1. Data Controller Identification
This Privacy Policy outlines how your personal information is collected, used, protected, and shared when visiting tabarotpatrice.com. The data controller responsible for personal data collected under this policy is TABAROT PATRICE, JEAN, with registered corporate address at 8 Rue Georges Brassens, 11610 Pennautier, France. You can reach our designated Data Protection Officer via email at contact@tabarotpatrice.com.
2. Scope and Application of this Policy
This policy applies exclusively to data collected through tabarotpatrice.com, including our online contact forms, reservation inquiry systems, cookie consent mechanisms, and general website browsing. It does not govern data collected directly by third parties such as Radisson Hotel Group, Casino Copenhagen, or external online travel agencies.
3. Categories of Personal Information Collected
We may collect, store, and process the following categories of data: (a) Identity and contact details including full name, email address, and phone number when submitted via our forms; (b) Stay preferences including desired check-in/check-out dates, room category selections, guest counts, and special concierge notes; (c) Technical and connection data such as IP address, browser type, device identifiers, time zone settings, and browsing actions via essential/analytical cookies.
4. Legal Bases for Data Processing (EU GDPR Art. 6)
In compliance with Regulation (EU) 2016/679 (GDPR), we process your personal data under the following lawful bases: (a) Consent (Art. 6(1)(a)) for optional cookies and direct marketing; (b) Legitimate Interests (Art. 6(1)(f)) for website security, technical optimization, and preventing fraudulent inquiries; (c) Pre-contractual measures (Art. 6(1)(b)) to respond to your explicit reservation inquiries and concierge requests; (d) Legal compliance (Art. 6(1)(c)) to satisfy regulatory and accounting obligations.
5. Purposes of Processing
We process your data strictly to: (a) Operate and maintain the functionality of tabarotpatrice.com; (b) Process, validate, and respond to accommodation inquiries and guest requests; (c) Provide customer support and address user feedback; (d) Analyze aggregated visitor trends to improve site performance; (e) Detect, prevent, and mitigate security threats, malicious bot traffic, and unauthorized access.
6. Reservation Inquiries and Concierge Disclaimers
When you submit a reservation inquiry through our platform, your data is processed solely to assess your accommodation requirements and assist with itinerary guidance. Submitting an inquiry does not generate a binding direct contract with Radisson Blu Scandinavia Hotel or Casino Copenhagen. We do not process direct room payments or store credit card payment details on our servers.
7. Cookies, Web Beacons, and Tracking Technologies
We use first-party and third-party cookies to ensure seamless navigation, remember user preferences (such as language selection), and monitor site reliability. Full details on cookie types, lifespan, and opt-out controls are detailed in our Cookie Policy.
8. Third-Party Service Providers and Data Sharing
We never sell, rent, or trade your personal information. We may disclose necessary data to trusted third-party service providers bound by strict data processing agreements, including: (a) Cloud hosting and infrastructure providers in the EEA; (b) Technical analytics services operating in compliance with GDPR; (c) Law enforcement or regulatory authorities only when legally mandated by a valid judicial order.
9. International Data Transfers
Our primary data storage and server infrastructure are located within the European Economic Area (EEA). If any service provider processes data outside the EEA, transfers are governed by appropriate safeguards approved by the European Commission, such as Standard Contractual Clauses (SCCs) or adequacy decisions.
10. Data Retention Schedules
Personal data is retained only for as long as necessary to fulfill the specific purposes outlined herein: (a) General inquiry and contact form data is retained for up to 12 months following resolution; (b) Web server logs and technical records are kept for a maximum of 90 days for security auditing; (c) Cookie identifiers expire in accordance with the schedules in our Cookie Policy.
11. Your Data Protection Rights Under GDPR
Under European data protection law, you possess enforceable rights regarding your personal information: (a) Right of Access (Art. 15); (b) Right to Rectification (Art. 16); (c) Right to Erasure / 'Right to be Forgotten' (Art. 17); (d) Right to Restriction of Processing (Art. 18); (e) Right to Data Portability (Art. 20); (f) Right to Object (Art. 21); (g) Right to Withdraw Consent at any time without affecting prior lawful processing.
12. Technical and Organizational Security Measures
We employ robust technical and organizational safeguards including 256-bit TLS/SSL encryption in transit, strict access control policies, regular firewall maintenance, and vulnerability assessments to protect your personal information against unauthorized disclosure, alteration, loss, or destruction.
13. Minor Protection and Age Requirements
Our website and concierge services are directed exclusively at individuals of legal age (18 years or older). We do not knowingly collect personal data from minors under 18. If you believe a minor has submitted personal information, please contact us immediately for prompt deletion.
14. Amendments, Notifications, and Contact
We reserve the right to modify this Privacy Policy periodically. Significant changes will be announced on this page with an updated revision date. For questions, data subject requests, or supervisory inquiries, please write to: TABAROT PATRICE, JEAN, 8 Rue Georges Brassens, 11610 Pennautier, France, or email contact@tabarotpatrice.com.