you make a booking, our payment processor PesaPal collects credit/debit card details, bank transfer confirmations, PayPal email, and billing address. We do NOT store card numbers on our servers. Travel-Related Data: Dietary requirements, medical conditions relevant to climbing/safaris, accommodation preferences, rooming choices, and specific interests. Technical Data: IP address, browser type, device information, pages visited, time spent, and referring website via cookies. Communication Records: Emails, WhatsApp messages, WeChat conversations, and call logs with our safari consultants.
Booking & Service Delivery: To process reservations, secure accommodation and permits, arrange transfers, communicate itinerary updates, and provide the services you purchased. Payment Processing: To complete transactions via PesaPal, issue invoices, and manage refunds. Communication: To answer inquiries, send booking confirmations, pre-arrival guides, and emergency updates during your trip. Marketing: Only with your explicit consent we send newsletters, special offers, and travel inspiration. You can unsubscribe anytime. Legal Compliance: To fulfill Tanzanian tourism regulations, tax obligations, and cooperate with authorities when required by law. Improvement: To analyze website usage, enhance user experience, and develop new safari packages.
Essential Service Providers: We share necessary data with safari lodges, tented camps, Kilimanjaro porters, guides, drivers, internal flight operators, and park authorities (TANAPA, Ngorongoro Conservation Area) only to the extent required to deliver your itinerary. Payment Partners: PesaPal, PayPal, CRDB Bank – all PCI-DSS compliant, operating under strict security standards. Legal Obligations: When required by Tanzanian law, court order, or to protect the safety of our guests and staff. Third-Party Processors: Email service providers (Mailchimp for newsletters), CRM systems, and cloud storage, all bound by confidentiality agreements. We do NOT sell, rent, or trade your personal information to any third parties for marketing purposes.
Security Measures: We implement industry-standard 256-bit SSL encryption, firewalls, and secure servers. Access to personal data is restricted to trained staff on a need-to-know basis. All payment transactions are handled exclusively by PesaPal's Level 1 PCI-DSS certified platform. Despite our rigorous efforts, no online transmission is 100% secure; we encourage you to also protect your credentials.
Data Retention: We retain your personal information for as long as necessary to fulfill the purposes outlined in this policy. Booking-related data is kept for 7 years to comply with Tanzanian tax and tourism regulations. Newsletter subscribers' data is kept until you unsubscribe. After retention periods, data is anonymized or securely deleted.
International Data Transfers: As a Tanzanian company, your data is primarily processed in Tanzania. However, our payment processors (PesaPal, PayPal) and email platforms may transfer data to countries with different data protection laws. By using our services, you consent to these transfers. We ensure appropriate safeguards (EU Standard Contractual Clauses where applicable) are in place.
Your Rights Under GDPR & Similar Laws:
How we use cookies, analytics, and similar technologies to improve your experience and secure our site
These cookies are required for core website functionality, including secure login, session management, and payment processing via PesaPal. They cannot be disabled. Examples: session cookies, CSRF tokens, load balancing cookies. They are temporary and expire when you close your browser or after a short period.
We use Google Analytics (anonymized IPs) and similar tools to understand how visitors navigate our site, which pages are most popular, and where users drop off. This data helps us optimize content for safari planners. These cookies collect aggregated, non-identifiable information. You may opt-out via your browser settings or our cookie consent tool.
With your consent, we deploy Facebook Pixel, Instagram tracking, and Google Ads tags. These cookies enable us to show you relevant safari offers on social media and search engines after you've visited our website. They also limit the number of times you see an ad. You can withdraw consent at any time through our cookie settings or directly via your ad preferences.
Children Under 16: Our safaris and Kilimanjaro climbs are family-friendly, but we do not knowingly collect personal information from children under 16 without verifiable parental consent. If you are booking a trip for your child, you provide the necessary details (name, age, dietary needs). We treat this data with the same care as adult information. If we discover we have inadvertently collected data from a child without consent, we delete it immediately.
Sensitive Health Information: For Kilimanjaro climbs and certain safari activities, we may ask about pre-existing medical conditions, allergies, or physical limitations to ensure your safety. This data is collected with your explicit consent, used only for risk assessment and emergency response, and shared strictly with your lead guide and first-aid trained staff. You are not obliged to disclose, but it may affect your ability to participate safely.
Automated Decision-Making: We do not use profiling or automated decision-making (e.g., credit checks) that produce legal effects concerning you. All booking decisions and prices are manually reviewed by our safari consultants.
We regularly review and update our privacy practices to remain compliant with Tanzanian law and international standards
This Privacy Policy was last updated on January 1, 2024. Historical versions are available upon request. If we make material changes (e.g., new data uses, expanded sharing), we will notify you prominently on our website homepage and, where appropriate, via email for active bookings. We encourage you to review this page periodically.
True Africa Escape has appointed a dedicated Data Protection Officer to oversee compliance with this policy and global privacy regulations. You may reach our DPO at:
Email: info@trueafricaescape.com
Postal: Attention: DPO, True Africa Escape, Arusha, Tanzania
Phone/WhatsApp: +255 784 084 200 (please specify privacy request)
Response time: within 30 calendar days.
If you are dissatisfied with our privacy response, you have the right to lodge a complaint with the Tanzanian Personal Data Protection Commission (PDPC) or your local data protection authority (e.g., ICO for UK, CNIL for France). We kindly ask that you give us the opportunity to resolve your concern first by contacting our DPO.
We process your data under the following lawful bases: performance of a contract (booking), legitimate interests (improving services, fraud prevention), legal obligation (tax laws), and consent (marketing, cookies). Consent can be withdrawn anytime without affecting service delivery.
Absolutely not. We never sell, rent, or trade your personal data to any third party for marketing or advertising purposes. Your information is only shared with essential partners (lodges, guides, payment processors) strictly for delivering your safari experience or as required by law.
All payments are processed via PesaPal, a PCI-DSS Level 1 certified payment gateway—the highest security standard in the industry. Your card details are entered directly on PesaPal's secured pages; True Africa Escape never has access to your full card number. The connection uses 256-bit SSL encryption and 3D Secure authentication (Verified by Visa, Mastercard SecureCode).
Yes. Under the 'Right to Erasure', you can request deletion of your personal data. However, we are legally required to retain booking-related records (including names, dates, and payments) for 7 years due to Tanzanian tax and tourism regulations. After this period, data is anonymized or deleted. Marketing profile data can be deleted immediately upon request.
True Africa Escape is a signatory of the Tanzania Association of Tour Operators (TATO) Code of Conduct. We extend our responsible tourism ethos to data privacy: treating your personal information with the same respect and care we offer to Tanzania's wildlife and communities. We do not engage in dark patterns, hidden data collection, or misleading consent mechanisms. Our privacy controls are designed to be clear, fair, and user-friendly.
Your trust is our most valuable asset – we work tirelessly to preserve it.
Our Tanzania-based team is ready to assist with any privacy-related inquiries. Whether you want to access your data, update your information, opt out of marketing, or simply understand how we protect you – we're here to provide clear, jargon-free answers. True Africa Escape combines world-class safari expertise with transparent, ethical data handling.
Why choose True Africa Escape for your Tanzania safari?
• Transparent privacy practices – no legalese, just clarity
• Secure payment options through PesaPal with PCI-DSS compliance
• GDPR, UK GDPR, and Tanzanian data law aligned
• No selling of your personal information – ever
• 24/7 operational team with privacy training
• Licensed Tanzania Tourist Board operator with full insurance
• Ethical tourism extends to your digital footprint
Contact our Data Protection Officer today for confidential assistance.