Effective date: 2025-10-29
This policy explains how [Your Business Name] collects, uses, shares, retains, and protects personal information, and your rights and choices.
Controller: [Your Business Name], [Your Address]. Contact: privacy@example.com. If appointed, Data Protection Officer: dpo@example.com.
We rely on consent, contract performance, legitimate interests, and legal obligations, as applicable to your location.
We share information with service providers (payment, booking, analytics) under contract. We do not sell personal information. We may “share” for cross-context advertising only with your opt-out.
Subject to your location, you may request access, correction, deletion, portability, and object or restrict certain processing. You may opt out of sale or sharing where applicable and withdraw consent at any time.
Use our “Do Not Sell or Share My Personal Information” link and cookie settings. We honor browser-based Global Privacy Control signals where required.
We keep personal data only as long as needed for the purposes above or as required by law, then delete or anonymize it.
We use safeguards such as encryption in transit and access controls. No method is completely secure.
Our services are not directed to children under 16. If we learn we collected data from a child without proper consent, we will delete it.
When transferring data internationally, we use appropriate safeguards such as standard contractual clauses.
We do not use automated decisions that produce legal or similar significant effects without meaningful human involvement.
You may contact us or lodge a complaint with your supervisory authority.
We will update this policy as practices or laws change and will post the new effective date.