I. General information.

  1. This Privacy Policy outlines the principles of processing and protecting personal data provided by Users in connection with their use of the website www.suncanavilla.com (hereinafter referred to as the “Website”).
  2. To ensure the security of the data entrusted to us, we have developed internal procedures and recommendations aimed at preventing unauthorized access to such data. We monitor the implementation of these measures and continuously assess their compliance with relevant legal regulations—specifically, the GDPR, the Personal Data Protection Act, the Act on Electronic Services, and all applicable executive regulations and community law acts.

II. Data Administrator.

The administrator of your personal data shared on this Website is: Sunčana Villa Sukošan d.o.o, Tratice 1A, 23206 Sukošan, Croatia, with NIP/OIB 87981604406 (hereinafter referred to as the “Administrator”). If you wish to contact the Administrator, please reach out via email at info@suncanavilla.com or by traditional mail at: Sunčana Villa Sukošan d.o.o, Tratice 1A, 23206 Sukošan, Croatia, with the note “Personal Data.”

III. Types and Scope of Personal Data Processing, Legal Basis.

  1. The Administrator collects information regarding individuals acting in a legal capacity not directly related to their business activity, individuals conducting business or professional activities on their own behalf, as well as individuals representing legal entities or organizational units that do not have legal personality, which are granted legal capacity by law (hereinafter collectively referred to as “Clients”).
  2. Personal Data is processed based on the consent given by Clients and in cases where legal provisions authorize the Administrator to process personal data based on statutory provisions or for the purpose of executing agreements between the parties.
  3. Personal Data is collected on the Website in the event of:
    a. Sending an inquiry via the Contact Form.
  4. Personal data is obtained from forms filled out by Clients and through the collection of cookies (see: Cookie Policy).
  5. Types of personal data:
    a. email address
    b. name and surname
    c. phone number
  6. While using the Website, additional information may be collected, particularly: the IP address assigned to the Client’s computer or the external IP address of the Internet Service Provider, domain name, type of browser, access time, and type of operating system.
  7. For improved service, responses to inquiries, and resolution of reported issues, data contained in correspondence (both electronic and traditional) is also processed. The source of the data acquisition is always recorded.
  8. Navigation data may also be collected from Clients, including information about links and references they choose to click on or other actions taken while using the Website. The legal basis for this is a legitimate interest (Article 6(1)(f) of the GDPR), which facilitates the use of electronic services and improves the functionality of these services.
  9. Providing personal data to the Administrator is voluntary; however, failure to provide certain data specified in the forms will hinder the processing of the Client’s inquiry.
  10. Data is processed in accordance with Regulation (EU) 2016/679 of the European Parliament and of the Council of April 27, 2016, regarding the protection of individuals in connection with the processing of personal data and the free movement of such data, and repealing Directive 95/46/EC (General Data Protection Regulation) (OJ L 2016.119.1 of May 4, 2016).

IV. Purpose of Personal Data Processing.

 

  1. Personal data is processed for the following purposes:
    a. For contact purposes, to respond to inquiries sent directly to us via email or through the contact form.
    b. For statistical, analytical purposes, and monitoring traffic on the Website using cookies based on the legitimate interest of the Administrator concerning the proper functioning and operation of the Website and traffic analysis.

V. Retention Period for Personal Data.

  1. Your personal data will be retained until consent is withdrawn or an objection is raised, i.e., until you inform us in any manner that you do not wish to remain in contact with us and receive information about our activities. After consent is withdrawn or an objection is raised, the collected data will be retained because, under data protection regulations, we must be prepared to account for the processing of personal data. Data may also be retained for the period of limitation of claims, but in total not longer than until the end of the year in which 6 years have elapsed since the claims arose.
  2. Data obtained via cookies is processed for the duration of the cookie’s validity or until it is deleted.

VI. Recipients of Personal Data.

  1. We disclose data to other entities only when it is necessary to fulfill the services ordered by the Client or when necessary for our development and improvement of our offerings. These are always specialized entities that provide professional services supporting sales in our online store. Types of entities to whom we may disclose Client data include:
    a. Transport companies (e.g., couriers);
    b. Payment intermediaries;
    c. Transport firms;
    d. IT service providers;
    e. Marketing agencies;
  2. In any case where we disclose data to other entities, we do so in compliance with applicable regulations. If our service providers process Client data on our behalf, they must provide guarantees of implementing technical and organizational measures that will protect your personal data and meet the requirements of the General Data Protection Regulation (GDPR).

VII. Rights of Personal Data Clients.

  1. At any time, Clients have the right to:
    a. Access their personal data and receive a copy thereof—Article 15 GDPR;
    b. Rectify (correct) their data—Article 16 GDPR;
    c. Erase their data if they believe that there are no grounds for Sunčana Villa Sukošan d.o.o. to process the data—Article 17 GDPR;
    d. Restrict the processing of data solely to their storage or to undertake actions agreed upon with the person filing a complaint, if they believe that the data held by Sunčana Villa Sukošan d.o.o. is inaccurate or processed unlawfully, or do not want Sunčana Villa Sukošan d.o.o. to erase it, because they need it for establishing, pursuing, or defending claims or for the duration of the objection—Article 18 GDPR;
    e. Data portability, meaning to receive from Sunčana Villa Sukošan d.o.o. in a structured, commonly used, machine-readable format, the personal data processed for the purposes indicated in point 1 above, as well as to request Sunčana Villa Sukošan d.o.o. to send the data directly to another entity specified by the individual, provided that this is technically feasible—Article 20 GDPR;
    f. Object to the processing of data—due to a specific situation, unless Sunčana Villa Sukošan d.o.o. demonstrates that the grounds for processing are overriding the rights of the individual or the data is necessary for Sunčana Villa Sukošan d.o.o. to establish, pursue, or defend claims—Article 21 GDPR;
    g. Withdraw consent at any time without affecting the lawfulness of processing based on consent before its withdrawal—only if Sunčana Villa Sukošan d.o.o. processes data based on consent—Article 7(3) GDPR.
  2. In the event that a Client exercises the rights specified above, the Administrator shall comply with the request or refuse to comply without undue delay, no later than one month after receipt of the request. However, if due to the complex nature of the request or the number of requests, the Administrator cannot comply within one month, it shall comply within an additional two months, informing the Client beforehand within one month from the receipt of the request of the intended extension of the deadline and the reasons for it.
  3. The rights mentioned above can be exercised by contacting the Administrator at the email address: info@suncanavilla.com or by traditional mail at: Sunčana Villa Sukošan d.o.o, Tratice 1A, 23206 Sukošan, Croatia, with the note “Personal Data.”
  4. Clients have the right to lodge a complaint with the President of the Personal Data Protection Office regarding violations of their rights to data protection or other rights granted under the GDPR (President of the Personal Data Protection Office, ul. Stawki 2, 00-193 Warsaw).

VIII. Changes to the Policy.

To ensure that our Privacy Policy is always in accordance with applicable legal requirements, we reserve the right to make changes at any time. This includes situations where the Privacy Policy needs to be modified to account for new or modified products or services.

IX. Contact Information.

For any questions and/or comments regarding our Privacy Policy, please contact us using the following contact information:

Sukošan Sunčana Villa
Tratice 1A, 23206 Sukošan
Croatia

Website: https://suncanavilla.com
Email address: info@suncanavilla.com