Globalne standardy ochrony danych dla podróżników VVIP
W PT. Komodo Explorer Indonesia (KEXI), Twoja prywatność jest fundamentem naszej infrastruktury usługowej. Ten protokół określa, jak chronimy Twoją tożsamość cyfrową we wszystkich jurysdykcjach.
Przestrzegamy najwyższych globalnych standardów. Niezależnie od tego, czy jesteś mieszkańcem Unii Europejskiej (GDPR), Kalifornii (CCPA), czy Indonezji (OJK/PDP), Twoje dane są traktowane z tą samą ochroną klasy wojskowej.
Używamy Microsoft Clarity, aby lepiej zrozumieć, jak korzystasz z naszej strony. Clarity przechwytuje, jak wchodzisz w interakcję z naszą stroną za pomocą odtwarzania sesji i map cieplnych. Informacje te pomagają nam poprawić Twoje doświadczenie użytkownika i zidentyfikować punkty tarcia technicznego. Dane są przetwarzane zgodnie z oświadczeniem o prywatności Microsoft.
Zbieramy tylko to, co niezbędne do bezproblemowej ekspedycji: weryfikacja tożsamości dla manifestu morskiego, wymagania dietetyczne/medyczne dla bezpieczeństwa na pokładzie i orkiestracja płatności dla bezpiecznych czarterów.
Twoje dane są szyfrowane w spoczynku i w tranzycie przy użyciu wiodących w branży protokołów. Nasza infrastruktura jest audytowana pod kątem standardów bezpieczeństwa 'Uniwersalna Hegemonia', zapewniając nieautoryzowany dostęp.
Zachowujesz absolutną suwerenność nad swoimi danymi. Masz prawo żądać dostępu, poprawienia lub całkowitego usunięcia ('Prawo do bycia zapomnianym') z naszych globalnych rejestrów w dowolnym momencie.
To request deletion of the personal data we hold about you — including data collected through WhatsApp — please follow the instructions at https://www.komodoexplorer.com/data-deletion.html. You may also contact us directly using the details in the Privacy Contact section below.
Za Państwa zgodą udostępniamy określone identyfikatory — adres e-mail i/lub numer telefonu, nieodwracalnie zahaszowane (SHA-256) — firmom Google i Meta wyłącznie w celu pomiaru skuteczności naszych reklam (pomiar konwersji), wraz z technicznymi identyfikatorami reklamowymi, takimi jak GCLID i fbclid. Odbywa się to wyłącznie na podstawie Państwa zgody, zgodnie z indonezyjską ustawą o ochronie danych osobowych (UU No. 27 of 2022) oraz mającymi zastosowanie przepisami RODO (GDPR). Zgodę mogą Państwo wycofać w dowolnym momencie za pośrednictwem banera prywatności; wycofanie zgody wywołuje skutki na przyszłość i nie wpływa na nasze usługi, ich dostępność ani ceny. W przypadku odmowy nie udostępniamy Państwa adresu e-mail ani numeru telefonu firmom Google ani Meta.
Nasze wewnętrzne systemy biznesowe łączą się z usługami Google API — Google Ads, Google Analytics, Google Search Console oraz Google Drive/Google Sheets — za pośrednictwem bezpiecznej autoryzacji OAuth udzielonej przez firmowe konta Google naszej spółki. Zakres danych, do których uzyskujemy dostęp: statystyki kampanii reklamowych, zagregowane raporty analityki internetowej, dane o skuteczności w wynikach wyszukiwania oraz arkusze operacyjne (takie jak harmonogramy rejsów jednostek pływających) należące do kont naszej firmy. Nie uzyskujemy dostępu do danych kont Google osób odwiedzających witrynę ani klientów, nie gromadzimy ich ani nie przechowujemy. Wykorzystanie danych: informacje te służą wyłącznie do prowadzenia, mierzenia i ulepszania naszych własnych usług i kampanii reklamowych i nie są wykorzystywane w żadnym innym celu. Przechowywanie i ochrona: dane uwierzytelniające OAuth są przechowywane po stronie serwera w konfiguracji o ograniczonym dostępie, przesyłane wyłącznie za pośrednictwem połączeń szyfrowanych (TLS) i nigdy nie są ujawniane w kodzie po stronie klienta; dostęp do nich mają wyłącznie upoważnieni administratorzy. Udostępnianie: nie sprzedajemy, nie wynajmujemy ani nie przekazujemy danych użytkowników Google podmiotom trzecim. Korzystanie przez nas z informacji otrzymanych z interfejsów Google API jest zgodne z Google API Services User Data Policy (polityką Google dotyczącą danych użytkowników usług API), w tym z jej wymogami Limited Use (ograniczonego użycia) (developers.google.com/terms/api-services-user-data-policy). Dostęp ten mogą Państwo w każdej chwili odwołać w ustawieniach uprawnień swojego konta Google (myaccount.google.com/permissions) lub kontaktując się z nami pod adresem info@komodoexplorer.com.
To operate our booking, communication, and payment services, we share limited personal data with the following third-party service providers, each for a specific purpose. Meta Platforms, Inc. operates the WhatsApp Business Cloud API channel you use when you message us on WhatsApp, and processes advertising identifiers (hashed email/phone, click identifiers) for ad conversion measurement described in Section 6. Cerebras Systems, Inc. (United States), an AI inference provider, may process WhatsApp message text to help our team draft or route a reply — see the Automated Processing and AI Assistance section below. Xendit (PT Xendit, Indonesia) and PayPal process your email address as part of creating and completing a payment for your booking. Brevo (formerly Sendinblue) sends transactional emails on our behalf, such as booking confirmations and account-related notices, using your name and email address. Google LLC, in addition to the Google API access described in Section 7, also maintains an off-site backup of our operational database — which may include your booking and message records — for disaster-recovery purposes; see the Backups section below. Cloudflare, Inc. provides content delivery, DNS, and security infrastructure in front of our website and WhatsApp integration, handling encrypted network traffic without independently storing your personal data for its own purposes. We do not sell your personal data to any third party. We enter into these relationships on the basis of performing our contract with you, our legitimate interest in operating and securing our services, or your consent for advertising measurement as described in Section 6 — consistent with Indonesia's Personal Data Protection Law (UU No. 27 of 2022) and, for EEA visitors, the GDPR. Some of these providers are located outside Indonesia, including in the United States. Where we transfer personal data internationally, we rely on each service provider's own data-protection commitments and contractual safeguards.
When you contact us through WhatsApp, we receive and store your phone number, profile name, and the content of your messages through the WhatsApp Business Cloud API, operated by Meta Platforms, Inc. We use this data to respond to your inquiry, manage your booking, and provide customer service; your conversation may be mirrored into our internal customer-relationship system so our team can see conversation history when assisting you. We do not currently apply a fixed maximum retention period to WhatsApp conversation history — it is retained as part of our customer-service and booking records unless you ask us to delete it. You can ask us to delete the data we hold about your WhatsApp conversations at any time (see Data Deletion Requests above); doing so does not delete your own copy of the conversation on your device, or Meta's own copy, which is governed by Meta's policies and managed separately through WhatsApp.
Some of your messages to us may be processed by an AI inference provider, Cerebras Systems, Inc. (United States), to help our team understand your request and draft or route a reply more quickly — for example, when a message does not match our standard automated responses, or to prepare a first-touch welcome message. This automated processing helps prepare a response; it does not make any decision that produces legal effects or similarly significantly affects you, such as accepting or rejecting a booking or setting a price, without a human being involved. Automated drafts are intended to support — not replace — our customer-service team, and a human is involved in your booking and in any decision that affects your reservation or its price.
We maintain regular backups of our operational database — which can include booking details and WhatsApp conversation records — for disaster-recovery purposes. These backups are stored in an access-restricted Google Drive folder used by our company, and we keep a limited number of recent backups, automatically removing older ones.
If you have questions about this policy or how we handle your personal data, or wish to exercise any of the rights described above, please contact PT Komodo Explorer Indonesia at info@komodoexplorer.com, or by mail at Jl. Kerta Dalem Sari IV No.2, Desa/Kelurahan Sidakarya, Kec. Denpasar Selatan, Kota Denpasar, Provinsi Bali, Kode Pos: 80224 (PT Komodo Explorer Indonesia, NIB 1805260128363).
PT. Komodo Explorer Indonesia © 2026. Maritime Excellence & Digital Sovereignty.