7 Total
1 High severity
5 Medium severity
1 Low severity
Summary

This is Delta Air Lines' privacy policy, explaining what personal information Delta collects when you book flights, use the SkyMiles program, or visit delta.com, and how that information is used and shared. The most important thing to know is that Delta shares your personal data with promotional partners for marketing purposes, and if you participate in optional programs like biometric boarding, Delta collects and processes biometric identifiers such as facial recognition data. If you are a California resident or want to limit how your data is used for marketing, you can submit a privacy request or opt out through Delta's privacy portal at delta.com.

Technical / Legal Breakdown

This document is Delta Air Lines' Privacy and Security Policy, governing the collection, use, sharing, and protection of personal information submitted through delta.com and related services, with the stated basis of providing airline services, administering the SkyMiles loyalty program, and fulfilling legal and regulatory obligations. The policy asserts Delta's right to collect a broad range of personal data including contact information, payment details, travel preferences, biometric identifiers used in voluntary identity verification programs, and behavioral data derived from website and app interactions, and the terms authorize sharing this information with promotional partners, SkyMiles partners, government authorities, and service vendors. Notably, the policy discloses data sharing with promotional partners for marketing purposes and references voluntary participation in biometric programs (such as facial recognition for boarding), which are operationally distinct from typical airline privacy disclosures and warrant independent assessment under state biometric privacy laws; the agreement's assertions about broad sharing with partners may be constrained by applicable federal and state law. The policy engages the FTC Act (unfair or deceptive practices), the California Consumer Privacy Act, and potentially state biometric privacy statutes such as the Illinois Biometric Information Privacy Act and the Texas Capture or Use of Biometric Identifier Act; international travelers served through Delta's localized sites may also trigger GDPR obligations. Material compliance considerations include the adequacy of consent mechanisms for biometric data collection, the specificity of opt-out rights for promotional data sharing, and the scope of data retention practices disclosed in a separate linked retention notice.

Institutional Analysis

Institutional analysis available with Professional

Regulatory exposure by statute, material risk assessment, vendor due diligence action items, and enforcement precedent. Available on Professional.

Start Professional free trial
High — 1 provision
Medium — 5 provisions
Low — 1 provision

Monitoring

Delta Airlines has updated this document before.

Watcher includes same-day alerts, structured change summaries, and monitoring for up to 10 platforms.

Start Watcher free trial Or create a free account →

Professional Governance Intelligence

Need provision-level monitoring and regulatory mapping?

Professional includes governance timelines, compliance memos, audit-ready analysis, and full provision tracking.

Start Professional free trial

Cross-platform context

See how other platforms handle Biometric Data Collection for Voluntary Identity Programs and similar clauses.

Compare across platforms →

Mapped Governance Frameworks

CCPA/CPRA
California, USA
View official text ↗
Connecticut Data Privacy Act Amendments
US-CT
View official text ↗
FTC Act Section 5
United States Federal
View official text ↗
GDPR
European Union
View official text ↗
Indiana Consumer Data Protection Act
US-IN
View official text ↗
Kentucky Consumer Data Protection Act
US-KY
View official text ↗
Universal Opt-Out Mechanism Expansion 2026
US
View official text ↗
Archival ProvenanceSource & Archival Record
Last Captured May 5, 2026 06:29 UTC
Capture Method Automated scheduled archival capture
Document ID CA-D-000629
Version ID CA-V-001285
SHA-256 414d755bf5dda4a9c341e7e919b1d2c6d541496c6e2e03e395d758d53136ee72
✓ Snapshot stored ✓ Text extracted ✓ Change verified ✓ Hash verified

Governance Monitoring

Monitor governance changes across the platforms you rely on.

Structured alerts for policy changes, governance events, and provision updates across 318+ platforms.

Create free account Compare plans