Privacy Policy | Raja Ampat Cruise

Privacy Policy | Raja Ampat Cruise

The Raja Ampat Cruise privacy policy: rajaampatcruise.com, published by Juara Holding Group, collects only the details you send when asking about a cruise (name, WhatsApp or email, travel dates, guest numbers, cabin or vessel preferences). We pass them to Komodo Luxury’s reservations team solely to prepare your quote, never sell them, and correct or delete them on request.

Last updated: 16 September 2026.

Who is responsible for your data on this site?

Juara Holding Group publishes rajaampatcruise.com and is the data controller (pengendali data pribadi) for information collected through the website.

Cruises are operated by Komodo Luxury (PT Komodo Bahari Nusantara), founded in 2015, headquartered in Denpasar, Bali, with its operations base in Labuan Bajo, whose reservations team handles quotes and bookings directly. Once your inquiry reaches that team, Komodo Luxury also controls the booking data it holds.

This policy follows Indonesia’s Personal Data Protection Law, Law No. 27 of 2022 (“UU PDP”), fully in force since 17 October 2024. Because many guests live in Europe and the UK, we also apply GDPR principles wherever the EU or UK GDPR covers you.

What personal data does Raja Ampat Cruise collect?

Category Examples How it reaches us Purpose
Identity and contact Name, WhatsApp number, email, country Inquiry form, WhatsApp, email Reply and send a quote
Trip details Dates, nights (4N to 10N), route (Dampier Strait, Wayag, Misool), guest count, share-trip cabin or private charter, budget band Inquiry form or chat Match a vessel and cabin
Special requirements (optional) Dietary needs, mobility, medical notes, dive certification level Only if you volunteer it Safety and onboard planning
Technical data IP address, device, browser, pages viewed, referring site Automatically Security and analytics
Interaction events Clicks on the WhatsApp or email button, form submissions (not message content) Automatically Learn which pages help guests

Health information is specific personal data under Article 4 of UU PDP. Share it only when it matters for your safety on board; we process it with your explicit consent.

Passport details, flight times into Sorong (Domine Eduard Osok, SOQ) and full guest manifests are requested later by Komodo Luxury at booking stage, not through this website.

We never ask for card numbers on this site. Payment instructions come only from Komodo Luxury’s reservations team. If someone asks you to pay into a different account in our name, check first on WhatsApp +62 811-3823-875.

Why do we process it, and on what legal basis?

UU PDP Article 20 and GDPR Article 6 list the lawful grounds we rely on:

  • Answering your inquiry and preparing a quote: steps taken at your request before a contract.
  • Health or dietary notes: your explicit consent, which you can withdraw.
  • Site security, spam and fraud prevention: legitimate interest.
  • Analytics: legitimate interest, or consent where your local law requires it.
  • Invoices and records for confirmed bookings: legal obligation.
  • Newsletters or offers: opt-in consent only. We send none by default.

Who do we share your inquiry with?

Recipient What they receive Why
Komodo Luxury reservations team Contact and trip details, optional requirements Availability, quote, booking
Crew of the phinisi or yacht you book, and vetted local partners such as Sorong transfer providers Names, guest count, arrival time, dietary or medical notes Delivering a confirmed cruise
Service providers: Meta (WhatsApp), email hosting, Cloudflare, Google Analytics Messages in transit, technical and usage data Running the site and communications
Government systems, when Komodo Luxury arranges your fees Details required for permits Legal requirement
Courts or regulators What the law compels Legal obligation

Guests may need a Marine Park Conservation Card and a Raja Ampat Regency visitor ticket (via SIPARI). If Komodo Luxury arranges either, your permit details go to those systems.

We do not sell, rent or trade personal data.

Some providers above process data outside Indonesia. Under UU PDP Article 56, we transfer data abroad only where the destination offers equivalent protection, where appropriate safeguards such as standard contractual terms apply, or with your consent.

How does the site use cookies and analytics?

  • Strictly necessary: security and bot filtering, mainly through Cloudflare. These cannot be switched off.
  • Analytics: Google Analytics 4 measures visits in aggregate. Google states that GA4 does not log or store IP addresses.
  • Preferences: remembering choices such as language, where offered.

We run no advertising or retargeting cookies today. If that changes, we will update this policy first and ask for consent where required. You can block or delete cookies in your browser at any time.

How long do we keep your data?

Data Retention
Inquiries that do not become a booking Up to 24 months after last contact, then deleted or anonymised
Confirmed booking records and invoices Generally up to 10 years, per Indonesian company-document and tax record rules
Health and dietary notes Deleted after the cruise, unless a safety incident requires keeping them
Analytics data No longer than 14 months in identifiable form
WhatsApp and email threads As long as your trip and follow-up need them, or until you ask us to delete them

What rights do you have over your data?

Under UU PDP you may:

  1. Know who processes your data and why.
  2. Access, copy and correct it.
  3. Have it deleted.
  4. Withdraw consent.
  5. Object to purely automated decisions (we make none).
  6. Restrict processing.
  7. Receive your data in a common format.
  8. Claim compensation for violations.

GDPR gives similar rights, plus the right to complain to your local supervisory authority.

We acknowledge requests within 3 x 24 hours and complete them within the time limits set by UU PDP. For requests made under GDPR, we respond within one month. We may confirm your identity through the WhatsApp number or email you originally used. Records we must keep by law cannot be deleted early.

How do we protect data, and what happens after a breach?

The site runs on HTTPS, only reservations staff who need your inquiry can see it, and forms are spam-filtered. No system is perfectly secure.

If a breach affects your data, UU PDP Article 46 requires written notice to you and the authority within 3 x 24 hours. We will meet that deadline, and the 72-hour GDPR notice where it applies.

What booking terms and limits of liability apply?

  • This website is an information and inquiry desk. Your booking contract is with Komodo Luxury, on the written terms in your quote and confirmation.
  • Prices are indicative, as of 2026, and subject to quotation; private charters are quoted on request for the vessel, dates, nights, guest count and inclusions.
  • Nobody can guarantee manta or wildlife sightings, weather, sea conditions, ranger-controlled landings at Wayag, or flight schedules into Sorong.
  • Government fees are separate from cruise prices unless your quote says otherwise.
  • Details change. We are not liable for losses from relying on outdated website information, and nothing here limits your rights under consumer protection law.

Do we collect data about children?

The site is not aimed at anyone under 18. For family cruises, a parent or guardian provides each child’s details, in line with UU PDP Article 25 on parental consent.

How can you contact us about privacy?

  • WhatsApp: +62 811-3823-875 (wa.me/628113823875)
  • Email: sales@komodoluxury.com, with the subject line “Privacy request: rajaampatcruise.com”

Include your name, the contact detail you used, and your request (copy, correction, deletion or consent withdrawal).

If unhappy with our reply, you may complain to Indonesia’s data protection authority under UU PDP, or to the Ministry of Communication and Digital Affairs (Komdigi) while that body is being set up. EU and UK guests may contact their national authority.

When does this policy change?

Updates appear on this page with a new “last updated” date, and significant changes are flagged before they take effect. Indonesian law governs this policy.

WhatsApp the concierge
Scroll to Top