BAIA DEL SOLE

Privacy Statement (EU)

Information on the processing of personal data collected via this website

1. Foreword and legal references
This notice explains the processing of personal data collected through this website, including data acquired through cookies, tracking technologies, and – where present – contact forms, private areas, digital services, and electronic transactions. .
The information is intended for anyone who accesses or uses this site, describing how user personal data is collected, used and protected, as well as the rights recognised by law.
These provisions do not apply to other websites, pages, or online services accessible via external links that may be present on the site, for which we invite you to consult the respective privacy policies.
This notice is provided in compliance with major national and international data protection regulations, including:

  • Regulation (EU) 2016/679 (GDPR)
  • Other applicable regulations.

2. Who manages your data and how can you contact us?
Your personal data is processed by:
Baia del sole Hotel
Lungomare Andrea Doria, 190 97010 Marina Di Ragusa
info@baiadelsolehotel.it
VAT Number: 01562380889

For any information regarding the processing of personal data or to exercise your rights under the regulations, data subjects may contact the Data Controller.

3. On what legal basis do we process your data?
The processing of personal data collected through this website (including data collected via cookies, similar technologies, contact forms, private areas, digital services, and transactions, where applicable) is based on one or more of the following legal grounds:

  1. Carrying out a pre-contractual service or activity request from the user via the contact forms provided;
  2. Compliance with legal obligations, regulations or standards;

A further legal basis, the legitimate interest of the Data Controller, can be used for specific purposes (e.g. to ensure IT security, prevent fraud, protect the Holder's rights in legal proceedings).

Failure to accept or the withdrawal of consent may reduce or limit certain functionalities or personalised services.

4. What data do we collect when you visit the site?
While browsing this site, the following data may be collected, including through cookies and similar technologies such as pixel tags, web beacons, local storage, and equivalent technologies:

  • Navigation and technical data information such as IP address, device identifiers, operating system and browser data, requested URLs, connection times, technical logs, technical preferences, usage data collected via cookies and tracking technologies (pixel tags, web beacons, local storage and equivalent tools).

  • Data provided via social integrations and third-party platforms: data transmitted via social features (login, plugins, shares, etc.), processed according to the rules of the respective platforms as well as according to this privacy policy.

5. How do we handle your data, how do we protect it, and for how long do we keep it?
The personal data collected via this website is processed mainly using electronic and digital tools, in accordance with principles of lawfulness, fairness, data minimisation, integrity, and confidentiality.

The data is stored for the following periods:

  • Cookie preferences and consents retained for 180 days, as per the Cookie Policy on this website.
  • Navigation and technical data retained only for as long as is necessary to ensure the safety, integrity, and functionality of the site and subsequently anonymised or aggregated.
  • Data collected for contractual and transactional purposes: retained for the period required by applicable laws (e.g., tax or accounting regulations).
  • Data processed for marketing purposes: Retained until consent is revoked or a deletion request is made.
  • Data entered via forms or specific requests retained for as long as necessary to respond to or fulfil the relevant purpose.

6. Who can receive your data?
They may access the personal data collected through this site, within the limits of their respective responsibilities and purposes:

  • Authorised internal subjects from the Data Controller, duly instructed on privacy and security matters;
  • Suppliers and third parties appointed as Data Processors (e.g.: technical providers, IT companies, customer support service companies, consultants, payment service providers and logistics providers, where applicable);
  • Business partners, third parties and affiliates, exclusively for promotional/marketing purposes if you have given specific consent or opted out where provided;
  • Subjects providing plugins, social networks and services for interaction with external platforms, who can process personal data according to their own logic as independent data controllers (in this case, please also consult the individual notices of such third parties);
  • Competent public authorities and supervisory bodies, within the limits imposed by law or to satisfy judicial requests;

The updated list of external recipients can be made available upon request by writing to the Data Controller's contact details.

7. Where can your data be transferred?
Personal data collected via this website may be processed and transferred – for the purposes indicated – to the following countries:

  • to countries belonging to the European Economic Area (EEA), Switzerland, or other countries recognised by the competent authorities as providing an “adequate” level of protection as required by law;

Updated list of "reliable" countries":

8. What are your rights regarding the data collected?
The user, in accordance with applicable legislation, has the right to:

  • To obtain confirmation as to whether personal data concerning them is being processed and, if so, to obtain access to such data and related information (right of access).
  • Requesting the rectification, update, or deletion of inaccurate or no longer necessary data (right to rectification and erasure).
  • Request to restrict or object to the processing of data, including for promotional/profiling purposes, where applicable.
  • Request data portability in a structured, interoperable format (where technically feasible).
  • Withdraw consent given for the use of non-technical cookies, for the processing of data collected via tracking tools.
  • Report any irregularities or abuses to the relevant supervisory authorities.

To exercise these rights, simply send a request to the Data Controller's contact details, and they will respond within the timeframe stipulated by the applicable local regulation.

9. How is the data of minors handled?
The protection of children is a fundamental priority.

The services and content on this website are not intended for persons under the age of 18.

We do not knowingly collect personal data from children without verifiable consent from a parent or guardian.

If a parent or guardian believes that a minor has provided personal data without authorisation, they may request its removal, updating, or restriction of processing by writing to the contact details indicated in this privacy policy.

10. How to make reports or complaints to the authorities?
If you believe that the processing of your personal data via this website does not comply with current legislation, you may lodge a complaint, free of charge, with the competent supervisory authorities, including:

How will we inform you of changes to this policy?
This notice is subject to periodic review to adapt to regulatory changes or modifications to the services offered via the website. Any significant changes will be communicated via this page.

This notice is made available by My Agile Privacy®.