Hidden Beach Privacy Policy
Effective Date: [Insert date]
The Hidden Beach Organisation CIC (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your personal data when you visit our website (https://hiddenbea.ch), as well as your rights related to your personal data under applicable laws.
By accessing or using our website, you agree to the terms of this Privacy Policy. If you do not agree with this policy, please do not use our services.
1. Introduction
Hidden Beach is a UK-based Community Interest Company (CIC) dedicated to creating transformative experiences through music, art, and wellness. We value your trust and aim to keep your personal data secure and confidential. This Privacy Policy outlines how we process and protect your data when you engage with our services or use our website.
We comply with the General Data Protection Regulation (GDPR) and other relevant data protection laws, including the UK Data Protection Act.
2. Data We Collect
We collect and process the following types of personal data:
- Identity Data: Includes first name, last name, username, title, and date of birth.
- Contact Data: Includes email address, billing address, delivery address, and telephone numbers.
- Purchase Data: Includes transaction details such as products/services purchased and payment methods.
- Support Data: Includes information related to any support requests or inquiries you submit via email or our contact form.
- Technical Data: Includes your IP address, browser type, device information, and usage data collected via cookies and other tracking technologies.
We store data in accordance with GDPR principles. All data is stored securely within the European Economic Area (EEA) and in some cases, our hosting provider Hetzner Online GmbH (based in Germany) ensures compliance with the EU/US Privacy Shield Framework.
3. How We Use Your Personal Data
We use your personal data for the following purposes:
- Providing our services: We use your data to provide you with services, process transactions, and manage your bookings or purchases.
- Communications: We may contact you for customer service, marketing, or important updates about Hidden Beach events or activities.
- Improving services: We use your data to improve user experience and ensure the functionality of our website.
- Preventing fraud: We may monitor user activity to prevent fraudulent transactions and protect the security of our website.
- Analytics: We use data to analyze website usage and performance, including through Google Analytics (which anonymizes user data).
4. Third-Party Services
We use third-party services to help provide our website and services. These include:
- Hosting Provider (Hetzner Online GmbH): Our website is hosted on secure servers in Germany, and Hetzner adheres to the EU/US Privacy Shield.
- Support Ticketing (Ticksy): For customer support, we use Ticksy’s ticketing system. Personal data is only shared with Ticksy when you submit a support request.
- Email Hosting (Zoho): We store email communications in Zoho’s cloud infrastructure, which complies with EU data protection standards.
For more information on the data policies of these third-party services, please refer to their individual privacy policies:
- Ticksy Privacy Policy
- Zoho Privacy Policy
- Hetzner Data Privacy Policy
5. Cookies and Tracking Technologies
We use cookies to enhance your experience on our website. Cookies are small files that are placed on your device when you visit the site. They help us personalize content, track website usage, and improve functionality.
- Necessary Cookies: These are essential for the operation of our website (e.g., for user authentication and maintaining sessions).
- Analytics Cookies: These collect anonymous data on website performance (e.g., Google Analytics).
- Third-Party Cookies: We may use embedded content like YouTube videos, which may set cookies when you interact with them.
You can manage cookies through your browser settings. For more details, refer to our Cookie Policy.
6. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy or as required by law. If you have a registered account, you can access, edit, or delete your personal information at any time (except for your username). Support data and comments may be retained to facilitate future support requests.
7. Security of Your Data
We take the security of your personal data seriously. We use SSL/HTTPS encryption to ensure that your data is securely transmitted between your device and our servers.
In case of a data breach, we will immediately take appropriate action to safeguard your data and notify affected individuals as necessary.
8. Your Data Protection Rights
Under the GDPR and applicable UK laws, you have the following rights regarding your personal data:
- Access: You can request access to the personal data we hold about you.
- Rectification: You can request that we correct any inaccurate data.
- Erasure: You can request that we delete your personal data (subject to legal obligations).
- Restriction: You can request that we restrict the processing of your data in certain circumstances.
- Portability: You can request that we transfer your personal data to another service provider in a structured, machine-readable format.
- Objection: You can object to the processing of your personal data for direct marketing purposes or where we are processing it based on legitimate interests.
If you wish to exercise any of these rights, please contact us using the details below.
9. Third-Party Websites
Our website may contain links to third-party websites that are not controlled by Hidden Beach. These third-party websites have their own privacy policies, and we encourage you to review them before submitting any personal information.
Hidden Beach is not responsible for the privacy practices or content of external websites.
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our services or legal obligations. We will notify you of significant changes by posting an updated version on our website. Please check back periodically to stay informed.
11. Contact Us
If you have any questions about this Privacy Policy or our data practices, or if you would like to exercise your data protection rights, please contact us:
- Email: [[email protected]]
12. Release of Your Data for Legal Purposes
We may disclose your personal information to government authorities or private parties if required by law, such as in response to subpoenas or to comply with legal obligations. We will notify you if such disclosure occurs unless prohibited by law.