Trust Centre
Download PDF1. Purpose
The See The World Travel Trust Centre brings together the rules and controls that govern personal information, client accounts, travel documents, payments, accessibility, electronic communications and incident response.
2. Evidence-based security
Security claims are limited to controls that are actually implemented or verified. See The World Travel does not claim independent certification, FIPS validation, PCI certification or post-quantum protection unless documentary evidence supports the claim.
3. Core controls
HTTPS-only production access; secure session cookies; CSRF and origin protection; role-based authorisation; prepared database statements; form rate limiting; encrypted restricted-document storage; access and audit logging; backup/recovery procedures; least-privilege administration; and change-controlled deployment.
4. Restricted travel documents
Passports, IDs and visas are treated as restricted information and are separated from the public website. Access is tied to authenticated accounts and authorised trips.
5. Payment boundary
Raw card numbers and CVV values are outside the See The World Travel application boundary. Hosted or tokenised payment services must be used when card payments are enabled.
6. Privacy and marketing
POPIA governs personal-information handling and electronic direct marketing. Consent and opt-out evidence should be retained so communication preferences can be honoured.
7. Accessibility
The website is engineered toward WCAG 2.2 Level AA, with ongoing testing required before any formal conformance claim.
8. Incident response
Suspected personal-information compromises trigger containment, evidence preservation, assessment, communication and regulatory notification processes as applicable.
9. Policy library
The Trust Centre includes the Privacy & POPIA Notice, Website Terms, PAIA Manual, Accessibility Statement, Cookie & Tracking Notice, Direct Marketing Notice, Booking Terms, Cancellation & Refund Policy, Complaints Procedure, Security & Trust Statement, Travel Document Vault Policy, Payment Security Policy, Data Retention Schedule and Incident Response Procedure.
Trust Centre