WhatsApp

Privacy

Privacy

This policy explains what data is processed, why, who may receive it and what rights you have.

1. Controller

The controller is Jonas Mabillard, operator of One2Fly. Contact: info.one2fly@gmail.com. No public reception address is published on this website.

2. Data processed

When you visit, the hosting provider may process technical data such as IP address, date and time, browser, device, requested URL and referrer. When you use a form, One2Fly processes the details you enter: identity, contact details, language, participant count, site or flight preference, desired period and message. Later communications by email, phone or WhatsApp are also processed.

3. Purposes

Data is used to answer requests, prepare a booking, clarify the service and price, perform a contract, send flight information, prevent abuse, secure the website and meet legal and accounting obligations. One2Fly does not use advertising profiling or automated decision-making.

4. Legal grounds

Depending on the situation, processing is based on pre-contractual steps requested by you, performance of a contract, legal obligations and One2Fly’s legitimate interests in security, abuse prevention and sound service management. Consent is requested where applicable law requires it.

5. Recipients and providers

Data may be processed by Netlify for hosting and forms, by One2Fly’s email provider and by providers necessary for booking. The payment provider will be disclosed before payment; One2Fly does not ask for or receive card numbers through its forms. Data may also be provided to authorities, advisers or insurers when legally required or necessary to defend rights.

6. International transfers

Providers may process data in Switzerland, the European Economic Area, the United States or other countries. One2Fly selects providers offering appropriate safeguards and relies, where necessary, on the applicable mechanisms for international transfers.

7. Retention

Requests that do not lead to a booking are normally deleted or anonymised no later than 12 months after the last contact, unless a justified need remains. Contract, payment and accounting records may be retained for up to 10 years where required by law. Technical logs are retained according to the host’s security periods.

8. Your rights

You may request access, correction and, where legal conditions apply, deletion, restriction, objection or portability. You may withdraw consent for the future. Send requests to the email above; proof of identity may be requested. You may also contact the Swiss Federal Data Protection and Information Commissioner or the competent authority where the GDPR applies.

9. Security

One2Fly limits collected data, uses HTTPS, a static architecture, security headers, server-side controls and restricted access. No system can nevertheless guarantee absolute security.

10. External services and links

Website media is self-hosted. Clicking WhatsApp, a social network or another external link opens that provider, which then processes data under its own policy.

11. Updates

This policy may be updated when services, providers or applicable law change. The version published here is the current version.

Last updated : 5 août 2026