Lynk Taxis Privacy Policy & Cookie Policy
Last modified date: January 19, 2026
Lynk understands that your privacy is important to you and that you care about how your personal data is used and shared. We respect and value the privacy of everyone who uses our services and will only collect and use personal data in ways that are described here, and in a manner that is consistent with our obligations and your rights under the law.
Please read this Privacy Policy carefully and ensure that you understand it.
What Does This Policy Cover?
The provision of Taxi services by Lynk through web, app, and telephone.
Your Rights
As a data subject, you have the following rights under the GDPR, which this Policy and our use of personal data have been designed to uphold:
The right to be informed about our collection and use of personal data;
The right of access to the personal data we hold about you;
The right to rectification if any personal data we hold about you is inaccurate or incomplete;
The right to be forgotten;
The right to restrict the processing of your personal data;
The right to data portability (obtaining a copy of your personal data to re-use with another service or organisation);
The right to object to Lynk using your personal data for particular purposes; and
Rights with respect to automated decision making and profiling.
If you have any cause for complaint about our use of your personal data, please contact us. If we are unable to help, you also have the right to lodge a complaint with the supervisory authority, the Data Protection Commissioner.
For further information about your rights, please contact the Data Protection Commissioner www.dataprotection.ie.
Legal basis for processing
Processing is necessary for the performance of a contract to which the data subject is party or in order to take steps at the request of the data subject prior to entering into a contract; (GDPR Art 6(1)(b))
Processing is necessary for compliance with a legal obligation to which the controller is subject; (GDPR Art 6(1) (c))
Where processing requires clear consent, we ensure the data subject has given consent to the processing of his or her personal data for one or more specific purposes; (GDPR Art 6(1) (c))
Legitimate interest, data collected in the provision of the service is also used to improve the quality of services to customers; (GDPR Art 6(1) (f))
What Data Do We Collect?
Data protection law defines consent as: “Any freely given, specific, informed and unambiguous indication of the data subject’s wishes by which he or she, by a statement or by a clear affirmative action, signifies agreement to the processing of personal data relating to him or her”.
Optional provision of personal data is not an option in booking a taxi service; it is a requirement of contract fulfilment. Providing the minimum personal data, necessary for service, is deemed as consent.
Where processing is based on consent, Lynk ensures that consent requests are transparent, using plain language. Pre-ticked, opt-out boxes are not used. Consent is always freely given (telephone, in writing – documented affirmative action, email, website, booking app). Evidence of all consent or request for service is retained.
Electronic methods of providing personal data and/or gaining consent (i.e. website or mobile app) are regularly reviewed to ensure that a compliant Privacy Notice is accessible, and that consent is clear.
Where consent is obtained through direct telephone call by an individual, we utilise scripts and/or computer systems, using predefined fields, which show the required data to be collected to fulfil the contract request. A record of each phone call is retained as evidence.
We ensure that withdrawing consent is as easy. Consent withdrawal requests are processed immediately and without detriment.
For telephone bookings we collect:
- Name
- Phone Number
- Pick Up Address
- Destination Address
- Call recording
- Card and electronic payment details, if provided
- Email address if provided
For Account and app and web bookings we collect:
- Name
- Phone Number
- Pick Up Address
- Destination Address
- Email address
- Card and electronic payment details (If provided)
- Call recording
- Business account details where appropriate
- Booking security PINs and other security data as may be required from time to time by the client.
For Corporate bookings we collect:
- Name
- Phone Number
- Pick Up Address
- Destination Address
- Email address
- Card and electronic payment details (If provided)
- Call recording
- Business account details where appropriate
- Booking security PINs and other security data as may be required from time to time by the client.
To invite a user or non-user to a corporate account we collect:
- Phone number
- Email address
- Name
- Corporate account details
- Booking security PINs and other security data as may be required from time to time by the client.
For bookings made through our website the following will also be captured:
- IP address;
- Web-browser type and version;
- Operating-system;
- A list of URLs starting with a referring site, your activity on Our Site, and the site you exit to;
- Mobile phone’s IMEI
Third Party Service providers
The organisation uses third party service providers in order to provide a taxi booking and delivery service. We collect and processes personal data in connection with passenger, driver, and staff operations. All data handling follows the principles of lawfulness, fairness, transparency, purpose limitation, data minimisation, accuracy, storage limitation, and integrity and confidentiality, in compliance with GDPR and other applicable data privacy regulations. We use call centres inside the EU and outside the EU, and if you use our taxi booking service abroad.
Data Collected and Processed using third party service providers
Telephone bookings
Data Collected:
Name, phone number, pick-up and destination addresses, call recordings, card and electronic payment details (if provided), and email address (if provided).
Purpose:
Booking confirmation, dispatch coordination, customer service, and payment processing.
Retention:
Retained only for operational and regulatory compliance periods.
Security Measures:
Access restricted to authorised personnel; encrypted voice and payment data via certified payment provider; audit logs maintained.
Account & App bookings
Data Collected:
Name, phone number, email address, pick-up and destination addresses, booking and payment history, card details (if provided), and call recordings.
Purpose:
Account management, booking fulfillment, invoicing, fraud prevention, and customer support.
Storage & Transmission:
Encrypted at rest and in transit within secure cloud environments hosted in regional data centers.
Regulatory Compliance:
GDPR, PCI-DSS (for payment data).
Corporate/Business bookings
Data Collected:
Name, phone number, pick-up and destination addresses, email address, and payment details (if applicable)).
Purpose:
Expense tracking, reporting, and invoicing for corporate clients.
Access Controls:
Role-based access for authorised staff and corporate account administrators and certain third party providers where necessary for operations, development, maintenance, updates.
Forms and online submissions for Corporate or Business Account Invitations
Data Collected:
Name, email address, billing address, and phone number, email.
Purpose:
To invite users and manage access to corporate travel accounts.
Retention:
Limited to the duration of the active corporate account or until consent is withdrawn.
Online and Web Bookings:
Data Collected:
Name, phone number, email address, pick-up and destination addresses, payment details, and call recordings, along with technical metadata such as IP address, browser type/version, operating system, device identifiers (e.g., mobile IMEI), referring URL, on-site activity, and exit URL.
Purpose:
Booking management, fraud prevention, analytics, and website optimisation.
Cookies & Tracking:
Used to enhance user experience; users are informed via a cookie banner and may opt out.
Regulatory Compliance:
GDPR, ePrivacy Directive.
Driver Training and E-Learning Portal
Data Collected:
Name, email, phone number, postcode, and course activity logs.
Purpose:
To manage driver training.
Security:
Cloud-based LMS with role-based access controls and encrypted storage.
Financial & Accounting Systems
Data Collected:
Customer and driver financial records, transactions, invoices, and reconciliation data.
Purpose:
Payroll, payments, and statutory financial reporting.
Security & Compliance:
Access limited to finance personnel; GDPR and local tax regulation compliance ensured.
Analytics and Reporting Systems
Data Collected:
Operational metrics such as driver activity, booking data, non-personally identifiable location coordinates, address metadata, and system performance.
Purpose:
Business intelligence, service optimisation, and regulatory reporting; supports accurate pick-up/drop-off locations.
Data Minimisation:
Analytics data is anonymised or pseudonymised prior to processing.
Internal Communication & Productivity Tools
Data Collected:
Employee names, emails, mobile numbers, and attendance details.
Purpose:
Service updates, marketing campaigns, and automated notifications.
Security:
Enterprise-grade encryption, MFA, and retention policies aligned with HR and data protection standards.
Marketing and Communication Platforms
Data Collected:
Names, email addresses, and mobile numbers for customers and drivers.
Purpose:
Service updates, marketing campaigns, and automated notifications.
Consent:
Marketing communications are sent only with prior opt-in consent; all messages include unsubscribe options.
Card Payment Processing
Data Collected:
Customer name, transaction ID, payment method, tokenised card details, and refund history.
Purpose:
Secure handling of transactions for app and web bookings.
Compliance:
PCI-DSS certified provider; encryption in transit and at rest.
Forms and Online Submissions – General
Data Collected:
Name, email address, mobile number, submission content (e.g., feedback, sign-up forms, promotions).
Purpose:
Lead generation, feedback collection, and internal workflows.
Retention:
Retained only for processing duration and per consent/privacy notice.
Customer & CRM Systems
Data Collected:
Name, email address, mobile number, and support or interaction history.
Purpose:
Record-keeping, marketing, complaint management, and customer communication.
Compliance Focus:
GDPR (customer data), CCPA, retention limits, role-based access.
Driver Registration & Onboarding Systems
Data Collected:
Name, email, phone number, address, and SPSV licenses details, bank details.
Purpose:
Driver registration, verification, and onboarding.
Security:
Cloud-based data storage, encrypted transmission, role-based admin access.
Compliance:
GDPR, National Transport Authority NTA regulations.
Data Protection Controls
Encryption: All sensitive data is encrypted at rest and in transit.
Access Management: Role-based access control (RBAC) and multi-factor authentication (MFA).
Incident Response: Formal incident response plan aligned with GDPR breach notification timelines.
Vendor Management: All third-party processors undergo annual data protection assessments and sign Data Processing Agreements (DPAs).
Data Subject Rights: Individuals may request access, correction, deletion, or portability of their data in accordance with GDPR Articles 15–22.
We are affiliated, with an international association of taxi companies, which allows clients and app users to seamlessly book taxis by phone, app, web or any other means with affiliated companies in other countries, including but not limited to UK, Ireland, USA, Canada and Europe.
Taxi booking data is shared with our affiliates when a booking is made in an affiliate’s geographical area. Please note that bookings made outside of the EU may initiate a transfer of data to a country that does not provide the same level of data protection as provided under EU law. We engage with remote call answering services outside of the EU who take and have access to your personal, location, communication and payment details that are necessary to place a booking for you.
We engage with IT and marketing specialists outside of the EU who have access to your personal, location, communication and payment details that are necessary to place a booking for you.
Data Retention
Lynk retains records and personal information for legitimate or legal business reasons only. In addition, we may occasionally be required to collect and use certain types of personal information to comply with the requirements of the law and/or regulations. Personal data, which identifies a data subject, is not kept longer than is necessary for the purposes for which the personal data is processed and required by regulation/legislation.
Electronic and hard copy documents containing personal data, and associated correspondence and internal memoranda, are always retained in a secure location, with controlled and authorised access.
Sharing and Disclosure of Data
Lynk only allows access to Personal Data by those who have a legitimate purpose for access to that information.
Personal Data is only shared with Lynk’s service providers, partners and drivers for the purpose of providing a taxi service and to comply with regulations, in compliance with applicable law, for purposes consistent with this Policy.
Personal data (including names, telephone numbers, taxi account numbers, email addresses, collection points, drop off points, routes) may be transferred to another country when we use call centres inside the EU and outside the EU, and if you use our taxi booking service abroad.
Personal data (phone number, email) of a user or non-user may be shared with a user (corporate taxi account administrator) in order to invite the user or non-user to use the corporate taxi account.
Lynk will share Drivers’ personal details and documents with Insurers, Regulators, Gardaí and other official bodies.
Law enforcement purposes
If requested or required by government authorities, such as law enforcement authorities, courts, or regulators, or otherwise to comply with the law, Lynk may disclose any information about Third Parties. Lynk also may disclose information collected about Third Parties in order to exercise or protect legal rights or defend against legal claims.
Sale or merger of business
Lynk may transfer Personal Data to a Third Party if it or any of its affiliates is involved in a corporate restructuring (e.g., a sale, merger, or other transfer of assets).
Cookies
A cookie is a small text file that a website saves on your computer or mobile device when you visit the site. It enables the website to remember your actions and preferences (such as login, language, font-size and other display preferences) over a period of time, so you don’t have to keep re-entering them whenever you come back to the site or browse from one page to another.
Cookies do not in any way compromise the security of your computer. You can continue with no loss of functionality if you choose to disable cookies. However, if you do not accept certain cookies, you may not be able to complete a booking request.
How we use Cookies
Lynk uses cookies to monitor our website traffic, to ensure better service levels and to enable us to provide the delivery of service to you.
Types of Cookies
There are different types of cookies in use. They all work in the same way, but have minor differences:
Session cookies last only for the duration of your visit and are deleted when you close your browser.
They ensure security and integrity, preventing fraudulent use and keeping you signed in while you complete your booking request.
Persistent cookies remain after you have closed your browser. They allow us to remember your actions and website preferences. Lynk uses persistent cookies to analyse customer visits to our sites. These cookies help us to understand how customers arrive at and use our sites so we can improve the overall website experience.
Finally, we use analytics cookies to help us make our websites even better for those who visit them regularly. This type of cookie helps us to further understand how individual visitors use our on-line services and allows us to improve the overall service. This analysis is anonymous.
We do not partner with third parties or follow your behaviour outside of our site.