PRIVACY POLICY

GENERAL INFORMATION

Beržynė Homestead defines this privacy policy (hereinafter referred to as the “Privacy Policy”) as the procedure related to the personal data provided by the visitors of www.berzyne.lt (hereinafter referred to as the “Website”), the visitors of the website, the visitors who purchase the services of the Beržynė Homestead, and the visitors of the Beržynė Homestead (hereinafter referred to as the “Visitors”), as well as the storage and use of the personal data in the purpose of the implementation of the services provided by the Beržynė Homestead (hereinafter referred to as the “Data Controller”). The terms and conditions set out in the Privacy Policy shall apply each time a Visitor accesses the content and/or service provided by the Data Controller, purchases a service/product or sends an enquiry, regardless of the device (computer, mobile phone, tablet, television, etc.) used by the Visitor. The Visitor shall be deemed to have read and confirmed his/her consent to the Privacy Policy when he/she visits the Website, logs on to the Website and/or purchases a product and/or service sold on the Website. A visitor who disagrees with any provision of the Privacy Policy does not confirm his/her consent and forfeits the right to visit the Website, log in and use all and/or any of the services provided on the Website. Persons under the age of 16 may not submit any personal data through our Website. If you are a person who is under the age of 16, you must obtain the consent of your parent or other legal guardian before submitting personal information. This Policy does not apply when a Visitor browses other companies’ websites or uses third-party services while visiting the Beržynės website. When processing personal data, we comply with the requirements of the European Union Data Protection Regulation 2016/679, the Law on Legal Protection of Personal Data of the Republic of Lithuania, the Law on Electronic Communications of the Republic of Lithuania, and other related legal acts, as well as the instructions of the controlling authorities.

THE NATURE OF THE VISITOR INFORMATION COLLECTED

The personal data of the visitor is obtained by the Data Controller in the following ways (including, but not limited to): upon arrival at the Farmhouse and filling in the guest card; upon arrival at the Farmhouse and access to the CCTV area; by submitting a query to the Data Controller (in writing or by e-mail) via the contacts indicated by the latter or via the Website; when making payments to the Data Controller for the services purchased; by accessing the Data Controller’s website; and by obtaining data from third parties (insurance companies etc.). The visitor’s personal data includes the following information:

  • Visitor’s name, surname, date of birth, number of identity document, nationality of the person accommodated and the country that issued the identity document, residential address, e-mail address, telephone number, residential address (the amount of data is defined by the Order of the Director of the State Department of Tourism under the Ministry of Economy “On the Approval of the Description of the Procedure of the Registration of the Citizens of the Member States and Other States to be Accommodated,” 5 December 2011 No. V-154; Article 6(1)(a) GDPR – consent; Article 6(1)(b) GDPR – performance of a contract; Article 6(1)(c) GDPR – a legal obligation (keeping records of the services provided); data retention period – 1/10 years).
  • Bank account number (Article 6(1)(b) GDPR – performance of a contract, Article 6(1)(c) GDPR – legal obligation (keeping records of the services provided); data retention period – 1/10 years).
  • Image, other data visible in the video after entering the territory of the Data Controller (Article 6(1)(f) of the GDPR – legitimate interest; data retention period – 30 days).
  • Information about the Visitor’s computer, the Visitor’s visits and use of the Data Controller’s Website, including the IP address, the time and date of access to the Website (Article 6(1)(a) of the GDPR – consent, duration of data retention – the duration of the activity of the specific cookies can be found in the cookie management window).
  • Information that reveals the characteristics of the use of the services provided by the Data Controller and/or automatically generates statistics on visits (Article 6(1)(a) of the GDPR – consent, duration of data retention – the duration of the activity of the specific cookies can be found in the cookie management window).
  • Any other additional information that the Visitor may provide to the Data Controller at any time when using the services provided by the Website of the Data Controller (Article 6(1)(a) of the GDPR – consent, duration of data retention – until the withdrawal of consent).

VISITOR (DATA SUBJECT) RIGHTS

The visitor has the right to refuse to provide his/her personal data, however, the provision of personal data is necessary and indispensable for the purposes set out in this Privacy Policy. If the Visitor does not provide his/her personal data, the Data Controller will not be able to fulfil the purposes listed above. A visitor who has accepted the terms of this Privacy Policy has the following rights:

  • To familiarise yourself with the data processing policy;
  • To be informed about the processing of personal data concerning him/her;
  • Request the rectification, correction, completion or cancellation of personal data provided where it is believed that the processing is unlawful or fraudulent;
  • Stop the processing of your data (except for storage);
  • To object to the processing or use of the Visitor’s data for direct marketing purposes, including profiling insofar as it relates to direct marketing.
  • Withdraw your consent to the use of your data for marketing purposes at any time.

In order to exercise the above rights, the visitor is invited to submit a written request to the Data Controller at the following email address: info@berzyne.lt). The request must be signed with an electronic signature or be accompanied by a copy of a personal document certified by a notary public, in order for the Data Controller to verify your identity. If you send your request by registered mail to _________________________, Lithuania, the request must be signed. A copy of the requesting Visitor’s identity document, certified by a notary public, must be attached to the request. The Visitor may also exercise his/her rights through a representative. In this case, the Visitor’s representative must provide his/her name, surname, contact details, a copy of the identity document certified by a notary public, information about the Visitor (name, surname, other data on the basis of which the Data Controller could identify the Visitor as a data subject, and also provide a copy of the document justifying the representation of the Visitor, certified by a notary public). The request must be legible, signed, contain the Visitor’s name, surname, place of residence and contact details for the purpose of obtaining a response from the Data Controller, as well as information on which of the data subject’s rights and to what extent the Visitor wishes to exercise. The Data Controller shall respond to the request within 30 (thirty) calendar days of receipt of the request.

THE WAYS IN WHICH THE PERSONAL DATA PROVIDED BY THE VISITOR IS USED

Personal information provided by the visitor may be used to:

  • To allow you to use the Data Controller’s website and the services provided on it;
  • For direct marketing purposes, with the consent of the Visitor (sending newsletters; sending individual advertisements announcing promotions and special offers; organising surveys to obtain opinions on services provided);
  • For direct marketing purposes – profiling in order to offer the Visitor tailored offers and services;
  • For invoicing and reporting purposes;
  • For payment of a service (shopping basket) through the external banking provider of your choice;
  • Analysing how much and how people use our online services to improve the quality and content of our services;
  • For the purpose of security and crime prevention in the territory of the Data Controller;
  • For the purpose of claims and claims management.

METHODS OF DISCLOSING INFORMATION PROVIDED BY THE VISITOR TO THIRD PARTIES

The Data Controller undertakes not to pass on the personal data of the Visitor to any unrelated third parties, except in the cases listed below:

  • If the visitor consents to the disclosure of his/her personal data and confirms this in writing;
  • Where the Visitor’s personal data is needed by the Data Controller’s partners who provide the services listed on the Data Controller’s website when the Visitor subscribes to these services. The Data Controller shall only provide personal information of the Visitor to service providers when it is necessary for the performance and quality of the service and to the extent necessary for the performance of the specific service;
  • Data centre, hosting, cloud, website administration and related services companies, software development, provisioning, support and development companies, IT infrastructure services companies, connectivity services companies;
  • The Data Controller’s website may also contain advertising messages and links to third party websites and services – the Data Controller does not control third party services. The Data Controller is not responsible for the security and privacy of information collected by third parties. The visitor must make him/herself aware of the privacy practices applicable to the third-party websites and services he/she uses;
  • law enforcement authorities in accordance with the procedures and requirements laid down by the legislation of the Republic of Lithuania, or on the Data Controller’s own initiative in the event of suspicion that a criminal offence has been committed, as well as the courts and other dispute resolution bodies.

DURATION OF STORAGE OF THE DATA PROVIDED BY THE VISITOR

The Data Controller shall keep the personal data of the Visitor for no longer than required by the purposes of the processing or by law, if such longer retention is provided for in the law. Personal data shall be retained for as long as the contractual relationship may give rise to legitimate claims or as necessary for the fulfilment and protection of the legitimate interests of the Data Controller. Personal data that are no longer needed are destroyed.

NEWSLETTERS

After subscribing to the newsletter, the visitor’s email address will be changed to the following. the email address will be used by the Data Controller on the basis of the Visitor’s consent, which the Visitor may revoke at any time. Visitor’s email. the email address may be transferred by the Data Controller to third parties providing specialised services for the generation and sending of newsletters to Visitors;

After sending a newsletter, the Data Controller may collect statistical data about the Visitor’s behaviour (whether the Visitor opened the email, etc.);

Visitor’s email. email address for the purpose of sending newsletters is used until the Visitor unsubscribes from the Data Controller’s offers. You can unsubscribe from our newsletters by clicking on the link at the bottom of the newsletter.

USE OF COOKIES

When visiting the Controller’s website, the Visitor must be provided with content that is relevant to their needs. This process requires cookies, which are pieces of information that automatically store the visitor’s data (e.g. registration name, language, font size and other display options) when browsing the Controller’s website. They help to save the history of visits to the website, to adapt the content of the website accordingly, and to monitor the duration of visits to the website, to collect statistical information about the number of visitors and to monitor the smooth operation of the website;

In order to analyse the use of the Website, the Data Controller uses Google Analytics and other similar tools. These tools are designed to collect statistics on the use of the Website and/or other relevant information to generate reports on the use of the Website.

You can find out what cookies are used on this website and how to manage them in the cookie control panel on each page.

FINAL PROVISIONS

The Data Controller has the right to amend the Policy in part or in full;

Amendments or changes to the Privacy Policy shall come into force from the date of their publication on the Website;

If, after the addition or modification of the Policy, the Visitor continues to use the Data Controller’s website and the services provided by it and confirms his/her consent, the Visitor shall be deemed to have accepted such additions and/or modifications;

This Policy shall be reviewed at least once every 2 (two) years and updated as necessary.

Privacy Policy was last updated on 01-08-2024.

CONTACT US

If you have any questions, please feel free to contact us at. email: info@berzyne.lt.