Legal

Privacy Policy

This policy explains what we collect, why we collect it, how we use it, how long we keep it, and what choices you have. We keep the language plain.

1. Who we are

Parvixo Hotel (“Parvixo”, “we”, “us”) operates this website at parvixo.com.

Add your legal entity details here (company name, registration, and a mailing address) if required for your jurisdiction. Keep this consistent with booking confirmations.

2. Data we collect

We collect only what is needed to respond, provide service, and keep the website functioning.

You provide

Contact and request data

  • Name, email, phone (if you provide it).
  • Message content (dates, preferences, requests).
  • Accessibility notes you choose to share.
  • Dietary notes you choose to share.

We recommend: share only what is necessary for your request.

Collected automatically

Basic technical data

  • IP address (often required for security and server logs).
  • Browser type, device type, and pages viewed (usually in aggregate).
  • Cookie consent status (accepted/rejected) stored locally.

We avoid invasive tracking. See Cookie Policy.

3. Why we use your data

Purpose-limited use. We do not sell personal data.

Service

Respond to requests

  • Answer questions about rooms, dining, experiences, amenities.
  • Confirm availability and special requirements.
  • Provide directions and logistics.
Operations

Run the hotel

  • Manage reservations and guest communications.
  • Coordinate service requests (quiet placement, accessibility notes).
  • Handle billing/receipts if applicable to your booking path.
Security

Keep systems stable

  • Prevent abuse and automated attacks.
  • Troubleshoot performance issues.
  • Maintain server logs for short periods.

4. Legal bases (general)

Depending on your jurisdiction, we rely on standard legal bases.

  • Contract / steps before contract: responding to booking-related requests and managing stays.
  • Legitimate interests: site security, basic analytics, fraud prevention (balanced against privacy).
  • Consent: cookie consent choices and optional communications where required.
  • Legal obligations: record-keeping where required by law.

If you operate in Canada, align this section with PIPEDA and applicable provincial rules.

5. Sharing and service providers

We share data only when needed to operate the service.

Examples

Who may process data

  • Email hosting / communication tools.
  • Website hosting and security services.
  • Reservation or CRM systems (if you use them).
  • Payment processing (if applicable to your booking flow).
Boundaries

What we do not do

  • No sale of personal data.
  • No unrelated ad targeting based on your messages.
  • No sharing with third parties “just in case.”

6. International transfers

Your data may be processed outside your province/country depending on service providers.

If we use providers with global infrastructure, your data may be stored or processed in other jurisdictions. We aim to select providers with appropriate security and contractual protections.

7. Retention

We keep data only as long as necessary.

  • Contact requests: retained long enough to respond and resolve follow-ups.
  • Reservation records: retained as needed for operations and legal obligations.
  • Security logs: retained for short periods unless needed to investigate abuse.
  • Cookie consent: stored locally in your browser until you clear site data.

Replace with exact time ranges if your policy requires them.

8. Security

We apply reasonable safeguards, but no system is zero-risk.

Measures
  • Access controls for staff and systems.
  • Encryption in transit (HTTPS) where supported.
  • Least-privilege approach for providers and accounts.
  • Incident response process for suspected compromise.
Your role
  • Avoid sending sensitive personal data unless necessary.
  • Use a secure email account when contacting us.
  • Let us know if you believe your data is at risk.

9. Your choices and rights

Depending on your jurisdiction, you may have access, correction, or deletion rights.

  • Request access to the data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion where applicable and lawful.
  • Object to certain processing in specific contexts.
  • Manage cookies via your browser and our cookie consent options.

To exercise a request, contact: [email protected]

10. Children

This website is not intended for children’s direct use without a guardian.

If you knowingly collected a child’s personal data, define how you handle deletion requests here.

11. Changes to this policy

We may update this page to reflect operational or legal changes.

We will post the updated version here. If changes are material, we may add a notice on the website.
Last updated:

Pros & Cons (privacy approach)

Plain trade-offs: we keep data minimal, but some data is unavoidable for operations.

Pros
  • Purpose-limited collection.
  • No selling of personal data.
  • Clear contact path for requests.
Cons
  • Basic logs (IP, security) are often unavoidable for hosting.
  • Retention may be required for legal obligations.
  • International processing may occur via providers.