This privacy policy explains how personal data is processed when you visit the Via Arriano 11 website and/or when you submit enquiries or make a booking.
1. Data controller
Data controller: Владелец: Aureliano Procacci · VAT 17869861009.
Address: Via Arriano 11, 00176, Roma RM
Phone: 3286755392
Email: viaarriano11@gmail.com
2. Data we process
- Contact data: name, email, optional phone number, message content.
- Booking data: check-in/check-out dates, number of guests, special requests.
- Technical data: IP address, security/diagnostic logs, limited browser technical information (as needed for security and service delivery).
- Payment data: online payments are processed by third-party providers (e.g. Stripe). The site does not store full card details.
3. Purposes and legal bases
- Handling enquiries and communications (legal basis: pre-contractual measures and/or legitimate interest).
- Managing bookings and the stay (legal basis: performance of a contract).
- Legal and tax compliance (legal basis: legal obligation).
- Website security and abuse prevention (legal basis: legitimate interest).
- Optional cookies (if enabled): legal basis: consent (see the Cookie policy).
4. How we process data
We process data using electronic tools and appropriate security measures. Access is limited to authorized personnel and service providers acting on behalf of the data controller.
5. Data recipients
Data may be shared with service providers supporting service delivery, for example:
- hosting and technical maintenance providers;
- payment providers (e.g. Stripe) to process transactions;
- email providers to send communications;
- competent authorities when required by law.
6. International transfers
Some providers (e.g. payment services) may process data outside the European Economic Area. Where applicable, transfers are carried out using safeguards provided by GDPR (e.g. Standard Contractual Clauses).
7. Retention
- Booking data: for the time needed to manage the stay and, when required, for accounting/tax compliance.
- Contact data: for the time needed to respond and manage follow-up requests.
- Technical/security logs: for a limited period proportionate to security and diagnostic purposes.
8. Your rights
You can exercise your rights under GDPR (access, rectification, erasure, restriction, portability, objection) and withdraw any consent at any time. You also have the right to lodge a complaint with the competent data protection authority.
9. Cookies
For details about cookies and how to manage your preferences, please see the Cookie policy.
10. Changes
We may update this policy. If significant changes are made, we will update the “Last updated” date.