Skip to content
ISIC

Privacy statement

Last updated: 2026-01-15

Who is responsible?

ISIC Belgium is the controller for data collected through this website. You can reach us at privacy@isic.be.

Which data do we process?

Application data: name, date of birth, address, email address, photo and your proof of status.

Contact data: whatever you enter in the contact form.

Website data: technical logs and — only with your consent — analytics and marketing cookies.

Why, and on which legal basis?

Processing your application and delivering your card: performance of the contract.

Answering your question: legitimate interest.

Analytics and marketing: only on the basis of your consent, which you can withdraw at any time.

Accounting and fraud prevention: legal obligation.

How long do we keep it?

Application data is kept for up to five years after the card expires, or longer where the law requires it. Contact messages are deleted after two years. Proof documents are deleted once verification is complete.

Who do we share it with?

With the ISIC Association for worldwide validation of your card, with our card printer and payment provider, and with IT suppliers working on our behalf. Transfers outside the European Economic Area take place with appropriate safeguards.

Your rights

You have the right of access, rectification, erasure, restriction, portability and objection. Send your request to privacy@isic.be. You may also lodge a complaint with the Belgian Data Protection Authority, Drukpersstraat 35, 1000 Brussels.