Privacy policy

Last Updated: 6 October 2026

At Fethiye Trips, operated by 4 S Bilgi İşlem Turizm Seyahat Reklam İthalat Ve İhracat Ticaret Limited Şirketi (SunMed Travel Agency), we respect your privacy and are committed to protecting your personal data.

This Privacy Policy explains what information we collect, why we collect it, how we use and protect it, when it may be shared, and what rights you have under applicable data protection laws, including the Turkish Law No. 6698 on the Protection of Personal Data (KVKK) and, where applicable, the General Data Protection Regulation (GDPR).


1. Who We Are

The data controller responsible for personal data processed through Fethiye Trips is:

4 S Bilgi İşlem Turizm Seyahat Reklam İthalat Ve İhracat Ticaret Limited Şirketi

Trading as:

SunMed Travel Agency

TÜRSAB Licence No.: 12195

Address: Siteler Mah. 206 Sok. No. 2 K. 1 D. 111 48700 Marmaris / Muğla / Türkiye

Website: fethiyetrips.com

Email: info@marmarisexcursions.com

Telephone / WhatsApp / Telegram: +90 553 259 2481

Landline: +90 252 417 11 28 / +90 252 417 11 69

Fax: +90 252 417 07 14

In this Privacy Policy, "we", "us" and "our" refer to Fethiye Trips and the above-mentioned company.


2. Information We Collect

Depending on the service you use, we may collect information necessary to process your booking and provide the requested service.

This may include:

Booking Information

  • First and last name
  • Email address
  • Telephone or mobile number
  • Number of participants
  • Booking date
  • Tour or activity date
  • Booking reference
  • Hotel or accommodation name
  • Room number where relevant
  • Pickup and drop-off information
  • Customer notes
  • Special requests
  • Other information necessary to provide the booked service

Travel and Service Information

Depending on the excursion or activity, we may also process information such as:

  • Pickup location
  • Destination
  • Travel or activity details
  • Passenger information
  • Accessibility requirements
  • Mobility requirements
  • Dietary requirements
  • Other information voluntarily provided to us for the purpose of providing the service

You should only provide information that is relevant and necessary for your booking or requested service.


3. Technical Information

When you visit our website, certain technical information may be collected automatically.

This may include:

  • IP address
  • Browser type and version
  • Operating system
  • Device type
  • Language preferences
  • Date and time of access
  • Pages visited
  • Referring website
  • Website interactions
  • Error and diagnostic information
  • Security and fraud-prevention information

This information may be used to maintain website security, improve performance, analyse website usage and prevent abuse.


4. How We Use Your Information

We use personal data only for legitimate business and service purposes, including:

Booking and Service Delivery

We use your information to:

  • process and manage your reservation;
  • issue booking confirmations and vouchers;
  • arrange pickup and transportation;
  • provide your excursion or activity;
  • coordinate with tour operators, guides, drivers and other service providers;
  • respond to your requests; and
  • provide customer support.

Communication

We may contact you regarding:

  • your booking;
  • payment;
  • pickup arrangements;
  • changes to your tour;
  • cancellation or refund requests;
  • operational information; and
  • customer service matters.

Payment and Financial Records

We may process transaction information to:

  • process payments;
  • confirm payment status;
  • process refunds;
  • prevent payment fraud;
  • reconcile transactions; and
  • comply with accounting and financial obligations.

Legal and Regulatory Requirements

We may process and retain information where necessary to comply with:

  • tax and accounting requirements;
  • tourism regulations;
  • consumer protection legislation;
  • legal obligations;
  • court orders;
  • requests from competent public authorities; and
  • other applicable laws.

Security and Fraud Prevention

We may process information to detect and prevent:

  • fraudulent transactions;
  • fake or abusive bookings;
  • chargeback abuse;
  • unauthorised access;
  • payment fraud; and
  • other unlawful or harmful activity.

Website Improvement

We may use technical and usage information to improve:

  • website functionality;
  • booking processes;
  • website performance;
  • security; and
  • customer experience.

5. Legal Basis for Processing

Depending on the circumstances, we may process your personal data on the following legal grounds:

  • to perform a contract or take steps requested before entering into a contract;
  • to comply with a legal obligation;
  • where necessary for our legitimate business interests;
  • with your consent where consent is legally required;
  • to establish, exercise or defend legal claims; and
  • where otherwise permitted under applicable law.

For processing under Turkish law, we rely on the applicable conditions under Law No. 6698 (KVKK).

Where the GDPR applies, we rely on the applicable legal bases under the GDPR.


6. Payment Information

Payments made through our website may be processed through our acquiring bank and/or payment service provider using secure payment infrastructure, including 3D Secure where applicable.

Your complete payment card number, CVV/CVC security code and full card authentication information are not stored by Fethiye Trips.

Payment information may be processed directly by the relevant bank or payment service provider.

We may retain limited transaction information such as:

  • transaction amount;
  • currency;
  • payment status;
  • transaction/reference number;
  • payment date;
  • refund information; and
  • payment provider information.

This information may be retained where necessary for accounting, fraud prevention, customer support and legal obligations.


7. Who We Share Your Information With

We do not sell your personal data.

We may share information where necessary to provide the service you have requested or where required by law.

Depending on your booking, this may include:

Tour and Activity Providers

Relevant information may be shared with:

  • tour operators;
  • boat operators;
  • activity providers;
  • guides;
  • drivers;
  • transfer companies; and
  • other suppliers involved in delivering your booking.

Only information reasonably necessary to provide the relevant service should be shared.

Banks and Payment Providers

Information may be shared with:

  • acquiring banks;
  • payment service providers;
  • card networks;
  • financial institutions; and
  • fraud-prevention providers.

Technology and Service Providers

We may use trusted providers for:

  • website hosting;
  • server infrastructure;
  • email delivery;
  • SMS or messaging services;
  • website analytics;
  • security;
  • fraud prevention;
  • backups;
  • technical maintenance; and
  • customer support.

Professional Advisers

Where necessary, information may be shared with:

  • accountants;
  • auditors;
  • lawyers;
  • insurers; and
  • professional advisers.

Public Authorities

We may disclose information where required or legally authorised by:

  • courts;
  • tax authorities;
  • law-enforcement authorities;
  • regulatory authorities;
  • tourism authorities; or
  • other competent public institutions.

8. International Data Transfers

Some of the technology, payment, communication, analytics or other service providers we use may process personal data outside Türkiye and/or outside the European Economic Area.

Where personal data is transferred internationally, we take appropriate measures required by applicable data protection legislation.

Depending on the circumstances, this may include appropriate contractual safeguards, recognised transfer mechanisms, adequacy decisions or other legally permitted measures.


9. Cookies

Fethiye Trips uses cookies and similar technologies.

Cookies may be used for the following purposes:

Essential Cookies

These cookies are necessary for the website to function correctly.

They may be used for:

  • booking sessions;
  • shopping cart functionality;
  • security;
  • language preferences;
  • currency preferences;
  • authentication; and
  • fraud prevention.

Analytics Cookies

Where enabled, analytics tools may help us understand how visitors use our website and how we can improve its performance and usability.

Marketing Cookies

Where applicable, marketing technologies may be used to measure advertising campaigns, understand conversions or provide relevant advertising.

Where legally required, non-essential cookies will only be activated after the appropriate consent has been obtained.

You can manage or disable cookies through your browser settings and, where available, through our website's cookie preferences.


10. Marketing Communications

Where permitted by applicable law, we may send you information about:

  • special offers;
  • tours and excursions;
  • seasonal promotions;
  • travel-related services; and
  • other services that may be relevant to you.

You may unsubscribe from marketing communications at any time.

Unsubscribing from marketing communications will not normally stop essential communications relating to an existing booking.


11. WhatsApp and Electronic Communications

Where you contact us through WhatsApp, email, telephone, SMS or another communication channel, we may use the information provided to respond to your request and manage your booking.

Third-party communication platforms may process information according to their own privacy policies.

We recommend that customers do not send unnecessary sensitive personal information through messaging services.


12. Data Security

We take reasonable technical and organisational measures to protect personal data against:

  • unauthorised access;
  • accidental loss;
  • destruction;
  • alteration;
  • unauthorised disclosure;
  • misuse; and
  • other unlawful processing.

Depending on the system and information involved, security measures may include:

  • HTTPS/TLS encryption;
  • access controls;
  • authentication;
  • server security;
  • firewall and anti-abuse measures;
  • monitoring;
  • backups;
  • restricted administrative access; and
  • security logging.

However, no internet transmission or electronic storage system can be guaranteed to be completely secure.


13. How Long We Keep Your Information

We retain personal data only for as long as reasonably necessary for the purposes for which it was collected or for the period required by applicable law.

Booking, payment, accounting and transaction records may need to be retained for periods required under:

  • tax legislation;
  • accounting requirements;
  • commercial record requirements;
  • consumer protection legislation;
  • tourism regulations; and
  • other applicable legal obligations.

When personal data is no longer required, we will take reasonable steps to delete, anonymise or securely dispose of it where appropriate.


14. Your Rights

Subject to applicable law, you may have the right to:

  • ask whether we process your personal data;
  • request access to your personal data;
  • request correction of inaccurate or incomplete information;
  • request deletion or destruction where legally applicable;
  • request restriction of processing where applicable;
  • object to certain processing activities;
  • request data portability where GDPR applies;
  • withdraw consent where processing is based on consent; and
  • lodge a complaint with the competent data protection authority.

Under Turkish Law No. 6698 (KVKK), data subjects may exercise their rights in accordance with Article 11 and the applicable procedures.


15. How to Exercise Your Rights

To make a privacy or personal data request, please contact:

Email: info@marmarisexcursions.com

Please use the subject:

Personal Data Request

We may request reasonable information to verify your identity before responding to a request.

We will respond within the period required by applicable law.


16. Children's Data

Our services may be booked for children.

Where information about a child is necessary to provide a booking or activity, it should normally be provided by a parent, legal guardian or another person lawfully authorised to provide it.

We do not knowingly collect children's personal data for unrelated purposes.


17. Fraud Prevention and Chargebacks

If a transaction is disputed, reversed or subject to a chargeback, we may provide relevant booking and transaction information to the payment provider, acquiring bank or relevant financial institution.

This may include:

  • booking information;
  • booking confirmation;
  • voucher;
  • transaction information;
  • cancellation records;
  • refund records;
  • relevant customer communications; and
  • evidence relating to the provision or attempted provision of the booked service.

This information is used only for purposes such as investigating and responding to the payment dispute or preventing fraud.


18. Third-Party Websites

Our website may contain links to third-party websites, payment pages or external services.

We are not responsible for the privacy practices, security or content of third-party websites.

We recommend reviewing the privacy policy of any third-party website before providing personal information.


19. Automated Processing

We may use automated systems for purposes such as website analytics, security, fraud prevention and operational processes.

We do not normally make decisions producing legal or similarly significant effects based solely on automated processing.

Where applicable law provides additional rights regarding automated decision-making, those rights remain unaffected.


20. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect:

  • changes to our services;
  • changes to our website;
  • changes in technology;
  • changes to our service providers;
  • changes in applicable legislation; or
  • changes to our data processing practices.

The latest version will always be published on this page together with the relevant Last Updated date.

Where required by law, we will provide additional notice or obtain consent for material changes.


21. Contact Us

If you have any questions about this Privacy Policy or how we process personal data, please contact us:

4 S Bilgi İşlem Turizm Seyahat Reklam İthalat Ve İhracat Ticaret Limited Şirketi SunMed Travel Agency

Siteler Mah. 206 Sok. No. 2 K. 1 D. 111 48700 Marmaris / Muğla / Türkiye

Email: info@marmarisexcursions.com Phone / WhatsApp / Telegram: +90 553 259 2481 Landline: +90 252 417 11 28 / +90 252 417 11 69 Fax: +90 252 417 07 14

Website: fethiyetrips.com


22. Applicable Law

This Privacy Policy is interpreted in accordance with the applicable laws of the Republic of Türkiye.

Where GDPR or another mandatory data protection law applies to the processing of your personal data, the relevant mandatory provisions of that legislation will also apply.

Nothing in this Privacy Policy is intended to remove or unlawfully restrict any mandatory legal right available to you.

If any provision of this Privacy Policy is found to be invalid or unenforceable, the remaining provisions will continue to apply to the extent permitted by law.


Fethiye Trips SunMed Travel Agency 4 S Bilgi İşlem Turizm Seyahat Reklam İthalat Ve İhracat Ticaret Limited Şirketi

Last Updated: 6 October 2026

TÜRSAB

TURSAB Member Agency

Digital Verification System

Verified Agency This agency is registered and approved by TURSAB.
Agency4 S Turizm Ltd. Şt.
Licence No12195
Company Title4 S Bilgi İşlem Turizm Seyahat Reklam İthalat Ve İhracat Ticaret Limited Şirketi
OrganisationAssociation of Turkish Travel Agencies
Ministry ApprovalMinistry of Culture and Tourism
🔗 Verify on TURSAB Official Website

Enter Licence No: 12195 on the verification page to confirm.