This is a register and Privacy Statement in accordance with the EU General Data Protection Regulation (GDPR) for Pursihuvilat. Prepared on 31.05.2021. Last modified 31.05.2021.
1. Data controller
2. Contact person responsible for the register
+358 50 5294 118
3. Name of the register
Customer register for Pursihuvilat
4. Purpose of the processing of personal data
The purpose of processing personal data is to communicate with customers, maintain a customer relationship, marketing, etc.
The data is not used for automated decision making or profiling.
Service development through feedback.
5. Information content of the register
The information to be stored in the register is: Name, address, telephone number, e-mail
The IP addresses of the website visitors and the cookies necessary for the functions of the service are processed on the basis of a legitimate interest, e.g. to ensure data security and to collect statistics about visitors to the site in cases where they may be considered personal data. If necessary, the consent of third-party cookies will be requested separately.
6. Regular sources of information
The information stored in the register is received from the customer by, for example, messages sent via online forms, e-mail, telephone, social media services, contracts, customer meetings and other situations in which the customer discloses his information.
Contact information for companies and other organizations can also be collected from public sources such as websites, directory services, and other companies.
Gathering feedback from Facebook, Instagram, Google and the villa guestbook.
Google visitor tracking.
7. Regular disclosures
The information is not regularly disclosed to other parties. The information may be published to the extent agreed with the customer.
8. Registry security principles
The register shall be handled with due care and the data processed by the information systems shall be adequately protected. When registry information is stored on Internet servers, the physical and digital security of their hardware is adequately addressed. The controller shall ensure that the data stored, as well as the access rights to the servers and other information critical to the security of personal data, are treated confidentially and only by the employees whose job description it includes.
Manual material: the booking book is kept for our own use only. Not disclosed to other parties.
9. Right of inspection and right to request correction of information
Every person in the register has the right to check the information stored in the register and to request the correction of any incorrect information or the completion of incomplete information. If a person wishes to check the data stored about him or her or request a correction, the request must be sent in writing to the data controller. If necessary, the controller may ask the applicant to prove his or her identity. The controller will respond to the customer within the timeframe set out in the EU Data Protection Regulation (generally within one month).
10. Other rights related to the processing of personal data
A person in the register has the right to request the removal of his or her personal data from the register (“the right to be forgotten”). Data subjects also have other rights under the EU’s general data protection regulation, such as restrictions on the processing of personal data in certain situations. Requests must be sent in writing to the controller. If necessary, the controller may ask the applicant to prove his or her identity. The controller will respond to the customer within the time limit set by the EU Data Protection Regulation (generally within one month).