Privacy Statement

According to the new EU General Data Protection Policy (GDPR) through this page, we wish to inform you about the Personal Data collected during the use of this website, how it is collected, how it is used for how long kept and finally let you know about your rights.

Definitions

Privacy

It is any information relating to a person identified or identifiable. An identifiable person is a person who can be identified, directly or indirectly, in particular by reference to an identifying element such as name, identifier, location data, electronic identifier or one or more factors specific to the physical, physiological, genetic , intellectual, economic, cultural or social identity of that natural person.

Processing

We mean any function or set of operations performed on personal data or in sets of personal data, whether or not by automated means such as collecting, recording, organizing, modifying, storing, adapting or modifying, retrieving, consulting, using, disclosing by transmission, dissemination or other mood, alignment or combination, restriction, deletion or destruction. The protection of your personal data is extremely important for the website and through this policy we will describe how we will respect any collection through its use.

Website ID

This website www.tinosaquapalazzo.com is property of: «HOTEL TOURISM SOCIETE ANONYME AND COMMERCIAL COMPANY SA»

The site is not required to have a Data Protection Officer. If you have any questions or concerns regarding the protection of your privacy, please do not hesitate to contact us either through the contact form or by sending an e-mail directly to info@tinosaquapalazzo.com

Data collected by the website

During your visit to the site we collect:

IP address

The IP address is captured temporarily whenever you access our site in our server logs, in the firewall logs. The purpose of this log is to ensure that the site and all its services are functioning properly, that the server is protected from malicious attacks and that any abuse is avoided. We want to make it clear that under no circumstances does this recording personalize you as IP addresses do not directly identify users (visitors).

Statistical Usage Information

The collection of statistical information is done through cookies, which are small text files that are necessary to improve the experience of using the site. These files are stored on your device and may recognize you uniquely every time you visit our site. Deleting these files is very easy. For more information about this, read below our Cookies Policy.

Data via Forms of Communication

When you send us a message through the contact form, we collect the information you give us through the form, asking you to consent each time to send this information to us for the purpose stated.

Data via Email

Any information you provide voluntarily by sending a request via email. We use this information to respond to your request.

Data via Online Reservations

Tinos Aqua Palazzo is collaborating with WebHotelier to arrange online reservation of the rooms. WebHotelier is committed to protecting the privacy of users of this system. WebHotelier is your data processor and its data is as follows: WebHotelier Technologies Limited Mnasiadou 9 (Demokritos Building, Office 16) 1065 Nicosia Cyprus

We collect any information you provide through the WebHotelier Online Booking System. These include:

• Personal information about who we are requesting you (eg your name, address, and email address) when making a reservation from WebHotelier.

• Financial details to process your reservation when we need prepayment.

• Details of the transactions you make via the booking engine and details of how to fulfill your orders.

• Web Hotelier can only collect and process personal data collected and / or processed on our behalf in accordance with our instructions. WebHotelier can not process in any other way or for any other purpose.

In any case, in order to process an online room reservation via WebHotelier, you must agree to the corresponding Privacy Policy at checkout.

Why we collect them

The collection of all the above data is limited to what is strictly necessary for your safe and efficient service. It aims at improving the experience of using the website, communicating directly with you and answering your questions or requests and detecting spam and security breaches.

Your consent to the Privacy Policy of this site is mandatory in its core functions: Contact form & Form of interest

In order to prove the consent of the user to the processing of personal data, the data and the time at which you gave your consent are recorded.

Sensitive Personal Data

The site will never ask you to enter data about religious beliefs, political and philosophical beliefs, sexual orientation, or ethnic origin.

Data Sharing

We are likely to share data that you submit to our site's contact form or by direct mailing with our partners. This is only possible if an inquiry is required to create an offer to provide the service you request. Under no circumstances are personal data communicated, but only the details that describe your request.

The cases in which this data is likely to be communicated to third parties are indicative but not limited to:

• To the web site administrators

• In a very rare case, a third-party technician may have limited time and controlled access to resolve software problems that are used on the page.

• Upon a court or public prosecutor's office or a request from a police authority to conduct an investigation.

In no other case, we transmit, sell, rent or disclose personal data to visitors to the site to third parties for any reason whatsoever.

How long do we keep your data?

We will retain your data for as long as is necessary for the purpose for which it was submitted, taking into account the legal requirements of applicable law.

Security measures for data protection

Data stored on our site is stored on servers that are protected by strong security measures. Our website makes use of the Secure Socket Layer (SSL) protocol to help protect your personal data. Based on this technology, each personal item is registered, encoded before it comes online, and then the authenticity of the message and the server is investigated. The site uses a SSL-256bit certificate that appears as a padlock to the left of the address bar every time you enter pages to be transacted, confirming that your transaction is protected. We periodically back up our data in order to be able to recover in the event of technical failure.

Your rights

The provision of personal data on our website is on a completely voluntary basis. If you choose not to provide the requested information, basic features of the webpage may not be available. In some cases, only those who have submitted us the required personal data are in a position to contact us through the Contact Form or to express an interest.

We have the ability to maintain control of your data. Your choices include displaying and editing your data.

If any of the information you have given us changed, e.g. if you change your email address, if you want to change other contact information, please let us know by sending an email describing the changes to: info@tinosaquapalazzo.com

In general, you have the following rights:

The right to request access to your personal data

You have the right to correct, edit or delete your stored personal data. You can also send your request to: info@tinosaquapalazzo.com. Without undue delay in receiving your request, we will comply with your request. If for any reason we can not comply with your request and we will contact you.

The right to modify and / or delete your personal information

You have the right to correct, edit or delete your stored personal data. You can also send your request to: info@tinosaquapalazzo.com. Without undue delay in receiving your request, we will comply with your request. If for any reason we can not comply with your request and we will contact you.

ΔThe right to terminate the processing of your personal data

In special circumstances, you have the right to terminate the processing of your personal data. You can contact us at: info@tinosaquapalazzo.com

The right to data portability

You have the right to receive your personal data in a structured, widely used and readable format from devices ("data portability") and you have the right to transfer this data to another data controller. You may request the transfer of your data by contacting us at: info@tinosaquapalazzo.com. Without undue delay in receiving your request, we will comply with your request. If for any reason we can not comply with your request and we will contact you.

The right to prohibit the processing of your personal data and to unsubscribe

You have the right to ask us not to process your personal data when processing is based on our legitimate interest. You can exercise your right to prohibit the processing of your data at any time by sending your request to: info@tinosaquapalazzo.com. In any other case, please contact with info@tinosaquapalazzo.com to delete your account.

The right to withdraw your consent at any time

At any time you are entitled to withdraw your consent to the processing of your personal data. However, withdrawal of consent does not affect the legitimacy of consent-based processing prior to its withdrawal. Please contact us at info@tinosaquapalazzo.com to withdraw your consent.

Terms and / or limitations of your rights

There may be terms or limitations to the above rights. Therefore, we are not in a position to guarantee your right to transfer or delete the data, as it depends on the specific conditions of the processing activity.

Updates to privacy policy

We regularly review and, where appropriate, update our privacy policy. If we want to use your personal information in a way we have not previously mentioned, we will contact you to provide you with information about it and, if necessary, ask for your consent.

Cookie Policy

What are cookies?

Cookies are small files that are stored in your app you use to browse the web. Usually each website or application stores one or more cookies on your device in order to keep the information deemed necessary for your smooth and optimal navigation. Depending on their duration, cookies can be divided into:

• "Session Cookies" that are automatically deleted when you close your browser.

• "Persistent Cookies" that are stored in your terminal equipment until their predetermined power is reached.

Τhe site use cookies

Cookies are used for the best purpose of your web site experience. You should keep in mind that non-use of cookies may cause problems in the browser and the functions of the site. Therefore, without the use of cookies, we can not offer a smooth and effective navigation experience. We make sure you can either completely or individually disable them.

The cookies we use are divided into 4 main categories:

Necessary

• Remember your login information and provide you with a secure connection.

• Ensure that the web page is properly viewed.

Functionality

• Remind your preferences on the website. These cookies greatly affect the functionality of the site.

Statistics

This category's cookies collect anonymous information, through Google Analytics, about the behavior of users-visitors when they navigate to the site. They store information about website usage and performance statistics.

Their purpose is to improve the functionality and performance of the site. Their use is governed by Google's Privacy Policy.

Marketing

• Allow third parties to provide you with interest-based ads on sites that do not belong to us. They do not store personal information directly, but rely on identifying your browser and device.

• Allow you to interact with our website through social networks.

Enabling cookies

Upon entering the website, a box at the bottom of the page informs you of the use of cookies on our behalf. If you decide to browse our site and if you have properly configured your browser, please provide your explicit and specific consent to such use. Otherwise, you are required to refrain from browsing within our site.