Skip to main content

Casa Nizza d'Oro

Privacy & Cookies Policy

CASA NIZZA D’ORO PRIVACY & COOKIES POLICY

 

I. DEFINITIONS

Company / Data Controller – Casa Nizza D’Oro, Via Gavelli 10, 14040 Castelnuovo Calcea (AT), Italy. The entity responsible for processing personal data.

Guest / Data Subject – any individual using hotel services or visiting the website.

Website – the official Casa Nizza D’Oro website.

Services – accommodation, reservations, customer service, and related services.

Personal Data – any information identifying a person (e.g. name, email, reservation details, payment data).

Processing – any operation performed on personal data (collection, storage, use, etc.).

Service Provider – third parties supporting hotel operations (booking systems, payment providers, IT, marketing).

Cookies – small text files stored on a user’s device to improve website functionality and analytics.

Direct Marketing – communication about offers, services, or promotions.

 

II. GENERAL PROVISIONS

By using the website or submitting personal data, users confirm they have read this Policy.

We process personal data in accordance with GDPR principles:

      • lawfulness, fairness, and transparency

      • purpose limitation

      • data minimization

      • accuracy

      • storage limitation

      • integrity and confidentiality

 

Personal data may also be processed to comply with legal obligations (e.g. guest registration with authorities in Italy) under Article 6(1)(c) GDPR.

 

III. PERSONAL DATA COLLECTION AND USE

1. Reservations and Service Provision

We process:

      • Name and surname

      • Email and phone number

      • Address / country

      • Reservation details

      • Payment / billing information

 

Legal basis: Contract (Art. 6(1)(b) GDPR)
Retention: up to 10 years (legal/tax requirements)

 

2. Communication

When contacting us:

      • Name

      • Email

      • Phone

      • Message content

 

Legal basis: Contract / pre-contractual communication
Retention: up to 12 months

 

3. Direct Marketing

With consent, we may send:

      • newsletters

      • offers

      • event invitations

 

Legal basis: Consent (Art. 6(1)(a) GDPR)
Users may unsubscribe anytime.

 

IV. COOKIES AND TRACKING TECHNOLOGIES

1. What Are Cookies

Cookies are small text files stored on your device to remember preferences and improve user experience.

Types:

      • Session cookies – deleted after browser close

      • Persistent cookies – stored for a defined period

 

2. Types of Cookies We Use

Essential Cookies
Required for:

      • navigation

      • secure access

      • booking functionality

 

These cannot be disabled.

 

Analytics Cookies
Used to analyze:

      • number of visitors

      • pages visited

      • time spent

      • user behavior

 

Examples:

Cookie

Purpose

Duration

_ga

Google Analytics identification

2 years

_gid

Analytics tracking

1 day

ga*

Session tracking

1 year


Marketing Cookies
Used to:

      • measure campaign performance

      • understand traffic sources

 

3. Cookie Consent

When visiting the website, users are asked to consent via a cookie banner.

Users may:

      • accept or reject cookies

      • withdraw consent at any time

 

4. Managing Cookies

Users can control cookies through browser settings:

      • block cookies

      • delete cookies

      • receive notifications

 

Disabling cookies may affect website functionality.

 

5. Third-Party Cookies

Some cookies are set by third parties (e.g. analytics tools, booking platforms).
These providers process data according to their own policies.

 

V. DATA SHARING

Personal data may be shared with:

      • payment providers

      • booking platforms

      • IT and hosting providers

      • marketing partners

      • authorities (if required by law)

 

All partners comply with GDPR.

 

VI. DATA SECURITY

We use appropriate technical and organizational measures, including:

      • restricted access

      • secure systems

      • HTTPS encryption


VII. INTERNATIONAL TRANSFERS


Data is generally processed within the EEA.
If transferred outside, appropriate safeguards are applied.

 

VIII. DATA SUBJECT RIGHTS


Under GDPR, users have the right to:

      • access their data

      • correct inaccurate data

      • request deletion

      • restrict processing

      • object to processing

      • data portability

      • lodge a complaint

 

Complaints can be submitted to the Italian Data Protection Authority.

 

IX. POLICY UPDATES

This Policy may be updated at any time.
The latest version is always available on the website.

 

X. CONTACT INFORMATION

Casa Nizza D’Oro
Via Gavelli 10
14040 Castelnuovo Calcea (AT)
Italy

Email: booking@casanizzadoro.com