Privacy Policy
Grow Travel by Levin Travel Ltd · Effective date: August 25, 2026 · Last updated: August 27, 2026
On this page
- 1. Who we are
- 2. Information we collect
- 3. How we collect information
- 4. How we use your information
- 5. Our legal basis for processing
- 6. Cookies and tracking technologies
- 7. Who we share information with
- 8. International data transfers
- 9. How long we keep your information
- 10. Privacy rights — EU/EEA, UK, Switzerland
- 11. Privacy rights — Israel
- 12. Privacy rights — U.S. states
- 13. Privacy rights — Canada, Brazil, South Africa
- 14. Children’s privacy
- 15. Data security
- 16. Changes to this policy
- 17. Contact us
1. Who we are
Grow.Travel (“Grow Travel,” “we,” “us,” or “our”) is a travel brand operated by Levin Travel Ltd, a company registered in Israel (“Levin Travel,” the data controller for the purposes of this policy). This Privacy Policy explains what personal information we collect through grow.travel and related landing pages, forms, and communications (together, the “Site”), why we collect it, how we use it, and the choices and rights you have — including rights specific to where you live.
By using the Site or submitting information to us — including through an inquiry form, a call booking, or a membership application — you acknowledge that you have read and understood this Privacy Policy.
2. Information we collect
We collect the following categories of information:
Information you provide directly
- Contact details — name, email address, phone number, country/location.
- Travel and family details — preferences, family composition, travel dates, destinations of interest, budget range, and other information you choose to share when requesting a curated trip or membership consultation.
- Communications — messages, call notes, and correspondence you send us by form, email, phone, or chat.
- Payment-related information — where applicable to a booking or membership, billing name and payment details are collected and processed by our payment processor; we do not store full card numbers on our own systems.
Information collected automatically
- Device and usage data — IP address (used, among other things, to determine your general location for consent-banner purposes), browser type, device type, pages viewed, referring URL, and time spent on the Site.
- Cookies and similar technologies — see our Cookie Policy for full detail on what we use, why, and how consent is handled depending on where you are.
Information from third parties
- Information passed to us by advertising and lead-generation platforms (for example, when you submit a lead form connected to a Meta/Instagram ad campaign) is received via our CRM.
3. How we collect information
We collect information when you:
- Submit an inquiry, membership application, or newsletter sign-up form on the Site (these forms are hosted and processed through GoHighLevel, our CRM provider);
- Book or attend a call or consultation with our team;
- Correspond with us by email or phone;
- Browse the Site, through cookies and analytics tools described in our Cookie Policy.
4. How we use your information
We use personal information to:
- Respond to your inquiry and follow up on requests for trip curation, membership information, or bookings;
- Plan, personalize, and administer trips and membership services;
- Communicate with you, including sending confirmations, updates, and — where you have consented or it is otherwise permitted — marketing communications about Grow Travel offerings;
- Operate, maintain, and improve the Site, including measuring which content and campaigns perform well;
- Run and measure advertising campaigns on platforms such as Meta (Facebook/Instagram) and Google;
- Comply with legal, tax, and regulatory obligations, and establish, exercise, or defend legal claims;
- Detect, prevent, and address fraud, security, or technical issues.
5. Our legal basis for processing
Where the EU General Data Protection Regulation (“GDPR”), UK GDPR, or Swiss FADP applies to our processing of your personal data — including where you are located in the EU/EEA, UK, or Switzerland and reach us through organic content rather than targeted advertising — we rely on the following legal bases:
- Consent — for marketing communications and non-essential cookies, which you can withdraw at any time.
- Performance of a contract — to respond to your inquiry, prepare a proposal, or deliver a booked trip or membership service.
- Legitimate interests — to operate and improve the Site, run essential analytics, and safeguard our business, provided these interests are not overridden by your rights.
- Legal obligation — to comply with accounting, tax, and other applicable laws.
Israel’s Protection of Privacy Law (including Amendment 13), Quebec’s Law 25, Brazil’s LGPD, and South Africa’s POPIA apply comparable consent and legitimate-interest concepts to our processing where those laws govern; see Sections 11 and 13 for the rights each of those regimes gives you specifically.
6. Cookies and tracking technologies
We use Cookiebot as our consent management platform, alongside Google Analytics 4, Meta Pixel, Microsoft Clarity, and cookies set by our CRM (GoHighLevel), to operate the Site, understand how it is used, and measure and improve our advertising. Depending on where you are located, you are shown either a granular opt-in banner, a lighter opt-out “Do Not Sell or Share My Personal Information” control, or no banner at all, consistent with the law that applies in your location. Full detail — including exactly which regions receive which treatment, and how to manage your preferences — is set out in our Cookie Policy.
7. Who we share information with
We do not sell your personal information for money. We share it only as follows:
- Service providers — companies that process data on our behalf and under our instructions, including GoHighLevel (CRM, forms, and email/SMS communications), Cookiebot (consent management), Google (analytics and advertising), Meta (advertising), Microsoft Clarity (session analytics), hosting providers (including Vercel), and payment processors.
- Travel suppliers and partners — where necessary to plan or deliver a trip you have booked (for example, hotels, guides, or local operators), limited to what is needed to fulfill the booking.
- Levin Travel Ltd — as Grow Travel operates as a brand of Levin Travel Ltd, information may be shared internally between teams for the purposes described in this policy.
- Legal and safety purposes — where required by law, regulation, legal process, or governmental request, or to protect the rights, property, or safety of Grow Travel, our clients, or others.
- Business transfers — in connection with a merger, acquisition, or sale of assets, subject to appropriate confidentiality protections.
Sharing information with advertising partners such as Meta and Google in exchange for the ability to run and measure targeted advertising may be considered a “sale” or “sharing” of personal information under some U.S. state privacy laws. See Section 12 for how to opt out where that applies to you.
8. International data transfers
Levin Travel Ltd is based in Israel. Israel has been recognized by the European Commission as providing an adequate level of data protection for the purposes of the GDPR, which permits transfers of personal data from the EU/EEA to Israel without additional safeguards. Where we use service providers based outside Israel or the EU/EEA (such as US-based providers like Google, Meta, Microsoft, and GoHighLevel, or Cookiebot/Usercentrics), we rely on those providers’ own compliance mechanisms, including standard contractual clauses or equivalent safeguards, to protect your information.
9. How long we keep your information
We retain personal information for as long as necessary to fulfill the purposes described in this policy, including to respond to your inquiry, deliver a booked trip or membership, maintain business records for accounting and tax purposes, and comply with legal obligations. Marketing contact details are retained until you unsubscribe or request deletion, or until they become inactive for an extended period, whichever is earlier.
10. Privacy rights — EU/EEA, UK, Switzerland
If you are located in the EU/EEA, UK, Norway, Iceland, Liechtenstein, or Switzerland, you may have some or all of the following rights over your personal information:
- Access — request a copy of the personal information we hold about you.
- Rectification — ask us to correct inaccurate or incomplete information.
- Erasure — ask us to delete your personal information, subject to legal retention requirements.
- Restriction and objection — ask us to limit how we use your information, or object to certain processing, including direct marketing.
- Portability — request your information in a portable format, where applicable.
- Withdraw consent — where processing is based on consent, withdraw it at any time without affecting processing carried out before withdrawal.
- Lodge a complaint — with your local data protection authority, if you believe we have not handled your information properly.
To exercise any of these rights, contact us using the details in Section 17 below.
11. Privacy rights — Israel
If you are located in Israel, you have rights under Israel’s Protection of Privacy Law, 5741-1981, including the right to review and request correction of information held about them in our databases. Amendment 13 to that law, effective August 2025, and the Israeli Privacy Protection Authority’s 2026 guidance built on it, require that non-essential tracking be based on consent that is freely given, specific, informed, and unambiguous — including a reject option with equal prominence to accept, granular category choices, a persistent way to withdraw consent, and availability in Hebrew. This is why, if you are visiting from Israel, you are shown the granular opt-in banner described in Section 6 and in our Cookie Policy. You may lodge a complaint with the Israeli Privacy Protection Authority if you believe we have not handled your information properly.
12. Privacy rights — U.S. states
A number of U.S. states give their residents rights over personal information, generally including the right to know what personal information we hold about you, the right to request deletion, the right to correct inaccurate information, the right to opt out of the “sale” or “sharing” of your personal information (including for targeted/cross-context behavioral advertising), and the right not to be discriminated against for exercising these rights.
As described in our Cookie Policy, we apply two different mechanisms depending on the state:
- In Virginia, Colorado, Utah, Texas, Iowa, Nebraska, New Jersey, Tennessee, Minnesota, Indiana, Kentucky, and Rhode Island, non-essential cookies run by default and you can opt out of sale/sharing at any time using the “Do Not Sell or Share My Personal Information” control on the Site.
- In California, Connecticut, Delaware, Florida, Illinois, Maryland, Massachusetts, Montana, New Hampshire, Pennsylvania, Washington, Nevada, and Oregon, we apply the stricter opt-in banner described in Section 6, in part because several of these states’ wiretap-style statutes have been used to bring private lawsuits over pixel and analytics tracking; opting in or out through that banner also satisfies your sale/sharing opt-out rights under any comprehensive privacy law in that state.
To exercise a request to know, delete, or correct your information beyond what the cookie banner covers, contact us at info@grow.travel. We will not discriminate against you for exercising any of these rights. We do not knowingly sell or share the personal information of minors under 16.
13. Privacy rights — Canada, Brazil, South Africa
If you are located in Canada, Quebec’s Law 25 (applied by us across Canada for consistency) gives you rights to access, correct, and request deletion of your personal information, and requires opt-in consent for non-essential tracking, which is why Canadian visitors are shown the granular opt-in banner described in Section 6.
If you are located in Brazil, the Lei Geral de Proteção de Dados (LGPD) gives you rights to confirmation of processing, access, correction, anonymization, portability, deletion, and information about who we share your data with, and requires a valid legal basis such as consent for non-essential tracking.
If you are located in South Africa, the Protection of Personal Information Act (POPIA) gives you rights to access and correct your information, object to processing, and lodge a complaint with the Information Regulator, and requires consent or another lawful basis for non-essential tracking.
To exercise any of these rights, contact us using the details in Section 17 below.
14. Children’s privacy
The Site is directed at adults planning family travel and is not intended for use by children. We do not knowingly collect personal information directly from children, and we do not knowingly sell or share the personal information of minors under 16. Where information about a child is provided by a parent or guardian as part of planning a family trip, it is used solely for that purpose and is not used for marketing directed at the child.
15. Data security
We use reasonable technical and organizational measures designed to protect personal information against unauthorized access, loss, misuse, or alteration. However, no method of transmission or storage is completely secure, and we cannot guarantee absolute security.
16. Changes to this policy
We may update this Privacy Policy from time to time to reflect changes in our practices, our tracking technology, or applicable law — including as more jurisdictions adopt comprehensive privacy legislation. The “Last updated” date at the top of this page indicates when it was last revised. Material changes will be highlighted on this page or communicated to you directly where appropriate.
17. Contact us
If you have questions about this Privacy Policy or wish to exercise any of your privacy rights, contact us at:
Grow Travel, a brand of Levin Travel Ltd
Email: info@grow.travel
Registered office: Levin Travel Ltd, 49A HaKalanit St, Elyakhin 3890800, Israel. Company No. 515593192.