Privacy Policy & Data Processing Notice1. General provisions1.1. This Privacy Policy (the “Policy”) describes what personal (and other) data may be collected on the website mainpage123567.tilda.ws (the “Site”), how it is processed, stored, and protected.
1.2. The data controller is the owner of the Site (the “Controller”). By using the Site, you accept the terms of this Policy and consent to the processing of your data.
1.3. The Controller commits to implementing technical and organizational measures to protect your data from unauthorized access, loss, alteration, or disclosure.
2. What data may be collectedDepending on the actions you take on the Site (booking services, making payments, calling, filling out contact forms, using cookies, etc.), we may process the following data:
- Full name (first and last name);
- Contact information: phone number, email address;
- Payment and transaction data (e.g. payment identifiers) processed via payment service providers (the Site does not store credit card numbers, CVV codes, etc., if payments are processed via a third-party payment gateway);
- Technical/log data: IP address, device type, browser type, date and time of visit, requested URL — collected as server logs;
- Cookies, session data and other data for site operations, user authentication, cart/booking state, analytics, etc. (with your consent);
- Any other information you voluntarily provide via forms on the Site (comments, messages, preferences, etc.).
3. Purposes of data processingYour data may be processed for the following purposes:
- To provide the services you book or pay for on the Site;
- To organize and manage your booking or order;
- To contact you for clarifications, confirmations, payment verification, notifications (via phone, email or otherwise);
- For processing financial transactions and payment accounting via integrated payment providers;
- For accounting and record-keeping, if necessary;
- For technical support and Site maintenance;
- To protect the rights and legitimate interests of the Controller (e.g. in case of disputes, fraud prevention, security);
- With your consent — for marketing, newsletters, notifications, analytics, service improvement and user experience enhancement;
- To comply with applicable law.
4. Legal basis for processingData processing is based on:
- Your consent (when consent is required — e.g. for marketing, cookies, newsletters);
- The necessity to perform a contract (service provision, booking, payment, order);
- The legitimate interests of the Controller (e.g. fraud prevention, security, compliance with obligations).
5. Data sharing with third partiesThe Controller may share your data with third parties only in the following cases:
- Payment service providers — to process payments;
- Technical/service providers, hosting providers → for Site operation;
- When required by law — governmental or law enforcement agencies;
- With your explicit consent — e.g. marketing partners.
The Controller ensures that any third party receiving your data adheres to confidentiality and data protection requirements.
6. Data retention and storage periodPersonal data is stored no longer than necessary to achieve the purposes listed in section 3. After that, data is either deleted or anonymized.
7. User rightsYou have the following rights:
- Request access to your personal data that we process;
- Request correction of incorrect or incomplete data;
- Request deletion of your personal data (if this does not conflict with the Controller’s legitimate interests);
- Request restriction or cessation of data processing;
- Withdraw previously given consent (e.g. for marketing, cookies, newsletters);
- Obtain a copy of your data (data export);
- Lodge a complaint with the relevant data protection authority if you believe your rights have been violated.
8. Cookies and tracking technologiesThe Site may use cookies and other tracking technologies (localStorage, web-beacons, etc.) for:
- Site functionality (sessions, authentication, cart/booking state),
- Analytics and statistics,
- Marketing and advertising (with your consent).
You may disable non-essential cookies at any time via your browser settings or via consent settings on the Site.
9. Data securityThe Controller undertakes to apply technical and organizational measures to protect your data: encryption, access restrictions, secure data transfer channels (HTTPS), use of reliable providers, and staff training when access to personal data is allowed.
10. MinorsThe Site and its services are not intended for persons under 18. If the Controller becomes aware that data of a person under 18 has been collected, such data will be deleted immediately.
11. Changes to this PolicyThe Controller reserves the right to update this Policy. A new version takes effect upon posting on the Site. Continued use of the Site after changes constitutes acceptance of the updated Policy.
12. Contact informationIf you have any questions, requests or complaints — please contact the Controller by email:
[email address], or by phone:
[phone number].