The Management and the personnel of St Nicolas Bay are committed to protecting and safeguarding your personal data. Our top priority is our guests to be satisfied and to build trust between our guests and ourselves. As part of our philosophy, we try to create an experience for you which would meet your needs making responsible use of your personal data. To this end, we have invested time and allocated resources to comply with the current legal framework on data protection and in particular with the General Data Protection Regulation – GDPR 679/2016 of the European Union.
The St. Nicolas Bay Privacy Policy has been drafted taking into account the key principles governing personal data protection:

 

SCOPE

The present Privacy Policy applies to St. Nicolas Bay Hotel, the Management Company (ALPHA MARINE S.A. / ΑΛΦΑ ΜΑΡΙΝ Α.Ε.) or to any other affiliated company.
The present Privacy Policy applies to:

We regard it as being particularly important that you read carefully our Privacy Policy in order for you to be fully informed.

 

INFORMATION THAT WE COLLECT

We collect only information which is needed so that we can provide services and meet your needs.
Such information includes:

All information which is collected by us and concerns children under the age of 16, is limited to name, surname and date of birth and may be obtained only from an adult – guardian.

 

WHEN WE COLLECT INFORMATION

Your personal data collection takes place during:
Room reservation

 

ACCESS TO INFORMATION BY A THIRD PARTY

We will not disclose your personal data to any third party whatsoever without your prior consent. However, we may disclose your personal data in the following cases:
To service providers processing information on our behalf such as information technology subcontractors, companies which send e-mails on our behalf, banks, credit card issuers, law firms, mail delivery companies etc.
Other third parties when required by the law in order for us to comply with the legislation in force or to respond to a compulsory legal procedure, such as a search warrant or other judicial order.

 

DATA SECURITY

We have allocated resources in order to adopt all necessary organisational and technical measures to protect the collected information and especially any sensitive personal data. Our IT Department and out IT Manager follow international standards to ensure our network security and data encryption.

 

DATA STORAGE

All information collected which is related to you is stored only for a limited period, that is, until the purpose for which it has been collected has been achieved or according to the law in force. We store all personal data related to the fulfilment of our clients’ reservation for five years following check-out date.
Your personal data will be destroyed with the utmost dispatch and in such a way which will not allow for their retrieval or restructuring.
If such data are stored in hard copy format, all personal information will be destroyed in a secure way, that is, with a use, for example, of a paper shredder or other suitable means. If they are stored in digital format, they will be destroyed with the use of technical means which will not allow for their retrieval or restructuring.

 

COOKIES AND RELATED TECHNOLOGIES, INFORMATION COLLECTED WHEN YOU CONNECT TO OUR WEBSITE

Our company and other third parties which process information on our behalf may use cookies and other related technologies.

If we receive a request by you which will be communicated to us by filling out an online communication form, we will respond by email or by a means indicated by you.

 

TRANSFERS OF PERSONAL DATA TO THIRD COUNTRIES

No personal data is transferred to third countries by us. In cases of personal data being transferred to non-EU countries, such data are carefully examined before transfer in order to ensure full compliance with the General Data Protection Regulation and the legislation in force. This depends, in part, on the opinion of the European Union on the adequacy of the safeguards regarding the protection of personal data which apply in the country to which personal data are transferred. This may change over time.

All transfers of personal data to third countries which take place within our company and also by third parties which process personal data on our behalf, if such transfers ever take place, will be governed by legally binding agreements which are mentioned as binding corporate rules and confer enforceable rights to the data subjects.

 

YOUR RIGHTS

According to the General Data Protection Regulation – GDPR 679/2016 you have the following rights:

Right to object. You have the right to object, at any time, to the processing of your personal data

 

CONTACT

For any questions, clarifications on our Privacy Policy or in general on the protection and safety of your personal data please send us a letter to the following address:

THESSI NISSI
P.O. BOX 47, GR-72100
AGIOS NIKOLAOS
CRETE, GREECE
TEL: (+30) 28410-90200
FAX: (+30) 28410-24556

or you may contact us at: privacy@stnicolasbay.gr

Occasionally, the present Privacy Policy may undergo changes/ revisions in order to comply with the regulatory, legislative and technological framework. That is why we advise you to review periodically the present Privacy Policy and above all, before making a reservation with our Hotel, in order to ensure that you have been informed on any changes. In our webpage you can read the most recent version of our Privacy Policy. You can check its “revision date” at the top of the page and learn when it was last updated.