Privacy Policy

International Development Foundation • EIN: 88-4120354

Last Updated

International Development Foundation ("we", "our", or "IDF") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our website and services.

This policy complies with the European Union's General Data Protection Regulation (GDPR), the California Consumer Privacy Act (CCPA), and other applicable data protection laws.

1. Information We Collect

We collect several types of information to provide and improve our services:

A. Personal Identification Information

  • Full name
  • Email address
  • Phone number
  • Country
  • Organization
  • Date of birth
  • Gender

B. Travel Information

  • Passport details
  • Visa status
  • Arrival/Departure dates
  • Flight info
  • Lodging preferences
  • Dietary needs

C. Financial Information

  • Transaction history
  • Amounts paid
  • Payment methods

We do not store full credit card numbers. Payments are processed by PCI-DSS compliant third parties.

D. Technical Data

  • IP Address
  • Browser type
  • OS
  • Cookies
  • Server logs

2. How We Collect Information

We collect information directly from you (forms), automatically (cookies), and through third parties (payment processors).

3. Legal Basis (GDPR)

  • Consent: For specific purposes.
  • Contract: To manage your registration.
  • Legal Obligation: For compliance (e.g., tax records).
  • Legitimate Interests: For security and service improvement.

4. How We Use Information

  • Event registration management
  • Payment processing
  • Visa support letters
  • Communication and support
  • Security and fraud prevention

5. Information Sharing

We never sell your data. We only share with:

A. Service Providers

  • Cloudflare (Hosting/Security)
  • Stripe (Payments)
  • Resend (Emails)

These providers are contractually bound to protect your data.

B. Legal Obligations

If required by law, court order, or to protect our rights.

6. International Transfers

Your data may be transferred to the United States. We use appropriate safeguards (Standard Contractual Clauses) to protect these transfers.

7. Security

We use encryption (HTTPS/TLS), strict access controls, and regular audits. However, no method is 100% secure.

8. Data Retention

Specific Periods:

  • Active Accounts: Duration + 3 years
  • Financial Data: 7 years (tax law)
  • Visa/Passport Docs: 5 years post-event

9. Your Rights

European Union (GDPR)

  • Access
  • Rectification
  • Erasure
  • Restriction
  • Portability
  • Objection

California (CCPA)

  • Right to Know
  • Right to Delete
  • Right to Non-Discrimination

Exercising Rights

Contact [email protected]. We respond within 30 days.

10. Contact Us