Privacy policy
The Ariégoise SARL – Transcontinental Hotel, registered in the RCS of Paris under number 784562696, with its registered office located at 155 Avenue du Maine 75014 Paris, France, VAT number FR7578456269600012, email address transcontinental@wanadoo.fr and phone number 01 45 39 20 20 (hereinafter, “the HOTEL“), as the Data Controller of personal data collected through the website and reservation processes of the Transcontinental Hotel, has adopted this Privacy and Personal Data Processing Policy (hereinafter, the “Policy”), in accordance with the provisions of Regulation (EU) 2016/679 (GDPR) and Law No. 78-17 of January 6, 1978 as amended (Data Protection Law).
SCOPE AND APPLICATION
This Policy is applicable to all Data Subjects (Data Owners) whose Personal Data is collected, stored, used, transmitted or deleted by the HOTEL, in the context of the operation and provision of tourist services offered through this website, official contact channels and intermediaries. This includes, among others, data of:- Users and visitors of the website;
- Guests and potential guests making reservations or service requests to the Transcontinental Hotel;
- Suppliers and business partners.
KEY DEFINITIONS (GDPR)
- Consent: Any freely given, specific, informed and unambiguous indication of the data subject’s wishes by which they signify agreement to the processing of personal data;
- Personal Data: Any information relating to an identified or identifiable natural person (e.g. name, email, identifier, location data);
- Sensitive Data: Data revealing racial or ethnic origin, political opinions, religious beliefs, trade union membership, genetic data, biometric data, data concerning health or sex life;
- Data Subject: Natural person whose personal data is processed;
- Processing: Any operation performed on personal data (collection, recording, organization, storage, adaptation, alteration, retrieval, consultation, use, disclosure, etc.).
GUIDING PRINCIPLES
Any Processing carried out by the HOTEL is governed by the principles of the GDPR:- Lawfulness, fairness and transparency: Data is processed lawfully, fairly and in a transparent manner in relation to the data subject;
- Purpose limitation: Data is collected for specified, explicit and legitimate purposes (reservation management, legal obligations, etc.);
- Data minimization: Only adequate, relevant and limited to what is necessary data is processed;
- Accuracy: Data must be accurate and, where necessary, kept up to date;
- Storage limitation: Data is kept only for the time necessary for the purposes of processing;
- Integrity and confidentiality: Data security is ensured through appropriate technical and organizational measures.
COLLECTION OF PERSONAL DATA
The collection is limited to information strictly necessary for hotel operations.Categories of Processed Data:
- Identification and contact: name, first name, identity document number, email, phone, address;
- Stay and reservations: dates, number of people, nationality (for individual police form), service details;
- Payments: transactional information (processed via certified PCI-DSS secure platforms);
- Navigation: IP address, cookies, device type.
Data Origin:
Data may be collected via the website, by phone, email, during on-site check-in, or via third-party booking platforms (OTA) and travel agencies.PROCESSING PURPOSES
The HOTEL processes data for the following purposes:- Reservation and accommodation management;
- Compliance with legal, accounting and tax obligations (e.g. police form for foreigners, billing);
- Customer relationship management and handling of complaints;
- Sending communications related to the stay (confirmations, practical information);
- Marketing activities and customer loyalty (with prior user consent, or “opt-in”);
- Security of property and persons (surveillance cameras).
PROCESSING OF SENSITIVE DATA AND MINORS
The HOTEL does not collect sensitive data (health, religion, etc.) except for legal obligation or explicit consent for specific needs (e.g. accessibility for people with reduced mobility, food allergies reported by the client). Processing of data of minors is only carried out in the context of family reservations, under the responsibility of parents or legal guardians.DATA RETENTION PERIOD
Data is retained for the duration necessary for the performance of the contract and compliance with legal obligations (e.g. 10 years for accounting documents in France).RIGHTS OF DATA SUBJECTS
In accordance with the GDPR and the Data Protection Law, you have the following rights:- Right of access: Obtain confirmation that your data is being processed and obtain a copy of it;
- Right to rectification: Request the correction of inaccurate data;
- Right to erasure (right to be forgotten): Request the deletion of your data under certain conditions;
- Right to restriction: Request the temporary suspension of the use of your data;
- Right to data portability: Receive your data in a structured format to transmit it to another controller;