Our Privacy Policy
Privacy Policy
This privacy policy explains how Hotel Julie processes personal data in connection with customer relationships, reservations, marketing, and the use of our website.
1) Data Controller
Hotel Julie (Business ID 2345923-6), hereinafter the “Company”
Address: Valimontie 3, 80710 Lehmo
Phone: 010 322 1910
Email: sales@hoteljulie.fi
2) Name of the Register
-
Customer and marketing register
-
Website cookie register
3) Purpose and Legal Basis for Processing Personal Data
The processing of personal data is based on the EU General Data Protection Regulation (GDPR). The legal basis for processing may be:
-
Performance of a contract or steps taken prior to entering into a contract (e.g., reservations, requests for quotations, customer service)
-
Consent (e.g., electronic direct marketing and marketing cookies)
-
Legitimate interests of the data controller (e.g., managing the customer relationship, developing services, preventing misuse)
-
Compliance with a legal obligation (e.g., accounting obligations, requests from authorities)
The purposes of processing include, for example:
-
managing reservations and customer relationships (communication, providing services)
-
invoicing and payment-related activities
-
customer service and handling feedback
-
developing sales and services as well as reporting/analytics
-
marketing and communications (in accordance with the data subject’s choices and applicable law)
-
ensuring the functionality, security, and user experience of the website
Data is mainly stored in electronic systems (e.g., reservation system, CRM, email, and other similar systems).
Data is not used for automated decision-making or profiling.
4) Data Content
The customer and marketing register may include, for example:
-
basic identification and contact details (name, address, phone number, email)
-
reservation and transaction details (e.g., reservation information, services/products, billing details)
-
communications and contacts (e.g., emails, form messages, customer service interactions)
-
marketing consents and opt-outs
-
possible customer feedback
-
technical website data collected via cookies and similar technologies (see section 10)
The Company processes only data that is necessary for the purposes described above.
5) Sources of Personal Data
Data is primarily obtained from the data subject, for example via:
-
reservation and contact forms on the website
-
email and phone
-
customer meetings and information provided when using the services
-
cookies and similar technologies on the website
-
public sources (where applicable)
6) Regular Disclosures of Data to Third Parties
Data is not regularly disclosed to third parties.
Data may be disclosed:
-
as separately agreed with the data subject
-
to authorities where required by law or an official order
In addition, the Company may use service providers (data processors), such as providers of reservation/payment services, IT and hosting services, as well as analytics and marketing tools. In such cases, data is processed on behalf of the Company in accordance with agreements and instructions.
7) Transfers of Data Outside the EU/EEA
If the Company uses service providers whose processing may involve transfers outside the EU/EEA, such transfers are carried out using appropriate safeguards in accordance with data protection legislation (e.g., the EU Standard Contractual Clauses).
8) Principles for Protecting the Register
Only persons who need the data for their work tasks may process it.
-
Access rights are personal and restricted.
-
Systems and workstations are appropriately protected.
-
Manual materials (if any) are stored in a locked space.
9) Rights of the Data Subject
The data subject has the right to:
-
access their personal data
-
request rectification of inaccurate data
-
request erasure of data (subject to the GDPR conditions)
-
restrict processing in certain situations
-
object to processing based on legitimate interest (especially direct marketing)
-
receive their data and transfer it to another system, where applicable
-
withdraw consent at any time (this does not affect processing carried out before the withdrawal)
Requests must be submitted to the data controller in writing (contact details in section 1). Requests are handled within the time limits set by the GDPR.
The data subject also has the right to lodge a complaint with the supervisory authority (Office of the Data Protection Ombudsman).
10) Website Cookie Policy
On the Company’s website, hoteljulie.fi, information may be collected using cookies and similar technologies (e.g., anonymous usage data, browser, device, and on-site behaviour). Cookies are small text files stored on your device when the website is loaded in your browser.
Our website may use:
-
Essential cookies (website functionality and security)
-
Analytics cookies (measuring and improving usage)
-
Marketing cookies (targeting marketing and measuring campaigns – only with consent)
Cookie settings are managed via a cookie banner, where you can accept or reject cookie categories and change your choices later.