Last updated: 6 September 2026
TravelCloud is committed to protecting the privacy of everyone who uses our website and books our services. We collect only the data that is genuinely necessary to provide a private transfer or tour and to meet our legal obligations, and we handle that data with care.
For the purposes of the Montenegrin Personal Data Protection Act (Zakon o zaštiti podataka o ličnosti), the data controller responsible for your personal data is:
Društvo sa ograničenom odgovornošću „TRAVELCLOUD” d.o.o. Kotor
Bigova BB, 85330 Kotor, Montenegro
Tax ID (PIB): 04402502 · CRPS reg. no.: 5-0137249/001
E-mail: [email protected] · Phone / WhatsApp: +382 69 427 909
Data we collect
When you make a booking or contact us through the forms on this website, we collect only the information needed to prepare and perform your journey:
- Your name;
- Your e-mail address;
- Your phone or WhatsApp number;
- Itinerary details — travel dates and times, pickup and drop-off locations, flight number (for airport transfers) and the number of passengers;
- Child-seat information, including the ages of children travelling, so we can provide suitable seats;
- Any optional notes or special requests you choose to add.
We do not ask for or store more than this. If you pay online by card, your card details are entered directly with our payment service provider and are never seen or stored by us — see “Card data security” below.
Why we use your data
We process the information above only for the following purposes:
- To arrange and perform the transfer or tour you have booked;
- To communicate with you about your booking, including confirmations, changes and any questions before or during the service;
- To meet our legal, accounting and tax obligations as a company registered in Montenegro;
- To understand how visitors find and use our website and whether our advertising leads to bookings — in statistical form, as described under “Cookies, analytics and advertising” below.
Marketing and third parties
You may at any time choose not to take part in marketing campaigns and choose not to allow the disclosure of your personal data for use by third parties. We will respect that choice.
We do not sell your personal data. We share it only where this is necessary to perform the service you booked — for example, with the bank and with Monri Payments (our payment service provider) when you pay by card, and with our e-mail delivery provider so that we can send you booking confirmations — or where we are required to do so by law or by a competent authority. Statistical and advertising-measurement data, which never includes your name or contact details, is shared with Google and Microsoft as described under “Cookies, analytics and advertising” below.
Data protection and confidentiality
We are committed to provide service of protection of our customer’s personal data in a way that we collect only essential basic information about our buyers that are necessary for fulfilling our obligations. We also inform our customers about the way we collect information and regularly give customers an option about how their information will be used, including the possibility to decide whether their name should be included or omitted from the lists used for marketing campaigns.
All user information is strictly guarded and are available only to the employees who need that information for completing the job. All our employees and business partners are responsible to follow the principles of confidentiality protection.
Your rights
In accordance with the Personal Data Protection Act, you have the right to:
- Access the personal data we hold about you;
- Have inaccurate data corrected;
- Request erasure of your data, within the limits set by law (for example, we must retain certain booking and accounting records for statutory periods);
- Withdraw a consent you have given, where our processing is based on that consent.
To exercise any of these rights, contact us at [email protected] or +382 69 427 909. If you are in the European Economic Area or the United Kingdom, the GDPR / UK GDPR also applies to our processing of your data, and you have the right to lodge a complaint with the data protection authority in your country.
Card data security
When you pay online by card, your card details travel to the payment processor over an encrypted connection secured with the SSL/TLS protocol, under the PCI DSS security standards that govern the handling of card data.
As the merchant, we never see your full card number or keep it on our systems — the entire processing of card data is carried out by our authorised payment service provider on its own side.
Read more on our Payment Security page.
Cookies, analytics and advertising
Our website uses essential (technical) cookies that are needed for the site to function, plus a small first-party record of your cookie choice (the “tc_region” cookie and the “tc-consent” browser storage entry). These are always active and are not used to track you.
With your consent where the law requires it, we also use the following tools. None of them receives your name, e-mail address or phone number from us:
- Google Analytics 4 (Google Ireland Ltd) — statistics on visits, pages viewed, contact clicks and completed bookings (booking reference and amount only). Cookies: _ga, _ga_* (up to 2 years).
- Microsoft Clarity (Microsoft Ireland Operations Ltd) — session replays and heatmaps of clicks, scrolling and mouse movement, with form fields masked. Cookies: _clck, _clsk (up to 1 year).
- Google Ads (Google Ireland Ltd) — measures whether visitors who clicked one of our advertisements went on to book or contact us, and may show our advertisements to previous visitors of this website on Google and partner sites (remarketing). Cookies: _gcl_au, _gcl_aw and Google’s own advertising cookies (up to 90 days). Google may also use this data for its own purposes under its privacy policy.
If you visit from the European Economic Area, the United Kingdom or Switzerland, analytics and advertising cookies are set only after you click “Accept” in the cookie bar. If you click “Decline”, only essential cookies are used: Google receives anonymous, cookieless signals for aggregate modelling at most, and Clarity does not run. Elsewhere these tools are active by default. Your choice is stored for 12 months and you can change it at any time through the “Cookie preferences” link in the footer or the button below.
Google and Microsoft may process this data on servers outside Montenegro, including in the United States, under the safeguards in their data-processing terms. You can also control or delete cookies through your browser settings, opt out of personalised Google advertising at adssettings.google.com, and block Google Analytics with Google’s browser add-on. Blocking essential cookies may affect how the website works.