NOU HOSTAL SA TUNA, SL, informs website users about its policy regarding the processing and protection of personal data of users and customers.
And it guarantees at all times the full and complete compliance with the obligations set out by the regulations on data protection and information society services: Regulation (EU) 2016/679 of the European Parliament and of the Council of 27 April 2016 on the protection of natural persons with regard to the processing of personal data and on the free movement of such data (GDPR), Organic Law 3/2018 of 5 December on the Protection of Personal Data and Guarantee of Digital Rights (LOPDGDD) and Law 34/2002 of 11 July on Information Society Services and Electronic Commerce (LSSice).
DATA CONTROLLER
NOU HOSTAL SA TUNA, SL
CIF: B55314900
Address: PASSEIG DE L'ANCORA, 8 PLATJA SA TUNA – 17255 – BEGUR (GIRONA)
COMMERCIAL REGISTRY: VOLUME 3192, BOOK 0, FOLIO 65, SHEET GI-63717, ENTRY 1
Telephone: 972622229
Email: administracion@hostalsatuna.com
PURPOSES OF DATA PROCESSING
The data provided by the User is used for various purposes, which are listed below:

DATA RETENTION PERIOD

DATA RECIPIENTS
To fulfill the purposes indicated in this Privacy Policy, it is necessary for us to give access to your personal data to third parties that provide us with support in the services we offer you (Data Processors), namely:
– Financial institutions
– Technology service providers
– Suppliers and collaborators of logistics, transport and delivery services.
– Suppliers and collaborators of services related to marketing and advertising.
Data processors for the execution of a contract or provision of a service to the Controller, therefore following their instructions at all times and ensuring the same levels of security.
COOKIES
Regarding the use of cookies and other tracking technologies, please refer to this website's Cookie Policy. In this case, the legal basis for processing your data is the consent you give by accepting the installation of cookies in your browser.
USER RIGHTS
The user has the right to:
Request access to your personal data that is being processed and receive this information in writing through the requested means.
The User may exercise the aforementioned rights by sending a postal or electronic email address to the Responsible party, proving their identity with a scanned copy of their ID card or equivalent document, and specifying the right they wish to exercise.
DATA SOURCE
Personal data will be provided by the data subject entirely voluntarily. Failure to provide certain data or answer questions that may be asked during the registration process or on the various electronic forms presented to the User may prevent access to certain services for which the provision of personal data is essential. In such cases, the Data Controller will inform the User of the mandatory and/or necessary nature of providing personal data for the service to function.
The Data Controller assures you of the confidentiality of your personal data and guarantees its security, adopting the necessary measures to prevent its alteration, loss, unauthorized processing or access.
INFORMATION PROVIDED BY THE USER
Individuals under the age of 18 cannot provide their personal data without the prior consent of their parent(s) and/or legal guardian(s).
Users, by entering their data in the contact forms or presented in download forms, expressly and freely and unequivocally accept that their data is necessary to attend to their request, by the Controller, the inclusion of data in the remaining fields being voluntary.
The User guarantees that the personal data provided is truthful and is responsible for communicating any changes to it.
All data requested through the website is necessary to provide the User with optimal service. If all the data is not provided, the information and services provided by the Data Controller cannot be guaranteed to be fully tailored to the User's needs.
SECURITY MEASURES
That in accordance with the provisions of the current regulations on the protection of personal data, the Controller is complying with all the provisions of the GDPR and LOPDGDD regulations for the processing of personal data under its responsibility, which are processed lawfully, fairly and transparently in relation to the interested party and adequate, relevant and limited to what is necessary in relation to the purposes for which they are processed.
The Controller guarantees that it has implemented appropriate technical and organizational policies to apply the security measures established by the GDPR and the LOPDGDD in order to protect the rights and freedoms of Users and has communicated to them the appropriate information so that they can exercise them.
SECURITY GAPS
The Data Controller will report any security breach affecting the database used by this website, or affecting any of our third-party services, to each and every person whose data may have been affected, and to the relevant authorities, within 72 hours of detecting the breach.
APPLICABLE LAW AND JURISDICTION
The right is reserved to take any civil or criminal action deemed necessary for the misuse of the Website and Content.
The relationship between the User and the Data Controller shall be governed by the laws in force and applicable in Spain. Any dispute arising in connection with the interpretation and/or application of these laws shall be submitted to the ordinary courts of law, subject to the jurisdiction of the competent courts and tribunals.