Updated: 25 July 2026.
Operator
PT GLOBAL PAYMENT GATEWAY, NIB 2412240053279, NPWP 0287956148903000, handles personal data for balitrippoint.com. Contact: globalpaymentgateway2024@gmail.com; corporate phone +62 821-4723-5167.
Data categories
We may receive identity and contact details, WhatsApp, email and phone messages, travel dates, guest count, pickup area, service preferences, service requirements, payment reference, and cancellation or support records. Full bank-card details are processed by the external payment provider and are not stored by this site.
Review data
If a customer submits a post-trip review, we may process the chosen public display name, rating and original review text. A one-time invitation is used to verify the related trip or experience. Reviews may be moderated before publication and, if published, appear with the chosen display name. Privacy or removal requests can be sent to globalpaymentgateway2024@gmail.com.
Purposes and legal bases
Data is used to answer requests, prepare and perform a booking, communicate confirmed terms, pass necessary details to the selected service operator, issue and reconcile payment, provide support, prevent fraud, meet accounting or legal duties, and handle cancellation or refund. Processing may rely on steps requested before a contract, performance of the booking, consent where required, legitimate operational interests and legal obligations.
Sources and recipients
Data may come from site forms, WhatsApp/Meta, email, phone and payment providers. Necessary data may be shared with selected service operators, payment providers, communications and hosting providers, professional advisers and authorities where legally required.
Cross-border processing and technical data
Bookings and communications may involve Indonesia, the customer's country and external providers, so cross-border processing may occur where necessary. The site and hosting infrastructure may process essential logs, device/browser information, IP address and basic cookies or similar storage needed for operation and security. We do not claim certifications or data-localization compliance that has not been independently verified.
Retention and security
Data is kept only as long as reasonably necessary for booking, support, accounting, dispute prevention and legal duties, then deleted or anonymised where appropriate. We use proportionate access controls, limited staff access, secure transport and provider controls.
Rights and withdrawal
Subject to applicable law, a person may request access, correction, deletion, restriction or objection, and may withdraw consent for future processing. Contact globalpaymentgateway2024@gmail.com. Some records may be retained where law, accounting or dispute handling requires it.