Privacy Policy

Clear information about personal data processing in connection with the website and your stay.

2. What data we process

Depending on the services used, we may process:

  • identification and contact details;
  • booking and stay information;
  • guest personal and identity-document details;
  • copies of documents uploaded to the reserved area;
  • tourist-tax and related payment information;
  • technical data strictly necessary for service operation and security.
Contents ↑

3. Why we process your data

Data is processed to answer enquiries, manage bookings and stays, comply with legal and administrative obligations, calculate and collect tourist tax, protect the service and establish or defend legal rights.

Depending on the circumstances, the legal bases are steps taken before entering into a contract or performance of the contract, compliance with legal obligations, and the legitimate interest in security and the protection of rights.

Contents ↑

4. Providing your data

Some data is necessary to manage the stay correctly and comply with applicable obligations. If it is not provided, some functions or the stay may not be managed correctly.

Any optional information is identified as such where it is requested.

Contents ↑

5. Bookings and external services

To check availability and prices or complete a booking, the website may redirect you to Little Hotelier, a SiteMinder service. That provider processes data under its own privacy notice.

Bookings may also come from external platforms, which operate under their own privacy notices.

Contents ↑

6. Guest area

The guest area is reserved for an individual stay. It may contain stay information and allow guest details and documents to be submitted, property information to be accessed, and tourist tax to be managed.

The personal access link must be kept secure and shared only with authorised people.

Access to the guest area ends at check-out.

Contents ↑

7. Guest documents

The front and back of an identity document may be uploaded solely for stay-related needs and applicable obligations. Copies are protected and deleted after the stay, once they are no longer needed for those purposes.

The system does not perform automated identity recognition.

Contents ↑

8. Tourist tax

Guest and stay data may be used to calculate and document the tax due, record payment status and meet applicable administrative and tax obligations. Information needed to manage exemptions under applicable rules may also be processed.

Contents ↑

9. Payments through Stripe

Stripe handles online payment of tourist tax. The website retains the information needed to verify transaction status. Full card details are entered directly in Stripe’s environment and are not stored by this website.

Stripe processes data under its own privacy notice.

Contents ↑

10. Cookies and technical technologies

The website uses only cookies and technical storage technologies required for operation, security and proper use of reserved areas.

No profiling or marketing tools are used.

Contents ↑

11. Recipients of data

Within their respective roles, data may be processed by authorised persons, technical hosting and maintenance providers, booking engines and booking platforms, payment providers, appointed professionals, and public bodies or authorities where required by law.

Contents ↑

12. International transfers

Some providers may process data outside the European Economic Area. Where this occurs, the safeguards required by applicable law are used.

Contents ↑

13. Retention

Personal data is retained for as long as needed to manage the stay and guest area and meet any applicable administrative and tax obligations. Deleting document copies does not entail deleting information still needed to meet those obligations.

Once no longer needed, personal data is deleted or reduced to the minimum necessary under the property’s procedures, subject to any retention obligations under applicable law.

Technical and security data is retained for as long as needed to operate the service, prevent abuse and protect access.

Contents ↑

14. Security

Appropriate technical and organisational measures are used to protect data against unauthorised access, loss, misuse or disclosure. However, no system can guarantee absolute security.

Contents ↑

16. Minors

Personal data relating to minors may be processed where necessary to manage the stay and comply with applicable obligations.

Contents ↑