We regard security of your personal data and protection of your privacy to be of the utmost importance. As the operator of this website, APOZ Vodice would like to inform you on this page which personal data we collect, what your data is used for, and what it means for you when you use our personalised services. In order to provide the greatest possible protection of your privacy, we of course observe the data protection regulations in accordance with the Croatian data protection law and other complementary laws.
Our websites may contain links to websites of other providers which are not covered by the data protection declaration. We have no influence whether their operators abide by the data protection regulations.
What types of personal data do we collect about you and why do we collect it:
We collect certain personal data about you and about any other person you include on your booking. The sort of personal data we collect is information that you provide to us, that we collect from you or observe about you, or that we obtain from other sources. Read on to find out more……
Personal data you give to us
When you make a booking or other purchase or enquiry we will ask you for your name, address, e-mail address and telephone number. We need to collect this information in order to arrange the travel and other services you are requesting.
If you enter a competition or promotion, complete a survey, or if you report a problem with any of our Services, we will collect your name and relevant contact information and any other personal information you choose to give us.
We will ask to send us scanned of passports or other identification documents of all travelers for the obligate registration at the Croatian ministry of Tourism. This sent datas will be deleted by us after the finished registration.
If you contact us online, we may keep a record of your e-mail or other correspondence, and if you call us by telephone, we may monitor and/or record phone conversations for training and customer service reasons.
If, when using our Services, you make a holiday/travel search on our website or with one of our travel consultants and you enter or provide any of your personal data (including telephone number or e-mail address), but do not make a booking or other purchase, we will keep and use the data you’ve provided for a limited time and purpose, as mentioned below.
To help us keep your information current, accurate and complete, please ensure you tell us if anything needs to be changed.
Personal data we collect and/or observe about you
Based on how you have used our Services in the past and your activity on our website, social media channels, or with our contact centre, we collect the following personal data about you:
Details of the services we have provided to you in the past, including your previous travel arrangements and matters related to those arrangements, such as details of your previous requirements or complaints.
We collect details of your visits to our Sites (including, but not limited to, traffic data, location data and weblogs) whether this is required for our own purposes or otherwise, and of the resources that you access. We use third party technology services, such as Google Analytics to administer these services.
We collect details of website(s) you visited before you use a link to our Sites, pages visited in our Sites, and time spent on each page.
We may collect information about your computer (or mobile device/tablet) including, where available, your IP address, operating system, device location, browser type, cookie identification numbers, for system administration purposes, our own marketing purposes . This is statistical data about our users' browsing actions and patterns, and any reports we share do not identify any individuals.
Images of you taken on our CCTV systems at our premises.
Personal data obtained from other sources
We might also receive your personal data from third party sources who collect information about you on our behalf. This includes:
If you book one of our holidays through a third party travel agent, certain personal data (as applicable to your booking, such as your name, date of birth or any special requirements you have) will be passed to us to provide the services you have requested/booked.
If you complete any of our customer feedback questionnaires/surveys, the information you provide will be processed on our behalf and provided to us by a third party..
If you provide feedback on us via a Twitter survey, the feedback, but not your personal data, will be processed by Twitter and passed to us. A digital marketing company called Social Chain Ltd is used by us to administer these surveys and other activity on our social media channels.
Where is your data stored and who it’s shared with:
Your personal data is held on a combination of our own systems and systems of the suppliers we use to provide our services. Read more here…..
When you give your personal data to us, some of the personal data you provide will need to be given to and processed and stored by relevant third parties. These third parties include:
our technology and data management partners who help us to administer the services we provide (such as Lodgify who provide central reservation services;
our travel partners, such as hoteliers andinsurance companies, so that they can provide you with the arrangements and assistance you require.
Some of these third parties may be based outside of the European Economic Area (“EEA”). Organisations that are based outside of the EEA may not be subject to the same level of controls in regard to data protection as exist within the UK and the EEA. We aim only to transfer your data to third parties outside of the EEA where either:
(a) your personal information will be subject to one or more appropriate safeguards set out in the law, if you’d like more information about our safeguards, please contact us. These safeguards might be the use of standard contractual clauses in a form approved by regulators, or having our suppliers sign up to an independent privacy scheme approved by regulators (like the US ‘Privacy Shield’ scheme); or
(b) the transfer is necessary to enable your contract to be performed.
In order for you to travel overseas, we may be required to disclose certain of your personal data to government bodies or other authorities in the UK and in other countries, such as those responsible for immigration, border control, law enforcement, security and anti-terrorism. Even if it is not mandatory for us to provide information to such authorities, we may exercise our discretion to assist them where appropriate in the interests of detecting and preventing criminal activity.
We may disclose your personal information to any member of our Group for business purposes, (those business purposes include holding your data on central/shared systems for administering bookings and supporting customers in destination countries). Our Group means our subsidiaries and our ultimate holding company and its subsidiaries.
We may pass your data to relevant third parties.
How do we use your information when providing our services to you:
In order to provide our services to you, we use the information we hold in a number of different ways. We process your information either because it is necessary for us to do so as part of a contract you enter into, or because we have a legitimate business reasons for doing so. Read more here……
The following activities are carried out by us using your personal data because it is necessary in relation to a contract which you have entered into or because you have asked for something to be done so you can enter into a contract;
Administering your booking internally and communicating your booking externally with our suppliers, to ensure the services you have requested are arranged;
To communicate with you regarding your booking or any other purchase, including sending booking confirmation and documents;
We may use and process your personal information as set out below where it is necessary for us to carry out activities for which it is in our legitimate interests as a business to do so:
To improve customer experience:
To allow you to participate in interactive features of our Sites, when you choose to do so.
To ensure that content from our Sites, and booking systems is presented in the most effective manner for you and for your computer;
To notify you about changes to our service;
To protect our business against financial loss;
For debt collection or credit vetting;
For payment card and booking verification (including using Google reCAPTCHA on some of our Sites to ensure only genuine customer bookings are made).
To maintain a safe and secure environment and prevent and detect criminal activity;
Using CCTV in our premises.
To promote our business, improve our products and services;
To send marketing correspondence about products and services similar to those you have previously bought from us. You can opt out and object to our sending you electronic marketing information and this option will be included in every marketing message we send you. See the section ‘When and how do we use your information for marketing for more information’.
To contact you if you make an enquiry with us on our website but do not complete a booking to check if there was a problem or you need any assistance to book;
For internal research/analysis to improve the quality of our Services, the products we offer and new products we are developing by:
Inviting customers to take part in surveys or customer/business discussion groups;
Using aggregated customer data to make informed decisions based on analysis of customer booking or other purchase trends and behaviours.
To promote our business, brands and products and measure the reach and effectiveness of our campaigns;
To contact you with targeted advertising delivered online using Google DoubleClick and through social media and other platforms operated by other companies. You may receive advertising based on information about you that we have provided to the platform or because, at our request, the platform has identified you as having similar attributes to the individuals whose details it has received from us. To find out more, please refer to the information provided in the help pages of the platforms on which you receive advertising from us;
We use this information in two ways:
We identify links between your attributes and your behaviours and market to others with the same attributes, in our direct marketing campaigns and through targeted advertising delivered through our Sites or third party platforms including social media channels.
We tailor and personalise our interactions with you to make them more relevant to your interests. These interactions include your journey around our Sites and the content that appears on it and marketing communications we send or show to you in our direct marketing campaigns and through online targeted advertising described in the paragraph above. Please see ‘How we personalise marketing for you’ for more information;
To support any potential company sale or acquisition:
In the event that we sell or buy any business or assets, we may disclose your personal data to the prospective seller or buyer of such business or assets.
We may use and process your personal information as set out below where we consider that it is in your vital interests that we do:
To assist you or arrange for assistance to be provided to you by third parties either in the event of an incident or emergency.
We may use and process your personal information as set out below where we have your consent to do so:
To assist you or arrange for assistance to be provided to you by third parties where you have special requirements in relation to special categories of personal data (please refer to the section: ‘What types of personal data do we collect about you and why do we collect it’).;
To send marketing correspondence about our products and services where we have asked for your permission to do so. See the section ‘When and how do we use your information for marketing for more information’.
We and third parties acting on our instructions, such as external law firms and their employees, may use and process your personal information as set out below where there is a legal requirement for us to do so:
For resolving complaints, dealing with disputes and legal proceedings. This might include contacting you proactively if we need to resolve any issues you may be experiencing or have experienced with a booking or other purchase;
When and how do we use your information for marketing:
To find out more about our marketing communications, including when and how we may contact you and how you can opt out of marketing, please read more here…..
If you have made an enquiry or purchase on one of our Sites, or contact centre, your personal data may be used by us in the ways the law allows, to contact you by post, electronic means (e-mail or text message) and/or by phone with information and offers relating to products or services that you can book/purchase from Thomas Cook/SENTIDO Hotels & Resorts companies. We will only do this if you did not opt out of such marketing at the point where we collected your contact details.
If you have not made an enquiry or purchase, we will only send you information and offers by e-mail or text message if you sign up (opt in) to receive such marketing, either directly through us or by telling a third party that you would like to receive marketing from us.
The type of products and services that can be booked/purchased through SENTIDO Hotels & Resorts are shown in the table below. You will only receive marketing communications about those which we think are relevant to you:
Travel and travel related services from
our group companies
Third party products services which you can book through us
Holidays and travel arrangements from SENTIDO Hotels & Resorts websites
· Holiday Extras (for airport parking and hotels and car hire).
We will not pass your contact details to a third party that is not one of our business partners involved in providing Thomas Cook services or products for them to contact you or send you marketing communications unless you have expressly agreed that we may do so.
How do we personalise our marketing to you:
To try and ensure that our marketing communications and advertising are relevant to you, we work with third parties to offer a better experience to customers and potential customers. You can find out how we do this by reading more here…….
Using new technologies and with the help of our advertising agencies and marketing activation platforms, we may use your personal information in the following ways:
to try to ensure any marketing communications we send to you are offering products or services likely to be of interest to you.
to tailor and track our digital marketing (for example, our internet banner advertisements) and links from our marketing partners' websites to our Sites. This digital marketing may include marketing related to Thomas Cook or marketing related to business partners to whom we provide advertising services.
Our business partners and advertising networks may serve you with non-personalised adverts on our Sites via advertising technology Google Double Click for Publishers. Non-personalised adverts are targeted using contextual information regarding the pages visited on our site, rather than the past behaviour of a user. We allow third parties to collect information about your online activities using cookies and other technologies. The third parties may include other Thomas Cook companies, our suppliers/business partners who collect information when you view or interact with an advert on one of our Sites, and advertising networks. We also collect information about your online activities using cookies and other technologies when you use websites other than our Sites to provide advertising services on behalf of our business partners. This technology allows us to display an advert to you relating to a business partner on other websites based on your page visits and other behaviours whilst on our Sites.
Please see our Cookies Policy for more information.
What you need to do if you don’t want our marketing communications:
We understand you might no longer want to hear from us and that’s ok. It is easy to opt-out or unsubscribe, please read more here…..
You have the right at any time to ask us not to process your personal data for marketing purposes. You can exercise your right to prevent such processing by selecting the ‘no marketing’ option on the forms we use to collect your data. You can also exercise this right at any later time by using the unsubscribe link on any marketing e-mail you receive, by following the opt-out instructions on any direct marketing communication sent by post, or by sending an unsubscribe request to : firstname.lastname@example.org or Data Protection Officer SENTIDO Hotels & Resorts GmbH, Thomas cook Platz 1, 61440 Oberursel, Germany.
Please note – when you unsubscribe from marketing in respect of holiday and travel services, this opt-out will apply only to the Thomas Cook company making the marketing communication. If you receive marketing directly from Thomas Cook Airlines Ltd and if you wish to opt-out from their direct marketing you will need to follow the instructions on their website or follow unsubscribe notices in their marketing communications.
Your rights in relation to any personal data we hold about you:
You have a number of rights in relation to your personal information under data protection law. To find out more, please read here…..
Your Right to Access Your Personal Information
You have the right to make a Data Subject Access Request in many circumstances. That is a request for access to the personal information that we hold about you. If we agree that we have to provide personal information to you (or someone else on your behalf), we’ll provide it to you or them free of charge.
We may ask for proof of identity and sufficient information about your interactions with us that we can locate your personal information. That may include information about your previous booking(s) or other purchases. If someone is acting on your behalf they will need to provide written and signed confirmation from you that you have given your authority to that person/company for them to make the request. We will ask for this to be provided before we give you (or another person acting on your behalf) a copy of any of your personal information we may be holding. We may not provide you with a copy of your personal information if it includes the personal information of other individuals or we have another lawful reason to withhold that information.
Please see the section titled ‘How to Contact Us’ if you need to make a Data Subject Access Request.
Correcting and updating your personal information
The accuracy of your information is important to us and we are working on ways to make it easier for you to review and correct the information that we hold about you.
In the meantime, if you change your name or address/e-mail address, or you discover that any of the other information we hold is inaccurate or out of date, please let us know by contacting us at email@example.com.
Erasing your personal information or restricting its processing
In certain circumstances, you may ask for your personal information to be removed from our systems by e-mailing or writing to us at the address at the end of this policy. Provided we do not have any continuing lawful reason to continue processing or holding your personal information, we will make reasonable efforts to comply with your request.
You may also ask us to restrict processing your personal information where you believe it is unlawful for us to do so, you have objected to its use and our investigation is pending or you require us to keep it in connection with legal proceedings. We may only process your personal information whilst its processing is restricted if we have your consent or are legally permitted to do so, for example for storage purposes, to protect the rights of another individual or company or in connection with legal proceedings.
Transferring your personal information in a structured data file
Where we rely on your consent as the legal basis for processing your personal information or need to process it in connection with your contract, as set out in section titled ‘How do we use your information when providing our services to you’, you may ask us to provide you with a copy of that information in a structured data file.
You can ask us to send your personal information directly to another service provider, and we will do so if this is technically possible. We may not provide you with a copy of your personal information if it contains the personal information of other individuals or we have another lawful reason to withhold that information.
How to contact us:
Any subject access request can be made in writing to:
APOZ Vodice, Racice I 18, 22211 Vodice, Croatia
Alternatively you can make a subject access request by e-mail to: firstname.lastname@example.org
Once you have made your request and provided us with the information we need to begin a search for the data we hold on you (including proof of identity), we will have 30 days to respond.
Keeping hold of your personal data:
If you want to find out more about our data retention policy, please read more here…..
What is our approach to data security:
We take data security very seriously, to find out our approach to this please read more here…..
The transmission of information via the internet is not completely secure, and although we will do our best to protect your personal data, we cannot guarantee the security of your data transmitted to our Sites, therefore any transmission is at your own risk. Once we have received your information, we will take all reasonable steps to keep your personal data secure and to try to prevent any unauthorised access, use or loss of your data, by putting in place appropriate security measures and limiting access to those who have a business need to know. All information you provide to us is stored on our secure servers. . We do not store customer card data on our internal systems. Where we have given you (or where you have chosen) a password which enables you to access certain parts of our Sites, you are responsible for keeping that password confidential. We ask you not to share a password with anyone.
We have a process to deal with any suspected personal data breach and will notify you and the ICO of a breach where legally required to do so.
What happens when you follow a link from our website to a third party website:
Our Sites include links to other websites which include privacy policies of their own. To learn more about this, please read here……
Our Sites contains links to and frames of websites of our principals, suppliers, advertisers and other third parties. You can tell when a third party is involved in supplying a product or service you have requested because their name will appear with ours. If you follow a link or otherwise use any of these other websites, please note that these websites have their own privacy policies and that we do not accept any responsibility or liability for these policies or for these third party websites. Please check these policies before you submit any personal data to these websites.
November 2018, version 1