Last updated: 13 July 2026
1. Data controller
The controller of your personal data is Mega Commercial Enterprises Limited, registered in Ireland, company number 726999, 77 Camden Street Lower, Dublin, D02 XE80, Ireland. Email: [email protected]. Phone: +353 (87) 148 3870.
StylishJetset is a digital brand of Mega Commercial Enterprises Limited.
2. What data we collect
- Enquiry and contact data: name, email address, phone number and the details you share about your travel plans (destinations, dates, group, budget, preferences).
- Booking coordination data: where you engage our services, traveller details reasonably required to coordinate arrangements (e.g. names as per passport, dates of birth, dietary or accessibility requirements you choose to share).
- Technical data: IP address, browser type and usage data collected through cookies and similar technologies (see our Cookie Policy).
- Correspondence: emails, messages and call notes relating to your enquiries and journeys.
3. Why we process it (legal bases)
- To respond to enquiries and provide our services — performance of a contract or steps prior to entering one (Art. 6(1)(b) GDPR).
- To coordinate arrangements with suppliers — performance of a contract; where special category data is involved (e.g. health-related requirements), your explicit consent (Art. 9(2)(a)).
- To operate and secure the Website — our legitimate interests (Art. 6(1)(f)).
- To send marketing communications — only with your consent (Art. 6(1)(a)), which you may withdraw at any time.
- To meet legal obligations — e.g. accounting and tax records (Art. 6(1)(c)).
4. Who we share it with
Only as needed to plan and deliver your travel: hotels, villas, charter operators, guides, licensed travel partners and other suppliers involved in your journey; our IT, hosting and email providers; and professional advisers or authorities where legally required. We never sell your personal data.
5. International transfers
Because travel is global, delivering your journey may require transferring data to suppliers outside the European Economic Area. Where we control such transfers, we use appropriate safeguards (such as EU Standard Contractual Clauses) or rely on transfers necessary for the performance of your contract (Art. 49(1)(b) GDPR).
6. How long we keep it
- Enquiries that do not become engagements: up to 24 months, then deleted.
- Client and journey records: for the duration of the relationship and up to 7 years thereafter, to meet legal and accounting obligations.
- Marketing consents: until you withdraw consent.
7. Your rights
Under the GDPR you have the right to access, rectify and erase your personal data; to restrict or object to processing; to data portability; and to withdraw consent at any time without affecting prior processing. To exercise any right, email [email protected].
You also have the right to lodge a complaint with the Irish Data Protection Commission (dataprotection.ie) or your local supervisory authority.
8. Security
We apply appropriate technical and organisational measures to protect your data, including encrypted connections (HTTPS), access controls and reputable hosting providers. No method of transmission is 100% secure, but we work to protect your information at every step.
9. Children
Our services are directed at adults. We process children’s data only as traveller details supplied by a parent or guardian for the purpose of coordinating family travel.
10. Changes to this policy
We may update this policy from time to time. The current version will always be published on this page with its effective date.