Privacy Policy
PRIVACY POLICY
This page describes how the website manages the processing of personal data of users who visit it. The processing is always based on principles of legality and fairness, in compliance with all current regulations, and appropriate security measures are adopted to protect the data.
This privacy policy is also provided as brief information pursuant to Article 13 of Legislative Decree 196/2003 and Article 13 of GDPR 679/2016 (European Regulation on privacy), as well as pursuant to the Cookie Provision No. 229 of May 8, 2014, to inform website visitors about the use of the data provided. Regarding the cookies used by this website, please refer to the specific cookie policy. The information is also provided in compliance with Recommendation No. 2/2001 adopted by the Working Party established by Article 29 of Directive 95/46/EC for those who interact with the web services of this site, aiming at protecting personal data, accessible electronically from the address: www.hotelvirgilio.it.
By using any of our services and/or accepting this Policy, for example during registration for one of our services, you consent to the collection and use of your personal information as described in this Policy.
This Policy describes the practices we have adopted.
Please note that this Policy does not apply to the processing of personal information on behalf of and under the instructions of third parties, such as airlines, car rental companies, and other service providers, companies that organize or offer travel packages, business partners, or corporate customers.
1) PERSONAL INFORMATION WE COLLECT
On any occasion of contact or interaction with a guest and in all other aspects of our work, we may collect personal information. This personal information may include: your contact information; personal characteristics, nationality, passport number and the date and place of issue; travel history; payment information, such as payment card number and other card information, as well as authentication information and other billing-related details; preferences, with your written consent; additional personal information collected during registration/check-in at our hotel, including information required by local laws.
Event Profiles
If you plan to organize an event with us, we will record the event or meeting specifications, date, number of guests, guest room details, and for corporate events, information about your organization (name, annual budget, number of sponsored events each year). We also collect information about guests who are part of your group or event. If you visit us as part of a group, we may request your personal information from the group and may send commercial information, with your express consent, after your stay with the group or participation in an event. If you visit us as part of an event, we may share your personal information with the event organizers. If you are an event organizer, we may also share information about your event with third-party service providers who may send commercial information on event-related services.
2) INFORMATION WE COLLECT FROM THIRD PARTIES
We may also collect information about you from third parties, including information from our partners (travel agencies, airlines, payment card companies) and other partners; from social media services in accordance with your settings on such services; and from third-party sources. We may add this information to our records and share it with others as outlined in this Policy.
3) PURPOSE OF PROCESSING
Data processing is intended for the following purposes:
Managing customer relationships (managing bookings, issuing invoices, quotes), fulfilling any contractual obligations, handling disputes, and complying with regulatory obligations, particularly accounting and tax requirements;
In various ways, such as providing and customizing the services you request and expect from our company, in the case of hotel bookings, to offer you the expected level of hospitality in your room, as described in more detail below:
3a) Related to the service:
Sending (with your written consent) promotional offers on our services, updates on rates and offers, and greetings via regular mail, fax, or email;
Executing (with your written consent) hotel services such as external communication of data related to your stay for the sole purpose of allowing the reception of objects, messages, and phone calls directed to you.
Processing, with your written consent, any sensitive data you voluntarily provide to offer a better level of hospitality at our hotel.
3b) Electronic Receipt Program
We may automatically enroll you in our electronic receipt program and use your email address to send you the hotel bill via email. It is your responsibility to ensure that the email address we hold is the correct (and preferred) one. If you make a booking for another person using your email address, the electronic receipt for that person will be sent to your email. We may use your email address to send you, with your written consent, our newsletters and holiday greetings.
3/1 Additional Purposes
The computer systems and software procedures used to operate this website collect, during normal operation, some personal data whose transmission is implicit in the use of Internet communication protocols. These data are not collected to be associated with identified individuals, but through processing and association with data held by third parties, they could allow users to be identified.
This category of data includes the IP addresses or domain names of the computers used by users who connect to the site, the addresses in URI (Uniform Resource Identifier) notation of the requested resources, the time of the request, the method used to submit the request to the server, the size of the file obtained in response, the numerical code indicating the status of the server's response (successful, error, etc.), and other parameters related to the user's operating system and computer environment.
These data are used only to obtain anonymous statistical information on site usage and to verify its correct operation. They are deleted immediately after processing. The data could also be used to determine responsibility in the event of hypothetical computer crimes against the site.
4) DATA CONTROLLER’S IDENTITY
This site is managed by the Data Controller, identified as the owner and legal representative of PANTHEON INVEST srl, with its registered office at Via Palermo 30, 00184 Rome, VAT No. 08994361007, email: info@hotelvirgilio.it. The Data Controller guarantees the security, confidentiality, and protection of the data at every stage of the processing. The data collected are used in compliance with the current privacy regulations (Legislative Decree 196/2003 and GDPR 679/2016).
5) PLACE OF DATA PROCESSING
The data will be processed by the Data Controller at its registered and operational office in Via Palermo 30, 00184 Rome.
6) NATURE OF DATA PROVISION
For the purposes outlined in point 3), in the case of hotel booking, data provision is mandatory, and failure to provide them may result in the inability to fulfill the request. For the purposes outlined in points 3a) and 3b), data provision is optional and does not prevent the requested service (hotel stay).
7) REFUSAL TO PROVIDE DATA
The user may refuse to provide their browsing data to the Data Controller. To do so, they must disable cookies by following the instructions provided by their browser. Disabling cookies may affect the website's functionality.
8) DATA RECIPIENTS
No data from the web service (such as browsing data and cookies) will be communicated or disclosed (except to judicial or police authorities if necessary).
Data is processed by staff specifically appointed in writing to process the data (administrative staff, public relations staff, IT staff, external companies managing IT systems, etc.).
9) DATA RETENTION PERIOD
Data is processed for the time necessary to provide the requested service or for the purposes described in this document.
The user may request the interruption of the processing or the deletion and/or limitation of their data at any time.
10) DATA TRANSFER
The Data Controller does not transfer personal data to third countries or international organizations.
11) WITHDRAWAL OF CONSENT
With reference to Article 23 of Legislative Decree 196/2003 and Article 6 of GDPR 679/2016, the user may withdraw consent at any time.
12) DATA SUBJECT RIGHTS
With reference to Article 7 of Legislative Decree 196/2003 and Articles 15 (right of access), 16 (right of rectification), 17 (right of erasure), 18 (right of restriction), 20 (right to portability), and 21 (right to object to automated decision-making) of GDPR 679/2016, the data subject may exercise their rights by writing to the Data Controller at the following address: PANTHEON INVEST srl, Via Palermo 30, 00184 Rome, VAT No. 08994361007, email: info@hotelvirgilio.it.
13) FILING A COMPLAINT
The data subject has the right to file a complaint with the supervisory authority of their country of residence.
14) AUTOMATED DECISION-MAKING PROCESSES
The Data Controller does not engage in automated decision-making processes.
15) CHANGES TO THIS PRIVACY POLICY
The Data Controller reserves the right to make changes to this privacy policy at any time by notifying users on this page. Please consult this page frequently, referring to the date of the last modification indicated at the bottom. If the user does not accept the changes made to this privacy policy, they are required to cease using this application and may request that the Data Controller remove their personal data.
16) INFORMATION ABOUT THIS PRIVACY POLICY
The Data Controller is responsible for this privacy policy.
17) MINOR’S PRIVACY
Our website is aimed at a general audience and does not offer services directed at children. If we discover that a minor has provided us with personal data without parental or guardian consent, we will delete such information immediately.
18) EXTERNAL LINKS
If any pages of this website contain links to other websites or services, we are not responsible for the privacy practices or content of such third-party services.
19) DEFENSE IN LEGAL PROCEEDINGS
The User's Personal Data may be used by the Data Controller in defense during legal proceedings or in preparatory stages leading up to potential legal action, in the case of abuse in the use of the site or the connected services by the User. This may occur in response to a subpoena, court order, or other legal processes; to establish or exercise our legal rights; to defend ourselves in the event of legal action taken against us, or for other purposes required by law. The User acknowledges that the Data Controller may be required to disclose Data upon request from public authorities.
20) LEGAL REFERENCES
This privacy notice is drafted in compliance with the obligations under Legislative Decree 196/2003 and GDPR 679/16, as well as Article 10 of Directive 95/46/EC, and what is required by Directive 2009/136/EC on the subject of cookies.
This privacy notice applies solely to this website.