Privacy Policy
Last Updated: 14/03/2025
At Hotel Shawi, we are committed to protecting your personal data in compliance with the General Data Protection Regulation (GDPR). This policy outlines how we collect, use, and safeguard your information when you use our website or services.
1. Data We Collect
We may collect and process the following data:
Personal Information: Name, email, phone number, billing address, and payment details (processed securely via Stripe/PayPal).
Booking Details: Travel dates, room preferences, and special requests.
Technical Data: IP address, browser type, device information, and cookies (see our Cookie Policy).
2. Legal Basis for Processing
We process your data based on:
Contractual Necessity: To fulfill your reservation and provide services.
Consent: For marketing communications (e.g., newsletters).
Legal Obligations: To comply with tax, accounting, or regulatory requirements.
3. How We Use Your Data
Your data is used to:
Process bookings and payments.
Communicate reservation updates or offers (if consented).
Improve website functionality and user experience.
Prevent fraud and ensure compliance with laws.
4. Data Sharing
We share data only with trusted third parties necessary for service delivery:
Payment Processors: Stripe and PayPal (for transaction processing).
Service Providers: Email platforms, analytics tools, or IT support (under strict confidentiality agreements).
Legal Authorities: If required by law (e.g., tax audits).
Note: Stripe and PayPal operate under their own GDPR-compliant privacy policies.
5. Your Rights Under GDPR
You have the right to:
Access: Request a copy of your personal data.
Rectification: Correct inaccurate information.
Erasure: Request deletion of your data (unless legally required to retain it).
Restrict Processing: Limit how we use your data.
Data Portability: Receive your data in a transferable format.
Withdraw Consent: Opt out of marketing communications at any time.
To exercise these rights, contact us at support@hotelshawi.eu.
6. Data Security
We implement technical and organizational measures to protect your data, including:
Encryption of sensitive data (e.g., payment details via Stripe/PayPal).
Regular security audits and access controls.
Secure servers and HTTPS protocols.
7. Data Retention
We retain your data only as long as necessary:
Bookings: 7 years (for tax/legal compliance).
Marketing Data: Until consent is withdrawn.
8. Cookies & Tracking
We use cookies to enhance user experience. You can manage preferences via your browser settings or our Cookie Consent Banner.
9. International Data Transfers
Your data is stored within the EU/EEA. If transferred outside this region (e.g., via Stripe/PayPal), we ensure safeguards like Standard Contractual Clauses (SCCs).
10. Children’s Privacy
Our services are not directed at individuals under 16. If we inadvertently collect such data, contact us immediately for deletion.
11. Updates to This Policy
We may update this policy periodically. Changes will be posted on this page with a revised "Last Updated" date.
12. Contact Us
For GDPR-related inquiries, contact our Data Protection Officer (DPO):
Email: hello@hotelshawi.eu
Postal Address: [Insert Hotel Address]