Verfy Compliance & Data Protection (GDPR)

Our Commitment to Data Integrity

At Verfy, we understand that our platform sits at the intersection of your most sensitive data streams: Global Distribution Systems (GDS), payment processors, and accounting records. Our mission to “Secure Revenue” is inseparable from our commitment to protecting the personal and financial data of your customers and your organization.

 

How We Adhere to GDPR Standards

Lawful, Fair, and Transparent Processing: Verfy only processes data for the explicit purpose of identifying hotel booking mismatches and errors. Every automated check is performed under the legal basis of fulfilling a contract and protecting the legitimate financial interests of our clients.

 

Purpose Limitation: Your data is used exclusively to facilitate the Verfy Golden Path—from detecting Value at Risk (VaR) to providing the Single-Screen Resolution workspace. We do not sell or share data for secondary marketing purposes.

Data Minimization: Our AI Reverification Engine is designed to extract only the specific data points required to resolve errors—such as room types, dates, and fare plans. We do not store unnecessary PII (Personally Identifiable Information) beyond what is required for an auditable resolution.

 

Accuracy and Storage Limitation: Verfy identifies and corrects inconsistencies in real-time. While we maintain a historical “Audit Trail” for compliance purposes, we adhere to strict data retention policies to ensure information is not kept longer than necessary for its intended financial or legal purpose.

 

Integrity and Confidentiality (Security): We utilize industry-leading encryption for data at rest and in transit. Our Seamless Integration protocols are designed to prevent unauthorized access, ensuring that Sarah and James are the only ones with eyes on your sensitive financial workflows.

 

Your Rights as a Data Subject

In accordance with GDPR, users and organizations using Verfy have the right to:

  1. Access: Request a copy of the data being processed within the Verfy ecosystem.

  2. Rectification: Ensure that any booking data identified as an error is corrected across all integrated systems.

     
  3. Erasure: Request the deletion of data once its purpose for reconciliation and auditing has been fulfilled.

  4. Portability: Export your “Process Traceability” logs for internal reviews or third-party audits.

     

Contact Our Data Protection Office

If you have questions regarding our compliance framework or wish to exercise your rights under GDPR, please contact our security team at compliance@verfy.com.