Privacy & Cookie Policy – tobecapri.it


DATA CONTROLLER
The Data Controller of the website www.tobecapri.it is:

Raffaella Rocchi
VAT No.: 08822531219
Certified Email (PEC): rocchi.raffaella@pec.it

The Data Controller manages two accommodation facilities under the same brand “TO BE CAPRI”, located in Capri (NA), Italy, each identified by its own CIN code, but operated by the same natural person with VAT number.

SCOPE OF APPLICATION
This Privacy & Cookie Policy applies to all personal data collected through the website tobecapri.it, regardless of which accommodation facility the booking or request refers to.

TYPES OF PERSONAL DATA PROCESSED
The Data Controller processes the following personal data voluntarily provided by users:
– First and last name
– Email address
– Phone number
– Booking and stay-related information
– Any additional data provided via contact forms or email

PURPOSES OF DATA PROCESSING
Personal data are processed for the following purposes:
– Responding to information requests
– Managing reservations and guest stays
– Fulfilling legal, tax, administrative, and public security obligations
– Complying with tourism and hospitality regulations

LEGAL BASIS FOR PROCESSING
Processing is based on:
– The data subject’s consent
– Performance of a contract or pre-contractual measures
– Compliance with legal obligations

PROCESSING METHODS
Data are processed using electronic and organizational tools, in accordance with the principles of lawfulness, fairness, transparency, and data minimization, and with appropriate security measures.

DATA RETENTION
Personal data are retained only for the time necessary to achieve the purposes for which they were collected and as required by applicable laws.

DATA RECIPIENTS
Personal data may be shared with:
– Accounting and tax consultants
– IT and hosting service providers
– Public authorities, where required by law

DATA TRANSFER OUTSIDE THE EU
Personal data are not transferred outside the European Union. If such transfer becomes necessary, it will occur in compliance with GDPR requirements.

DATA SUBJECT RIGHTS
Data subjects may exercise their rights under Articles 15–22 of Regulation (EU) 2016/679, including access, rectification, erasure, restriction, objection, and data portability.

HOW TO EXERCISE YOUR RIGHTS
Requests may be sent to the Data Controller via certified email (PEC).

COOKIE POLICY

WHAT ARE COOKIES
Cookies are small text files stored on the user’s device when visiting a website, used to ensure proper functionality and improve user experience.

TYPES OF COOKIES USED
This website uses:
– Technical cookies necessary for the operation of the website
– Third-party cookies related to embedded services (e.g. maps or statistics), where applicable

CONSENT MANAGEMENT
Users may manage or withdraw their consent through browser settings or any cookie banner implemented on the website.

DISABLING COOKIES
Cookies can be disabled through browser settings. Disabling technical cookies may affect the correct functioning of the website.

UPDATES
This Privacy & Cookie Policy may be updated periodically. Users are encouraged to review it regularly.