The card vault travel agents are switching to
Cleo Travel Vault gives travel agencies encrypted client card storage, named traveler profiles, passport uploads, and a secure client submission link — purpose-built for agencies, not hotels.
PCI DSS Level 1 · AES-256 Encryption · AWS Nitro Enclaves

Side by side
What travel agencies actually need
Most card auth tools were built for hotels. Travel Vault was built for agencies.
| Feature | Canary Technologies | |
|---|---|---|
| Encrypted client card vault | Yes | Card auth forms only |
| Named traveler profiles per client | Yes | Not available |
| Passport & document uploads | Yes | Not available |
| Secure link for client self-submission | Yes | Not available |
| Batch info requests (multiple clients at once) | Yes | Not available |
| Built specifically for travel agencies | Yes | Hotel-first platform |
| PCI DSS Level 1 compliance | Yes | Card auth forms |
| Vendor & supplier payments (AP) | Yes | Not available |
What you get
Everything in Travel Vault
Client card vault
Store client payment cards with AES-256 encryption and AWS Nitro Enclaves. Click-to-reveal with full audit trail.
Traveler profiles
Multiple named travelers per client account. Frequent flyer numbers, loyalty IDs, passport info — all in one place.
Document storage
Upload passports, visas, and government IDs against each traveler. Accessible when you need it, secure when you don't.
Secure client link
Send clients a link to submit their own card and travel details. No phone calls, no email threads, no back-and-forth.
Batch requests
Request information from multiple clients in one go. Onboard a new group tour without chasing anyone individually.
PCI DSS Level 1
The highest level of payment card security certification. AES-256 encryption, AWS Nitro Enclaves, full access logging.



Getting started
Switching takes less than a day
No data exports, no complex imports. Your clients submit their own information through a secure link.
Import your clients
Add your existing clients to Travel Vault manually or in bulk. Takes under 10 minutes for a typical agency book.
Send secure collection links
Each client gets a secure link to submit their cards and travel details directly. No PDF forms, no email attachments.
Start booking with confidence
Assign stored cards to specific travelers, pull up documents on the road, and process payments without ever exposing card numbers.
See Travel Vault in 20 minutes
We'll walk through your agency's specific workflow and show you how migration works.
FAQ
Common questions
Is Cleo Travel Vault only for travel agencies?
Travel Vault is purpose-built for travel agencies and is available as a feature-flagged workspace inside Cleo Pay. When enabled, it becomes your default dashboard. You also get Cleo Pay's full AP automation suite for paying suppliers and vendors.
How secure is the card storage?
Cards are encrypted with AES-256 and stored inside AWS Nitro Enclaves — isolated compute environments that prevent even Cleo's own infrastructure from accessing raw card data. We are PCI DSS Level 1 compliant.
How long does it take to migrate from another tool?
Most agencies are fully set up within a day. You add your client accounts, send each client a secure data-submission link, and they fill in their own information. No manual re-entry of card numbers required.
Can clients submit their own information?
Yes. You send each client a unique secure link. They enter their card details, passport info, loyalty numbers, and anything else you need directly. The data lands encrypted in your vault — you never handle raw card numbers over email or phone.
Does this replace my existing AP tools too?
It can. Cleo Pay includes accounts payable automation: vendor onboarding, invoice management, ACH payments, and 1099 compliance. You can manage supplier payments and client card storage in one place.