Privacy Policy
This privacy policy explains how we collect, use, and protect your personal data when you use this service.
1. Data Controller
The operator of this website is responsible for processing your personal data. Contact information for the data controller can be found in the website footer.
2. Data We Collect
Account Information
When you create an account, we collect:
- Email address (required)
- Name (required)
- Phone number (required)
- Profile picture (optional)
Booking Information
When you make a booking, we collect:
- Booking dates and times
- Contact details for the booking
- Payment information (processed by Stripe)
- Any notes or special requests you provide
Analytics Data
We collect anonymous, aggregated analytics data to improve our service:
- Pages visited and general usage patterns
- Device type (desktop, mobile, tablet)
- Geographic region (derived from server location, not IP address)
- Search queries (anonymized)
Important: We do not store IP addresses. We respect the Do Not Track browser setting.
Technical Data
When you log in, we record:
- Session information for authentication
- IP address and browser information (for security purposes only)
3. Legal Basis for Processing
We process your data based on:
- Contract fulfillment: To process your bookings and provide our services
- Legitimate interest: For anonymous analytics, fraud prevention, and service improvement
- Legal obligation: To comply with tax and accounting requirements
4. Third-Party Services
We use the following third-party services that may process your data:
- Stripe - Payment processing (payment details, transaction info)
- Resend - Email delivery (email address, email content)
- Cloudflare - Image hosting (uploaded images)
- Mapbox - Map display (no personal data, map tiles only)
All third-party services are bound by data processing agreements and comply with GDPR requirements.
5. Data Storage and Security
- All data is stored within the European Union
- We use industry-standard encryption for data in transit and at rest
- Access to personal data is restricted to authorized personnel only
6. Data Retention
- Account data: Retained while your account is active
- Booking data: Retained for 7 years for tax and legal compliance
- Analytics data: Aggregated data retained indefinitely; user-level data retained for 2 years
- Session data: Automatically deleted upon expiration
7. Your Rights (GDPR)
You have the right to:
- Access: Request a copy of your personal data
- Rectification: Correct inaccurate personal data
- Erasure: Request deletion of your personal data (see limitations below)
- Portability: Receive your data in a machine-readable format
- Object: Object to processing based on legitimate interest
- Withdraw consent: Where processing is based on consent
Limitations on Erasure
We are required by law to retain booking and transaction records for tax and accounting purposes (typically 7 years). Upon erasure request, we will:
- Delete or anonymize your account information
- Retain anonymized transaction records as required by law
8. Cookies
We use essential cookies for:
- Authentication (keeping you logged in)
- Security (preventing fraud)
We do not use advertising or tracking cookies.
9. Changes to This Policy
We may update this privacy policy from time to time. The "last updated" date at the top of this page indicates when the policy was last revised.
10. Contact
For privacy-related inquiries or to exercise your rights, please contact the site operator using the contact information provided in the website footer.