Privacy Policy

Data Protection

Protecting personal data is important to us. We therefore treat the personal data of our employees, customers and business partners confidentially and in accordance with the applicable legal provisions on data protection and data security. This privacy policy explains to users of the website www.grandhotelbinz.com the type and scope, purpose and use of the personal data that are collected.

You can visit this website without providing any personal data. The following data are collected and stored temporarily until they are deleted automatically:

  • IP address
  • Date and time of access to the website
  • Name and URL of the page retrieved
  • Amount of data transferred
  • Details of the browser and operating system used
  • Name and network identifier of the internet service provider
  • The domain from which you were referred to this website

We do not intend to pass these data on to third parties. They are collected solely for statistical analysis.

Consent

By using our website, visitors consent to the storage of these data; this consent can be revoked at any time.

Orders

All data that customers enter in the course of ordering are stored:

  • First and last name
  • Address
  • Payment data
  • E-mail address

If data are required for delivery and/or order processing, they are passed on to third-party service providers. Once retention is no longer necessary or legally required, the data are deleted automatically.

User rights

Users of the website have the right to

1. Withdraw consent at any time by a simple written notice to us (Art. 7 (3) GDPR).

2. Access the personal data we process (Art. 15 GDPR)—including the purposes of processing, data categories, recipient categories, intended storage period, the existence of rights to rectification, erasure, restriction, objection or complaint, the origin of the data (if not collected from the user) and the existence of automated decision-making including profiling.

3. Request rectification of inaccurate or incomplete data without delay (Art. 16 GDPR).

4. Request erasure of personal data (Art. 17 GDPR) unless processing is necessary for exercising the right of freedom of expression and information, for compliance with a legal obligation, for reasons of public interest or for establishing, exercising or defending legal claims.

5. Request restriction of processing (Art. 18 GDPR) where data accuracy is contested, processing is unlawful but deletion is not requested, we no longer need the data but the user requires them for legal claims, or the user has lodged an objection under Art. 21 GDPR.

6. Receive the data in a structured, commonly used and machine-readable format or have them transferred to another controller where technically feasible (Art. 20 GDPR).

7. Lodge a complaint with a supervisory authority (Art. 77 GDPR)—either the authority at the user’s habitual residence or workplace, or the authority responsible for our registered office.

Note on Data Transmission

Please note that data transmission on the internet (e.g. in e-mail communication) can have security gaps; complete protection of data in unencrypted communication cannot be guaranteed. At the user’s explicit request, we offer encrypted communication after prior arrangement.

Cookies

Our website uses cookies to make the site more user-friendly and secure. Cookies are harmless, contain no viruses and are stored as small text files on your device by your browser.

  • Most cookies are deleted automatically after you leave the site.
  • Some remain on your device so that your browser is recognised on a return visit.

You can configure your browser to allow cookies only in certain cases or to delete them automatically. Blocking cookies entirely may limit this website’s functionality. You can also prevent data collection and transmission to services such as Google by installing a browser plug-in.

Google Analytics

This site uses Google Analytics, a web-analysis service of Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. Google Analytics uses the cookies described above. Information generated by the cookie about your use of this website is usually transmitted to and stored on a Google server in the USA. Further details on how Google Analytics handles user data can be found in Google’s privacy policy.

Browser Plug-in

You can prevent cookies from being stored via your browser settings. You can also block Google from collecting and processing data (including your IP address) related to your website use by downloading and installing a browser plug-in.

Eye-Able® Server

The provision of accessibility improvements through Eye-Able® Access is an offer from Web Inclusion GmbH to ensure better access to information on the internet for all people. The necessary files (JavaScript) are loaded from an external server. To prevent attacks and provide our service in near real-time, Eye-Able® uses the Content Delivery Network (CDN) from BunnyWay d.o.o. (Cesta komandanta Staneta 4A, 1215 Medvode, Slovenia). The use is for the purpose of fulfilling contracts with our customers (Art. 6 Para. 1 lit. b GDPR) and in the interest of secure, fast, and efficient provision of our online offering by a professional provider (Art. 6 Para. 1 lit. f GDPR). All transmitted data and servers remain within the EU at all times to ensure GDPR- compliant processing. Web Inclusion GmbH does not collect or analyze user behavior or other personal data (e.g., IP addresses are removed from logs). To ensure GDPR-compliant processing, Web Inclusion GmbH has concluded data processing agreements with our hosting providers.

DialogShift Chat Application and Other Communication Services on Our Website

Our website uses the communication services of DialogShift GmbH, Torstr. 201, 10115 Berlin. These include a chat application, email communication, and telephone communication. The applications process and store data for the purpose of web analytics, operating communication services, and responding to inquiries.
For the operation of the chat function, the chat texts are stored and a cookie with a unique ID is set - this serves to recognize you as a customer. For email and telephone communication, the communication contents are also temporarily stored to ensure efficient processing of your requests.
A cookie is a small text file that is stored locally in the cache on your device. Using this cookie, our application recognizes the device again and can retrieve past chat protocols. This cookie is stored for 90 days from last use. You can disable the storage of cookies in your browser settings. However, the chat function cannot be executed without the use of cookies.
The possible disclosure of e.g., name, email address, or telephone number is voluntary and includes consent to temporarily use and store this data for the purpose of contact until the end of the contact. This personal data will be deleted after 90 days. When using the Journey Messaging Service, your contact details may also be used for the transmission of travel-related information (such as check-in information) if you have consented to this.
The legal basis for data processing is based on Art. 6 Para. 1 lit. a GDPR, § 25 Para. 1 TTDSG on the basis of your consent. DialogShift provides further information about the collection and use of data as well as your rights and options for protecting your privacy at https://www.dialogshift.com/privacy.

Current Version

This privacy policy is currently valid and was last updated on 4 March 2021.