PRIVACY POLICY
PRIVACY NOTE
Privacy Policy Notice on Processing Personal Data via this Website
The General Data Protection Regulation 2016/679 (GDPR) sets high standards for the protection of personal data. In compliance with these requirements and by applying recommended security standards and best practices, this privacy policy provides information on the collection and processing of personal data through this website. For any additional information, please contact us.
The General Data Protection Regulation 2016/679 (GDPR) sets high standards for the protection of personal data. In compliance with these requirements and by applying recommended security standards and best practices, this privacy policy provides information on the collection and processing of personal data through this website. For any additional information, please contact us.
DATA CONTROLLER
Full Name: Adriatic Kayak Tours ltd, travel agency
Headquarters: Zrinsko-Frankopanska 6, 20000 Dubrovnik, Croatia
Contact Phone Number: Tel: +385.20.312.770
Contact Email: info@adriatickayaktours.com
DATA PROTECTION OFFICER (DPO) The data controller has appointed a professional data protection officer.
They can be contacted for further information on the processing of personal data, to request access to your data, raise objections or complaints regarding processing, or request other information related to the processing of your personal data.
Contact: info@adriatickayaktours.com
DATA COLLECTION AND PROCESSING
Purpose of Collecting Personal Data Personal data through this website may be collected for the following
purposes:
1. To respond to inquiries and requests.
2. For the organization and purchase of excursions (tours).
3. For informing about news and special offers.
4. For the better functioning of the features of this website and providing a better user experience.
Categories of Personal Data Collected The following categories of personal data may be collected through this website:
1. Basic data (e.g., name and surname).
2. Contact details (e.g., email, phone number).
3. Data necessary for the organization and reservation of services (e.g., required bike size).
4. Payment data (e.g., payment method, payment date).
Purpose of Collecting Personal Data Personal data through this website may be collected for the following
purposes:
1. To respond to inquiries and requests.
2. For the organization and purchase of excursions (tours).
3. For informing about news and special offers.
4. For the better functioning of the features of this website and providing a better user experience.
Categories of Personal Data Collected The following categories of personal data may be collected through this website:
1. Basic data (e.g., name and surname).
2. Contact details (e.g., email, phone number).
3. Data necessary for the organization and reservation of services (e.g., required bike size).
4. Payment data (e.g., payment method, payment date).
The mentioned categories of personal data are used exclusively for the proper processing and execution of orders and for communication with the Customer regarding transactions and services.
Legal Basis for Processing Personal Data This website uses lawful bases for collecting personal data as follows:
1. Contract performance: Data is processed to enable the provision of the requested service.
2. Legal obligation: Data is processed whenever necessary to fulfill our legal obligations. For example,
processing personal data for financial accounting obligations.
3. Legitimate interests: Data is processed based on the legitimate interests of the company or third
parties, except when the overriding interests, rights, and freedoms of the data subject outweigh
those interests. This includes data used for marketing purposes, such as sending emails to deliver
notifications and updates about our products and services.
4. User consent: If the user explicitly gives consent for the processing of their personal data for a
specific purpose, such data is processed. This includes data collected through cookies to which the user agrees.
When we collect personal data to provide a service at the user's request and/or fulfill our legal obligations, it is necessary to provide all requested data. Without this data, we may not be able to provide the requested service. For example, if you do not fill in all the fields for the delivery of a product you intend to purchase, we will not be able to provide the requested service.
Legal Basis for Processing Personal Data This website uses lawful bases for collecting personal data as follows:
1. Contract performance: Data is processed to enable the provision of the requested service.
2. Legal obligation: Data is processed whenever necessary to fulfill our legal obligations. For example,
processing personal data for financial accounting obligations.
3. Legitimate interests: Data is processed based on the legitimate interests of the company or third
parties, except when the overriding interests, rights, and freedoms of the data subject outweigh
those interests. This includes data used for marketing purposes, such as sending emails to deliver
notifications and updates about our products and services.
4. User consent: If the user explicitly gives consent for the processing of their personal data for a
specific purpose, such data is processed. This includes data collected through cookies to which the user agrees.
When we collect personal data to provide a service at the user's request and/or fulfill our legal obligations, it is necessary to provide all requested data. Without this data, we may not be able to provide the requested service. For example, if you do not fill in all the fields for the delivery of a product you intend to purchase, we will not be able to provide the requested service.
LEGITIMATE INTERESTS
In certain situations, personal data may be processed based on established legitimate interests. When processing is based on this basis, objections to such processing may be raised. Processing cannot be restricted or suspended if there are compelling legitimate reasons for such processing that outweigh the interests, rights, and freedoms of the data subject, or when such processing is necessary for the establishment, exercise, or defense of legal claims. Such processing is in accordance with Article 6(1)(f) of the General Data Protection Regulation. The processing we carry out based on legitimate interests is as follows:
In certain situations, personal data may be processed based on established legitimate interests. When processing is based on this basis, objections to such processing may be raised. Processing cannot be restricted or suspended if there are compelling legitimate reasons for such processing that outweigh the interests, rights, and freedoms of the data subject, or when such processing is necessary for the establishment, exercise, or defense of legal claims. Such processing is in accordance with Article 6(1)(f) of the General Data Protection Regulation. The processing we carry out based on legitimate interests is as follows:
1) NEWSLETTER Data that may be processed: email address Purpose of processing: marketing. The newsletter may deliver information about our services and may include information about our special offers and benefits. Method of collection: directly from the data subject. In case the email address to which the newsletter is delivered is collected by other means, the data subject will be informed at the first contact. At any time, objections to the processing of the email address for marketing purposes may be raised, and processing may be restricted or completely prohibited.
RECIPIENTS OF PERSONAL DATA Collected personal data may be transmitted for use to providers of information and communication solutions and services who act as our processors, such as payment system providers. These processors provide reasonable assurances and have taken appropriate technical and organizational measures to protect data and comply with the requirements of the General Data Protection Regulation.
An agreement/contract on the processing of personal data based on Commission
Implementing Decision (EU) 2021/915 on standard contractual clauses between the controller and the processor has been concluded with such processors as a specific part of the contract. The agreement/contract specifies in detail the handling of personal data, therefore, they are not able to process personal data without our instructions and transfer them to third parties. Personal data is not transferred to third parties for direct marketing purposes.
Implementing Decision (EU) 2021/915 on standard contractual clauses between the controller and the processor has been concluded with such processors as a specific part of the contract. The agreement/contract specifies in detail the handling of personal data, therefore, they are not able to process personal data without our instructions and transfer them to third parties. Personal data is not transferred to third parties for direct marketing purposes.
DATA COLLECTED THROUGH SOCIAL MEDIA
Management of pages and profiles on social media is conducted under the name Adriatic Kayak Tours (brand). Personal contact data collected via these platforms are used solely for the purpose of responding to inquiries or comments and are not processed for other purposes. This practice ensures that the collected personal data of users are used only as indicated for the purpose of collection and in accordance with the received inquiries or comments.
Management of pages and profiles on social media is conducted under the name Adriatic Kayak Tours (brand). Personal contact data collected via these platforms are used solely for the purpose of responding to inquiries or comments and are not processed for other purposes. This practice ensures that the collected personal data of users are used only as indicated for the purpose of collection and in accordance with the received inquiries or comments.
OTHER WEBSITES
Other websites accessible through this website have their own privacy statements and data collection practices, as well as methods of use and disclosure. We are not responsible for the practices and terms of operation of third parties. Please review their privacy policies before accessing the content of the site.
Through this website, you can access services provided by Facebook, Instagram, YouTube, and LinkedIn.
Information regarding their Privacy Policies or statements about confidentiality, as well as how they use your personal data, can be found at:
FACEBOOK: https://www.facebook.com/policy.php
YOUTUBE: https://policies.google.com/privacy?hl=hr
INSTAGRAM: https://help.instagram.com/519522125107875
LINKEDIN: https://www.linkedin.com/legal/privacy-policy
Other websites accessible through this website have their own privacy statements and data collection practices, as well as methods of use and disclosure. We are not responsible for the practices and terms of operation of third parties. Please review their privacy policies before accessing the content of the site.
Through this website, you can access services provided by Facebook, Instagram, YouTube, and LinkedIn.
Information regarding their Privacy Policies or statements about confidentiality, as well as how they use your personal data, can be found at:
FACEBOOK: https://www.facebook.com/policy.php
YOUTUBE: https://policies.google.com/privacy?hl=hr
INSTAGRAM: https://help.instagram.com/519522125107875
LINKEDIN: https://www.linkedin.com/legal/privacy-policy
USE OF COOKIES
Through this website, personal data may be collected for the purpose of better functioning of website features and to enable a better user experience. For this purpose, non-intrusive cookies are used, and user consent is sought before their use, except for essential cookies. Such data is anonymous and does not contain individual identification data. For data processed based on consent, the user can manage them through cookie settings and withdraw their consent. It is important to note that withdrawing consent does
not affect the lawfulness of processing that occurred before the consent was withdrawn. Our aim is to ensure transparency and respect for user privacy during the use of this website. Therefore, we use personal data solely for the purpose communicated in advance and in accordance with applicable data protection regulations.
Through this website, personal data may be collected for the purpose of better functioning of website features and to enable a better user experience. For this purpose, non-intrusive cookies are used, and user consent is sought before their use, except for essential cookies. Such data is anonymous and does not contain individual identification data. For data processed based on consent, the user can manage them through cookie settings and withdraw their consent. It is important to note that withdrawing consent does
not affect the lawfulness of processing that occurred before the consent was withdrawn. Our aim is to ensure transparency and respect for user privacy during the use of this website. Therefore, we use personal data solely for the purpose communicated in advance and in accordance with applicable data protection regulations.
• General Information About Cookies
WHAT ARE COOKIES?
Cookies, also known as HTTP cookies, are small text files that websites store on a user's device (such as a computer, mobile phone, or tablet) when they visit a particular website. These cookies allow the website to remember the user's actions and settings over time. When the user revisits the same website, the cookies are sent back to the web server, enabling the website to recognize the user and provide a personalized experience.
WHAT ARE COOKIES?
Cookies, also known as HTTP cookies, are small text files that websites store on a user's device (such as a computer, mobile phone, or tablet) when they visit a particular website. These cookies allow the website to remember the user's actions and settings over time. When the user revisits the same website, the cookies are sent back to the web server, enabling the website to recognize the user and provide a personalized experience.
WHAT INFORMATION CAN COOKIES STORE?
Internet cookies can store various types of information related to the user and how the user uses a particular website. This includes identification data, user settings, contents of shopping carts on ecommerce websites, login data for user accounts, user activity on the website, user interests for content and ad personalization, visit duration (session), and user security and authentication data. Cookies are a tool that enables websites to improve the user experience and provide personalized services.
Internet cookies can store various types of information related to the user and how the user uses a particular website. This includes identification data, user settings, contents of shopping carts on ecommerce websites, login data for user accounts, user activity on the website, user interests for content and ad personalization, visit duration (session), and user security and authentication data. Cookies are a tool that enables websites to improve the user experience and provide personalized services.
PURPOSE OF COOKIES
The purpose of cookies is to optimize and enhance the user experience when visiting websites.
COOKIES ACCORDING TO FUNCTION
Technical cookies – mandatory cookies (Technical cookies, known as mandatory cookies, are always active as they are necessary for the proper functioning of websites and cannot be disabled in our systems. These cookies are usually set in response to your actions that involve requesting services, such as setting cookies, logging in, or filling out forms. It is possible to configure your browser to block these cookies or receive a warning about them, but this may result in certain parts of the website not functioning properly. It is important to note that these cookies do not store any information that could identify you.)
Functional cookies (can be disabled) – enable the website to provide enhanced functionality and
personalization.
Statistical cookies (can be disabled) – enable tracking of visits and traffic sources for the purpose of measuring and improving the effectiveness of the website.
Marketing cookies (can be disabled) – used to track users across websites and display targeted ads.
The purpose of cookies is to optimize and enhance the user experience when visiting websites.
COOKIES ACCORDING TO FUNCTION
Technical cookies – mandatory cookies (Technical cookies, known as mandatory cookies, are always active as they are necessary for the proper functioning of websites and cannot be disabled in our systems. These cookies are usually set in response to your actions that involve requesting services, such as setting cookies, logging in, or filling out forms. It is possible to configure your browser to block these cookies or receive a warning about them, but this may result in certain parts of the website not functioning properly. It is important to note that these cookies do not store any information that could identify you.)
Functional cookies (can be disabled) – enable the website to provide enhanced functionality and
personalization.
Statistical cookies (can be disabled) – enable tracking of visits and traffic sources for the purpose of measuring and improving the effectiveness of the website.
Marketing cookies (can be disabled) – used to track users across websites and display targeted ads.
TEMPORARY COOKIES (Session cookies) Temporary cookies or session cookies are removed from the computer upon closing the Internet browser. Temporary cookies enable websites to store temporary data, such as items in a shopping cart.
PERSISTENT COOKIES (Persistent cookies) Persistent or stored cookies remain stored on the computer after closing the Internet browser. With them, websites store data, such as login names and passwords, so that you do not have to log in each time you visit a particular site. Persistent cookies will remain on the computer for days, months, or even years.
FIRST-PARTY COOKIES First-party cookies come from the website that the user visits and can be either persistent or temporary. With the help of these cookies, websites can store data that will be reused during the user's next visit to that website.
THIRD-PARTY COOKIES Third-party cookies come from ads on other websites (such as pop-up or other ads) that appear on the website that the user visits. With these cookies, websites can track Internet usage for marketing purposes.
• Use of Cookies by this Website
COOKIES USED ON THIS WEBSITE This website uses cookies to enable a better user experience. We use technical cookies necessary for the functioning of this website, which cannot be disabled and do not require user consent, as well as statistical and marketing cookies for which we seek user consent and allow the user to manage them throughout the use of this website.
COOKIES USED ON THIS WEBSITE This website uses cookies to enable a better user experience. We use technical cookies necessary for the functioning of this website, which cannot be disabled and do not require user consent, as well as statistical and marketing cookies for which we seek user consent and allow the user to manage them throughout the use of this website.
TYPES OF COOKIES WE TYPICALLY USE
Session Cookies - These are temporary cookies that expire (and are automatically deleted) when the Internet browser is closed. The website uses session cookies to enable access to content.
Persistent Cookies - Typically, these cookies have an expiration date far into the future and will remain in the user's browser until they expire or until manually deleted. The website uses persistent cookies to better understand the habits of its users, so it can improve the website according to its visitors' habits. This
information is anonymous.
Third-party Cookies - There are several external services that may store limited cookies on computers. Such cookies are not set by this website, but some are used for the normal functioning of certain features that facilitate access to content for users.
1. Strictly Necessary Cookies These cookies are technically necessary for managing our website and providing the functionalities and services that are necessary. This type of cookie is considered essential under Privacy Directive 2002/58/EC, and user consent is required for them. The processing of associated data is based on consent and our legitimate interest in optimizing
usability.
2. Non-essential Cookies (Marketing/Analysis and Third-party Content) These cookies require your explicit consent for data processing. If you do not consent to them, they will not be collected, and your personal data will not be processed. It will also not affect the functionality of the website.
Session Cookies - These are temporary cookies that expire (and are automatically deleted) when the Internet browser is closed. The website uses session cookies to enable access to content.
Persistent Cookies - Typically, these cookies have an expiration date far into the future and will remain in the user's browser until they expire or until manually deleted. The website uses persistent cookies to better understand the habits of its users, so it can improve the website according to its visitors' habits. This
information is anonymous.
Third-party Cookies - There are several external services that may store limited cookies on computers. Such cookies are not set by this website, but some are used for the normal functioning of certain features that facilitate access to content for users.
1. Strictly Necessary Cookies These cookies are technically necessary for managing our website and providing the functionalities and services that are necessary. This type of cookie is considered essential under Privacy Directive 2002/58/EC, and user consent is required for them. The processing of associated data is based on consent and our legitimate interest in optimizing
usability.
2. Non-essential Cookies (Marketing/Analysis and Third-party Content) These cookies require your explicit consent for data processing. If you do not consent to them, they will not be collected, and your personal data will not be processed. It will also not affect the functionality of the website.
DISABLING COOKIES You can manage non-essential cookies on this website through the control panel. By disabling cookies, the user decides whether to allow cookies to be stored on their computer. Additionally, you can accept or reject some or all cookies by adjusting your browser settings. Cookie settings can also be controlled and configured in the Internet browser. You can find information on how to change settings for some of the most commonly used Internet browsers at the following links:
• Chrome
• Firefox
• Internet Explorer 9
• Internet Explorer 7 i 8
• Opera
• Safari
• Chrome
• Firefox
• Internet Explorer 9
• Internet Explorer 7 i 8
• Opera
• Safari
ADDITIONAL INFORMATION ABOUT DISABLING COOKIES
Some browsers allow you to navigate the Internet in "anonymous" mode, limiting the amount of data set on your computer and automatically deleting persistent cookies set on your computer or mobile device when you finish your browsing session. There are also many third-party applications that you can add to your browser to block or manage cookies. You can also delete cookies that have previously been set in your browser by selecting the option to delete browsing history and including the option to delete cookies. More detailed information about cookies and adjusting browser settings can be found at the following links:
• http://www.allaboutcookies.org/
• http://www.youronlinechoices.eu/
• http://www.aboutads.info/choices/
Some browsers allow you to navigate the Internet in "anonymous" mode, limiting the amount of data set on your computer and automatically deleting persistent cookies set on your computer or mobile device when you finish your browsing session. There are also many third-party applications that you can add to your browser to block or manage cookies. You can also delete cookies that have previously been set in your browser by selecting the option to delete browsing history and including the option to delete cookies. More detailed information about cookies and adjusting browser settings can be found at the following links:
• http://www.allaboutcookies.org/
• http://www.youronlinechoices.eu/
• http://www.aboutads.info/choices/
SECURITY OF PERSONAL DATA PROCESSING
We collect and process personal data in accordance with the General Data Protection Regulation (GDPR) in a manner that ensures appropriate security and confidentiality in their processing. Our goal is to enable the effective implementation of data protection principles, reduce the amount of data, the scope of their processing, the storage period, and ensure their availability. To this end, we have implemented appropriate technical and organizational security measures to ensure a level of security appropriate to the risks posed by data processing and the nature of the personal data being protected. When introducing these measures, we have taken into account the characteristics and costs to achieve an optimal balance between data protection and practical applicability. We regularly review all data processing activities that may pose risks
to the rights and freedoms of individuals. We have taken appropriate protective measures to ensure that personal data are protected from accidental or unlawful destruction, accidental loss, alteration, unauthorized disclosure, or access. We are particularly focused on data protection in cases where personal data are transmitted over networks and to prevent possible unlawful forms of processing.
We collect and process personal data in accordance with the General Data Protection Regulation (GDPR) in a manner that ensures appropriate security and confidentiality in their processing. Our goal is to enable the effective implementation of data protection principles, reduce the amount of data, the scope of their processing, the storage period, and ensure their availability. To this end, we have implemented appropriate technical and organizational security measures to ensure a level of security appropriate to the risks posed by data processing and the nature of the personal data being protected. When introducing these measures, we have taken into account the characteristics and costs to achieve an optimal balance between data protection and practical applicability. We regularly review all data processing activities that may pose risks
to the rights and freedoms of individuals. We have taken appropriate protective measures to ensure that personal data are protected from accidental or unlawful destruction, accidental loss, alteration, unauthorized disclosure, or access. We are particularly focused on data protection in cases where personal data are transmitted over networks and to prevent possible unlawful forms of processing.
EXERCISING YOUR RIGHTS
Right to Access - At any time, you can request confirmation of whether your personal data are being processed and detailed information about the processing, particularly about the purpose of processing, the type/categories of personal data being processed, including access to your personal data, recipients or categories of recipients, and the envisaged period for which personal data will be stored.
Right to Rectification - We ensure the right to rectification, and you can promptly obtain the correction of inaccurate and completion of incomplete personal data.
Right to Erasure - You have the right to request the deletion of your personal data. If the request is justified and if legal regulations do not require us to store the data, the data will be deleted without undue delay.
Right to Restriction of Processing - You have the right to request the restriction of processing of your personal data in cases provided for in the General Data Protection Regulation. We particularly emphasize that you can restrict the processing of personal data based on legitimate interest as a lawful basis for processing.
Right to Object - You have the right to object to the processing of your personal data in all cases provided for in the General Data Protection Regulation. We particularly emphasize that you can object to processing
based on legitimate interest as a lawful basis for processing and restrict or entirely prohibit processing.
Right to Lodge a Complaint - If you believe that the processing has resulted in a breach of your personal data and a violation of the provisions of the General Regulation, you can lodge a complaint with the supervisory authority, the Croatian Personal Data Protection Agency, located at Selska ulica 136 in Zagreb.
CONTACT INFORMATION
For further information about the processing of personal data or to exercise your rights, you can contact us via the Data Protection Officer or other contact details provided below.
Data Protection Officer: info@adriatickayaktours.com
Upon your identification, we will respond within 30 days in the usual electronic format unless otherwise requested.
For further information about the processing of personal data or to exercise your rights, you can contact us via the Data Protection Officer or other contact details provided below.
Data Protection Officer: info@adriatickayaktours.com
Upon your identification, we will respond within 30 days in the usual electronic format unless otherwise requested.
ADDITIONAL INFORMATION
This privacy policy is regularly reviewed, updated, and amended to always reflect the current state of data collection and processing through this website. Please check for such changes regularly. In case of changes that may affect your rights or substantially modify the previous notice of processing, especially in cases of changes in the purpose of processing, data disclosure, and transfer to third countries, a notice will be displayed in a pop-up window upon visiting this website.
This privacy policy is regularly reviewed, updated, and amended to always reflect the current state of data collection and processing through this website. Please check for such changes regularly. In case of changes that may affect your rights or substantially modify the previous notice of processing, especially in cases of changes in the purpose of processing, data disclosure, and transfer to third countries, a notice will be displayed in a pop-up window upon visiting this website.
Last updated: January 2024.
Address
Zrinsko-frankopanska 6
20000 Dubrovnik
Croatia
OIB (VAT no.): 77831836056
Tel: +385.20.312.770
Mobile: +385.99.860.6068 Ivan
Fax: +385.20.312.769