1. Introduction

Please read the following policy carefully.

This policy clarifies how the companies referred to as the “PassportCard Israel Group,” as defined below, use the data collected about you while providing services.

1.1 PassportCard Israel Group engages in the following areas:

1.1.1. Travel insurance: Administration of medical expenses and management of payments to medical providers for travelers abroad and supplementary or related services (“Travel Services”). Travel services are provided by PassportCard Israel General Insurance Agency (2014) Ltd. (“PassportCard Travel”).

1.1.2. Medical Insurance: Administration of medical expenses and management of payments for medical vendors regarding medical plans and supplementary or related services concerning relocations or long stays abroad (“Relocation Services”). Relocation services are provided by DavidShield Insurance Agency (2000) Ltd. (“PassportCard Relocation”).

1.1.3. Financial Services: Issuing of a PassportCard payment card, either physical or digital (“PassportCard Card”), to facilitate payments to clients in relation to travel services and/or relocation services. Financial services are provided by PassportCard Financial Services Ltd. (“PassportCard Finance”).

PassportCard Travel, PassportCard Relocation, and PassportCard Finance (collectively referred to as the “PassportCard Israel Group”) are part of a group controlled by Davidshield-Passport Ltd, Company No. 515857639 (“The Holding Company”). The companies and any other company and/or entity that operates or will operate in the future under the direct or indirect control of the Holding Company will be referred to as the “Global PassportCard Group”.

1.2 In this policy

1.2.1. Travel services, Relocation services and financial services together shall be referred to as “The services”.

1.2.2.Customer”: Anyone who has purchased services from the PassportCard Israel Group, including an insured individual who has bought an insurance policy from a company within the PassportCard Israel Group.

1.3. This privacy policy applies to personal data, defined as data that identifies or can identify you, either directly or indirectly, using reasonable means. This data is collected and processed through our website at www.PassportCard.co.il (“The Website”), our application available for download from app stores (“The App”), and through any other means, such as our customer service center (collectively referred to as “Data” or “Personal Data”). This privacy policy will detail the types of data collected, the purposes of collection, how we use the data, the measures we take to protect the data, third parties with whom we share the data, and your rights regarding the data.

1.4. If there are any specific privacy notices or policies that apply only to certain services, they will be published on a designated webpage, portal, or through other digital means for each service, and will apply alongside this general privacy policy.

1.5. If you hold an insurance policy that covers other individuals (such as a partner or children), and if you transfer personal data regarding those individuals in the course of the services, you must inform the other insured individuals about this privacy policy. You must not transfer any personal data of others who have not consented to such transfer.

1.6. Any gendered language in this policy is for the convenience purposes only; the policy should be interpreted to apply to all genders.

1.7. In the event of any conflict or inconsistency between the English version of this privacy policy and the Hebrew version, the Hebrew version shall prevail.

2. Legal Basis for Processing Personal Data

2.1. We process personal data only when we have a legal basis to do so. The legal basis depends on the purposes for which we use the data and may vary according to applicable laws and regulations.

2.2. If you are in Israel, the processing of your personal data is based on your consent, which you provide after carefully reading this privacy policy and agreeing to use our services. In this case, we will process your data based on this consent. You are not obligated to provide your consent; however, if you choose not to do so, we will be unable to provide you with the requested services.

2.3. If you are in the European Union permanently or for prolonged period, we will process your personal data for the purposes of contract negotiation or execution, meaning the provision of our services. We may also process your data based on legitimate interests, such as preventing abuse of our services, fulfilling legal obligations, or complying with authorized authorities.

3. What data do we gather and for what purpose do we use it?

The types of personal data we collect from you, or that you may be asked to provide, will vary according to the services purchased from the companies in the PassportCard Israel Group, as detailed below. We do not use your personal data for purposes not mentioned in this policy unless required by law.

3.1. Data Collected During Application Registration

During the registration for the application, you will be required to provide your ID number, phone number, and the last six digits of a credit card or a password sent to your device during the sign-up process. We will use this data to create your user account and for communication, including sending alerts, service messages, and responding to your inquiries.

Should you choose to register and enter the application through biometric identification, the biometric identifiers given to us are not be saved by us and we hold no liability arising from such data. The use of biometric identification for identifications shall be governed by the terms of service and the privacy policy of the phone operator or any other device from which you will sign in.

3.2. Data Collected During Travel and Relocation Services

3.2.1. If you purchase travel or relocation services, you will need to provide the following information, which we will use as detailed below:

    • Personal Details: Full name, ID number (National ID and Passport), date of birth, contact details (phone, email), address, nationality, country of origin, and place of birth.
    • Travel Details: Destination, purpose of stay, and length of stay.
    • Underwriting Data: Health data, lifestyle habits (e.g., smoking, alcohol consumption), personal and family medical history, and any other data needed for service customization and pricing.
    • Payment Information: Data required for payments, including bank account details or partial credit card numbers. Payment data is transferred directly to a credit card clearing company and is not stored by PassportCard Israel Group, but secured using a randomly generated encrypted token by the credit card clearing company.
    • Accompanying Data: Relevant information that impacts the purchased services, such as employment details and information about dependents or family members (if the relocation services are purchased by your employer); and cellular traffic (cellular data plan).
    • Legal Compliance Data: Information required to comply with legal obligations, including anti-money laundering measures.

3.2.2. In addition, during and after the provision of services, we may collect the following data:

    • Data related to any claims you file concerning our travel or relocation services, either self-provided or if provided by a third party.
    • Information about your travel or stay abroad.
    • Data from communications with us, such as call recordings and chat/email records.
    • Payment data for transactions made with your PassportCard[1] related to the services or money withdrawal.
    • Data received from vendors and business partners related to complementary services such as “flight delay” or “find my luggage”.

3.2.3. We will use the data collected for the following purposes:

    • To process your service purchase request, customize services, and provide insurance coverage. To insure you in the requested insurance policy, to deal with insurance claims and provide you the insurance cover and complementary services (according to your policy terms and conditions), as you may need it.
    • To identify you in various communication channels with us, including call center and other digital channels (such as the application).
    • To send you important operational messages related to your purchased services.
    • To calculate amounts for topping up your PassportCard based on customary medical service costs at your location.
    • To provide complementary services, such as lounge access in case of flight delays.
    • To comply with legal obligations, including anti-money laundering measures.
    • If you have consented, to send you marketing communications.

[1] The PassportCard debit card issued to you upon purchasing the group’s insurance services, which is used for various payments covered by the insurance policy to doctors, institutions, and various providers in real time.

3.3. Data Collected During Financial Services

3.3.1. If you choose, in addition to the insurance services, to use the services offered by PassportCard Finance and use your PassportCard card for travel expenses or other services of PassportCard Finance, we will use the data provided to us during your request to be insured to provide the financial services and you may be required additionally to provide the following information:

    • Personal Details: Updates to previously provided information, including your address and any Israeli credit card details under your name, may be required.
    • Required Details for Financial Services: Passport number, nationality, passport expiration date, and country of issuance.
    • Legal Compliance Data: Information required to comply with applicable laws such as anti-money laundering regulation.

3.3.2. In addition, during the term of services we would collect or receive about you the following information:

    • Data about transactions using your PassportCard, including details of the business, country, amount paid, and relevant transaction information.
    • Travel destination and airports from which you may return to Israel.

3.3.3. Purposes of Data Use:

    • Topping up your PassportCard.
    • Conducting required checks in relation to the services to comply with applicable law, including identification in compliance with anti-money laundering regulation and complying with sanction orders.
    • Presenting transaction details regarding your PassportCard.
    • To approve or deny payment transactions, and deal with transaction denial or cancelation request or any clarification or complaint.
    • To send you push notifications in relation to PassportCard financial services.
    • To provide you with other PassportCard financial services.

3.4. Use of all Data types

In addition to the specific purposes mentioned above, PassportCard Israel Group may use all data types for the following purposes:

3.4.1. The data we will create form your personal information will serve us for improving our services, websites and/or the application and user experience, evaluating the way our users use the services, to manage, improve and promote the application and other companies’ services or of the PassportCard Israel group, creating AI based functions, fixing bugs and analyzing service usage patterns.

3.4.2. To cross-reference the information with data available within the Global PassportCard Group about you, to identify you as a customer of the services (or as a non-customer), and to examine how users and customers utilize the services.

3.4.3. To create aggregated or anonymized data from personal information provided by you in connection with your use of the services; to generate aggregate or statistical information for identifying trends, analyzing data, improving the content and services offered by the companies in the Global PassportCard Group, and for other statistical purposes.

3.4.4. Handling requests submitted to us regarding your rights under applicable law as a data subject, including requests for access to or correction of information;

3.4.5. Information requests as part of surveys, including satisfaction surveys and service improvement. Participation in surveys is subject to your consent;

3.4.6. Detection and prevention of fraud within the Global PassportCard Group, misuse, or other illegal activities;

3.4.7. In order to respond to legal requirements and regulatory obligations, including in relation to legal proceedings, warrants, and inquiries from authorities, etc.; to establish and defend legal rights; and for the purpose of investigating and resolving complaints;

3.4.8. In order to protect our activities, our rights, our privacy, our security, or our property, as well as that of other companies within the Global PassportCard Group; and to enable us to assert our rights to remedies or to mitigate our damages;

3.4.9. Advertising and marketing, including direct mail, related to the services you purchased. Additionally, if you have opted in to receive marketing communications from the Global PassportCard Group, we or other companies within the Global PassportCard Group may offer you additional services that may be relevant to you, including based on your characteristics. You can request to remove your details from the mailing list at any time by clicking on the unsubscribe link in the offers sent to you.

4. Cookies and Analytics

4.1. We collect information about your activity in our digital services (such as the app or website) and/or in other digital services related to us and/or in collaboration with us and/or that display links to PassportCard websites and/or advertisements for PassportCard, as well as during digital communications with us (“Digital Services“). For example, this includes IP address, device characteristics, device identifiers, device type, statistical identifiers, browsing information and interactions, inaccurate geographic information, user profiles, privacy preferences, authentication identifiers, information provided by the user, etc..

4.2. For the purpose of collecting the information as detailed above, we use statistical tools and targeted advertising from third parties, such as cookies, pixels, tags, web beacons, and scripts (hereinafter collectively referred to as “Cookies”), to collect and analyze personal information related to the use of our websites or applications.

4.3. We will use this information to create personal profiles for marketing and utilizing them, store and retrieve device information, measure marketing effectiveness, conduct targeted marketing, display marketing content, prevent fraud and correct errors, link different devices, adjust and combine information from various sources, maintain and report on privacy preferences, improve and develop services, enhance audience understanding, identify based on device characteristics or automatically sent information, and facilitate coordination between different devices.

4.4. For more information about these tools, please read our cookies policy

4.5. Upon your first visit to the Group’s websites, you may be presented with a notice regarding the collection and use of cookies. This notice will be displayed based on the country from which you are accessing the websites and may include an option to accept or reject certain cookies. To manage your consent, if you received this notice, you may visit the following link

6. App Access Permissions

While using the app, you may be required to allow access to various applications in the device from which you use the app, for the purpose of using the app services which require access permissions including among others:

6.1. Fingerprint/Facial Recognition– this permission is requested for identification and authentication among others, for securing the information in the app. The app does not receive the abovementioned information but only an indication from the device regarding your identity.

6.2. Permission to receive push notifications by the app– this permission is requested so you may receive push notifications regarding updates, alerts and to offer you products, services and benefits you be interested in, based on your personal preferences or use of services or app. We may send your device notifications only if the notification services is active on your device.

6.3. Geolocation– of the computer or device from which you are connected to the internet while using the services, so we may know your location and for information security purposes.

6.4. Camera and Microphone– this access permission is requested for identification and verification processes, that are required based on legal obligation placed on us or when you choose to share with us photos or voice files using the apps, as required.

6.5. Photo gallery, device storage and memory– this access permission is requested if you wish to save documents photocopies so you may choose from your photo gallery or any file folder photos or files to send to us using the application.

6.6. NFC Connection– To make a payment at supporting businesses using your device.

Please note that you are not obligated to approve the above-mentioned access permissions, in whole or in part, and you may even, at any time, cancel access permissions that have been granted, through the settings menu on your device, however by canceling the permissions or blocking them you will be unable to receive the full range of services offered through the application.

7. Who do we share the information with?

7.1 To provide you with the services, we use third parties, with whom we are connected in relation to the services. Accordingly, PassportCard Israel Group will be entitled to transfer personal information to third parties in the cases and for the purposes detailed below:

7.1.1. Hosting and cloud computing providers for storage and/or backup needs; software and computing providers for development, maintenance and fault repair needs;

7.1.2. For lawyers, doctors, experts, accountants, auditors and appraisers; for fraud investigators and private investigators;

7.1.3. To financial entities such as banks, credit companies, credit card issuers, credit clearing brokerage companies (Gateway), digital wallets;

7.1.4. To databases and suppliers for regulatory needs that apply to us, such as checking against terrorist and money laundering lists;

7.1.5. To insurance agents, insurance consultants and insurance companies responsible for insuring you and paying your claims (as long as an insurance claim is filed), including Davidshield Insurance Company Ltd., PO Box 515859379 (the “Insurer”) which is also part of the Global PassportCard Group;

7.1.6. To your employer, workers committee, representative organization, representative body, and anyone acting on your behalf who provided services for you;

7.1.7. Suppliers and business partners with whom we cooperate to offer you complementary services and/or support the services provided by us, which may interest you and improve your travel experience, such as use of the lounge at the airport during a flight delay, communication services, luggage tracking, etc.

7.1.8. To various suppliers who provide companies with services required by us in connection with the provision of our services, including consultants, CPAs, suppliers who provide companies with operational services, etc.

7.2. Also, we will be entitled to share the personal information and transfer it in the following cases:

7.2.1. To third parties when the disclosure of the information in an emergency is intended to protect your vital interests. For example, if, considering the nature and scope of the emergency, we are unable to contact you after reasonable efforts, we may enlist third parties who are close to you or know you after making sure that the contact is indeed maintained, to handle the emergency.

7.2.2. To authorized authorities and/or according to a court order and/or insofar as this is required for the purpose of protecting the rights of the companies or another company in the overall PassportCard Group and their assets and/or insofar as the provision of such information is required by any law.

7.2.3. To purchasers and future (potential) purchasers or any party or offer within the framework of merger procedures, reorganization, sale of assets, liquidation, acquisition of activity and/or similar operations, including negotiations in connection with the above.

7.2.4. Without detracting from the above, the companies will be entitled to transfer unidentified or anonymous, aggregate or statistical information to third parties without limitation, for any purpose whatsoever, including to improve, enrich, diagnose, correct or change our services and products and services offered by the third parties.

8. Data transfers to the Global PassportCard Group

Information about you will be transferred to the companies in the overall PassportCard Group for the purpose of realizing the goals detailed in this privacy policy and as required for the operation of the services, the application and/or the websites by the companies of the overall PassportCard Group engaged in this; the implementation of the agreements between the companies in the overall PassportCard Group; improvement and accuracy of the services you have purchased; for the purpose of backup for the provision of services in the event of an emergency or failure in the company you serve as a customer, as well as for corporate control needs and services provided at the overall PassportCard Group level.

9. Transfer of data abroad

For providing services, you are aware that personal information may be transferred to companies within the Global PassportCard Group and to third parties located outside of Israel or the European Economic Area (i.e., countries that are not part of the European Union and are not Iceland, Liechtenstein, or Norway) for the purposes described above. These countries may provide a lower level of privacy protection than that offered by the laws of Israel or the European Economic Area. Accordingly, we will take steps to ensure an adequate level of protection for your personal information as outlined below and as required by applicable law:

9.1. If it concerns personal data subject to the privacy protection laws of the European Union:

9.1.1. The data will be transferred to a country or an international organization for which a valid decision has been made by the Council of the European Union regarding the adequacy of protection for the personal data transferred to that country or organization (Article 45 of the General Data Protection Regulation 2016/679);

9.1.2. The transfer of data will be based on binding and valid agreements between bodies and public authorities (Article 46.2(a) of the General Data Protection Regulation 2016/679);

9.1.3. The transfer of data will be conducted in accordance with contractual provisions approved by the Council of the European Union that impose a contractual obligation on the data recipients to maintain protection for the data at a level acceptable in the European Economic Area (Article 46.2(c) of the General Data Protection Regulation 2016/679), and by implementing additional protective measures as required by European law;

9.2. If it concerns personal data subject to Israeli law,we will take steps to ensure that the transfer of personal data maintains an adequate level of protection for the data. Without detracting from the above, by using the services, application, and/or website, you give your informed consent to the transfer of personal data to the countries mentioned abroad and waive any claims and/or assertions and/or demands against the companies in this regard.

10. Data Security

We take accepted security measures for personal data, in accordance with applicable laws. We use, among other things, encryption mechanisms in communication and other protections to maintain confidentiality and prevent unauthorized access to the data, and we review these mechanisms from time to time. However, there are risks inherent in transmitting information over the internet or through other methods of electronic storage, and we cannot guarantee that unauthorized access or use will not occur. Therefore, we will not be liable for any damage caused by unauthorized access to or use of the data.

Please note that you are responsible for the use of your personally identifiable information. The responsibility to take security measures also rests with you, for example:

10.1. Do not share your identification details with others (e.g., via email) to protect against fraud or unauthorized access to your account in the app or your device.

10.2. Ensure that the contact details you provided to us (including phone number and email address) are correct and update them if there are any changes.

10.3. Use antivirus and anti-intrusion measures on the endpoint devices from which you access the site and/or the app.

10.4. Keep your software updated, download from official sites, avoid using public computers or public Wi-Fi networks, and refrain from sharing sensitive information on social networks.

10.5. Tailor your communication with us according to its content. For example, if you are not using secure encryption and electronic signature mechanisms, it is advisable to contact us through means other than email if the matter is sensitive to you.

10.6. If you send us photographs as part of the services, ensure that they do not include individuals who have not given their consent.

11. Transmission of Information in Emergency Situations

You may need our services in circumstances related to your medical condition, including medical emergencies, hospitalizations, a wide range of medical tests, and more. During these events and as part of providing services, you will need to transmit personal information about yourself, including information regarding your medical issue or the emergency you are in. Naturally, in such emergencies, secure communication channels for transmitting information may not necessarily be available, and we may use less secure channels for information transmission and reception.

Before using unsecured communication channels, we will make an effort to obtain your explicit consent to use these channels, depending on the circumstances of the emergency. We will not be responsible for any system failures and/or unauthorized breaches of the system that occur as a result of using unsecured communication channels.

12. Duration of Information Retention

The information about you will be retained by us for the necessary period to ensure the purposes outlined in this privacy policy, unless a longer retention period is required or permitted by law.
Information needed for managing our business, including documentation of actions you have taken in connection with the services or for the continued provision of services in the future, as well as for defending against claims, will continue to be retained by us as required by law. Information stored in backup files may be retained for a longer period, in accordance with the backup policy of PassportCard Israel.

 

13. Requests to Exercise Rights Regarding Information

13.1. If you are located in Israel, you have the right to access personal information about yourself, and you may request to correct or delete information that is inaccurate, incomplete, unclear, or outdated, all subject to applicable law.

13.2. If we have received personal information about you from the European Economic Area (EEA) that was not provided directly by you, subject to a list of exceptions, you may also request the deletion of your information if (1) the information was created, received, accumulated, or collected in violation of legal provisions, or continued use of it is contrary to legal provisions; (2) the information is no longer necessary for the purposes for which it was created, received, accumulated, or collected.

13.3. If you are permanently or temporarily residing in Europe, you may request, in addition to the rights listed above:

13.3.1. Deletion of personal information about you even if it is up to date – we will respond to the deletion request if the information is no longer necessary for providing the services, protecting our legitimate interests, or complying with applicable laws.

13.3.2. Withdraw your consent to the processing of information – you may withdraw your consent at any time for the use of personal information about you by the companies in the PassportCard Group that is based on your consent, from that moment onward; this does not affect the legality of the use of your personal information that was conducted prior to the withdrawal of consent.

13.3.3. Limit the processing of some personal information about you for a limited period, according to applicable law.

13.3.4. Port your personal information – if you are entitled to do so under the applicable law in your place of residence, you may request to receive some of the personal information about you that you provided to us in a commonly used format and transfer that information to another entity.

13.3.5. File a complaint – if you have a complaint regarding your personal information and/or this privacy policy, you may contact the Privacy Officer of PassportCard using the details provided below.

13.4. Your request will be handled according to PassportCard’s service procedures and the applicable law regarding your request.

Please contact us at dpo@davidshield.com regarding any such request or if you have questions or comments about how we handle your personal information.

13.5. Also, as detailed in this privacy policy, for the purpose of providing services, we share information with third parties, therefore, you acknowledge and agree that if you request us to update or delete your information, we will not be able to update or delete information that has been transferred to third parties for the purpose of providing services and which is held by those third parties according to their terms.

14. Changes to the Privacy Policy

We reserve the right to update or change the privacy policy from time to time, as necessary and at our sole discretion, without any obligation to provide prior and/or subsequent notice. If changes and/or updates are made, they will take effect immediately upon the presentation of the updated privacy policy in the app and/or on the websites. The date of the last change will be reflected under the heading “Last Updated” at the top of the document. If we make changes that, in our discretion, may significantly affect your rights, we will take reasonable measures to notify you of such changes.

15. Contact Us

Data Protection Officer (DPO):

For any questions or inquiries regarding the use of your information or this privacy policy, you can contact us via email to the Data Protection Officer at the following details:

Email: dpo@davidshield.com

Mailing Address: 8A HaTzoran St., South Industrial Zone, Netanya, Israel.

Zip Code: 4250608 P.O. Box 8767

Details of Data Controllers:

PassportCard Israel General Insurance Agency (2014) Ltd.

 

Telephone:+972-9-8920930 ; *9912 (Toll-free dialing)
E-Mail:pcsr@passportcard.co.il
Requests to Unsubscribe from Mailing Lists for Advertisements and/or Direct Marketing:marketingservice@passportcard.co.il
WhatsApp:972-50-670-8544+
Mailing Address:8A HaTzoran St., South Industrial Zone, Netanya, Israel,
425060, P.O. Box 8767

 

DavidShield Life Insurance Agency (2000) Ltd

Telephone:+972-9-8920950
E-Mail:servicerelo@passportcard.com
Requests to Unsubscribe from Mailing Lists for Advertisements and/or Direct Marketing:servicerelo@passportcard.com
WhatsApp:+972-50-668-7695
Mailing Address:8A HaTzoran St., South Industrial Zone, Netanya, Israel,
425060, P.O. Box 8767

 

PassportCard Financial Services Ltd.

Telephone:+972-9-8920930 ; *9912 (Toll-free dialing)
E-Mail:financialservices@passportcard.co.il
Requests to Unsubscribe from Mailing Lists for Advertisements and/or Direct Marketing:financialservices@passportcard.co.il
WhatsApp:+972-50-668-7695
Mailing Address:8A HaTzoran St., South Industrial Zone, Netanya, Israel,
425060, P.O. Box 8767