loader image

Privacy policy

1. Who we are

This website is operated by Golden Lion Primošten, Rupe 15A, 22202 Primošten, Croatia. For the purposes of the General Data Protection Regulation (EU 2016/679) and the Croatian Act on the Implementation of the GDPR we act as the controller of personal data collected through this site. If you have any questions about privacy or the way we handle your information, you can reach us at info@goldenlionprimosten.com or on +385 91 295 5551.

2. The information we collect

When you write to us through the contact form we receive your name, e-mail address, telephone number and the content of your message. When you submit a booking request we also receive the planned check-in and check-out dates, the number of adult guests and children and any special request you decide to share. The server that hosts the site automatically records your IP address, the browser and device you use, the page you requested and the time of the request. Finally, cookies and similar technologies store a small identifier in your browser and, if you allow analytics cookies, basic statistics about how you move through the site. We never collect or process payment-card data on this website.

3. Why we use your data and the legal grounds

We use the data you give us to answer enquiries, to draw up or confirm villa booking contracts, to keep the legally required accounting and tourist-tax records, to protect the security of the website and, where you have chosen to receive them, to send you news or marketing e-mails. Answering enquiries and protecting the site are based on our legitimate interest; confirming bookings is necessary in order to enter into or perform a contract with you; accounting records are kept because Croatian law obliges us to do so; any newsletter or analytics cookies rely on your explicit consent, which you may withdraw at any time.

4. How long we keep the data

Messages that do not lead to a booking are stored for up to one year after our last correspondence. Booking records and the guest register are retained for eleven years, as required by Croatian accounting and tourist-tax legislation. Basic server logs are kept for thirty days, unless a security investigation requires us to keep them a little longer. If you subscribe to our newsletter we keep your details until you unsubscribe or we notice that you have been inactive for two years. Analytics cookies, if you accept them, expire after a maximum of thirteen months.

5. Who can see the data

Inside Golden Lion Primošten only staff members and the villa managers who need the information to run your booking or answer your questions can see it. Outside our company your data are processed only by service providers who help us run the website (hosting and e-mail) or supply analytics. All of them are bound by written agreements that meet article 28 of the GDPR and all servers are located within the European Economic Area or in countries recognised by the European Commission as offering adequate protection. We never sell your personal data and we never pass it on for advertising purposes.

6. Cookies

Our website sets essential cookies that remember things such as your cookie-consent choice and keep your browsing session secure. These cookies are placed automatically because the site cannot function without them. If you give us permission, we also set performance cookies provided by Google Analytics; they count visits, see which pages are popular and help us improve the site. Performance cookies are loaded only after you click “I accept” in the cookie banner and you can withdraw that consent at any time through the “Cookie settings” link in the footer or by clearing cookies in your browser.

7. Your rights

You have the right to know whether we hold personal data about you, to receive a copy of it, to correct inaccurate details, to ask for deletion or restriction, to object to processing that is based on legitimate interest and, where processing relies on consent, to withdraw that consent. You also have the right to receive the data you provided to us in machine-readable form and to transmit it to another controller. To exercise any of these rights simply contact us by e-mail or post; we will reply within one month. If you believe that your data have been processed in a way that infringes the GDPR you may lodge a complaint with the Croatian Personal Data Protection Agency (AZOP), Martićeva 14, 10000 Zagreb, azop@azop.hr.

8. Security

We protect your data with SSL/TLS encryption, firewalls, strong passwords and role-based access, and we keep all software up to date. No internet transmission can be guaranteed to be completely secure, but we continuously monitor our systems and will notify you and the competent authority of any personal-data breach that poses a high risk to your rights and freedoms.

9. Changes to this policy

Should legal requirements or the way we process data change, we will update this notice. A new version will appear on this page and, when changes are significant, we will also inform recent guests by e-mail. The date at the top of the page tells you when it was last revised.

10. Contact

For privacy or cookie questions and to exercise your rights, write to info@goldenlionprimosten.com or send a letter to Golden Lion Primošten, Rupe 15A, 22202 Primošten, Croatia. We are always happy to help.