Privacy Policy for Sunshine Surf Retreats
At Sunshine Surf Retreats, accessible from sunshinesurfretreats.com, we prioritize the privacy of our visitors. This Privacy Policy document describes the types of information we collect, how we use it, and the rights you have concerning your personal data, in compliance with global privacy laws, including the GDPR, CCPA, and CPA.
1. Information We Collect
We collect personal data in the following circumstances:
- When you fill out our contact form: Name, email address, and any other information you choose to provide.
- During checkout: Contact information (such as name, email address, phone number), billing information, and payment details.
- Automatically through website interactions: IP address, browser type, operating system, referring URLs, and other browsing-related data (via cookies and tracking technologies).
2. How We Use Your Information
We use the information we collect for the following purposes:
- To respond to your inquiries and provide customer support.
- To process your bookings and payments for our retreats.
- To send you updates about our services, including newsletters, promotions, or updates, with your consent.
- To analyze traffic and improve the usability of our website.
- To comply with legal obligations.
3. Legal Basis for Processing Data
Depending on your location, the legal bases for processing your personal data include:
- Consent: When you subscribe to newsletters, or when we rely on consent for certain types of data collection, as required by law.
- Contract: When processing your booking and providing our services.
- Legitimate interest: For website analytics and service improvements, balanced against your rights.
- Legal obligations: To comply with applicable laws, such as tax reporting or fraud prevention.
4. Your Rights Under Different Privacy Laws
Depending on your location, you have certain privacy rights. Below are your rights under various privacy frameworks:
GDPR (EU/EEA Residents)
- Right to Access: Request a copy of the personal data we hold about you.
- Right to Rectification: Request corrections to any incorrect or incomplete data.
- Right to Deletion: Request deletion of your personal data under certain conditions.
- Right to Restriction: Request that we limit how we use your data.
- Right to Data Portability: Request that we transfer your data to another service.
- Right to Object: Object to certain data processing activities.
California Consumer Privacy Act (CCPA/CPRA)
If you are a resident of California, you have the following rights:
- Right to Know: Request that we disclose what personal data we have collected about you over the past 12 months.
- Right to Delete: Request deletion of your personal data.
- Right to Opt-Out: Opt-out of the sale or sharing of your personal information (although we do not sell personal information).
- Right to Non-Discrimination: You will not be discriminated against for exercising your privacy rights.
Colorado Privacy Act (CPA)
Colorado residents have similar rights to those under the GDPR and CCPA:
- Right to Access: Request the personal data we hold about you.
- Right to Correction: Request corrections to your personal data.
- Right to Deletion: Request deletion of your personal data.
- Right to Opt-Out: Opt-out of processing for targeted advertising or the sale of personal data.
Other Global Privacy Laws
Depending on your country, you may have similar rights under laws such as Brazil’s LGPD, Canada’s PIPEDA, and Australia’s Privacy Act 1988. We respect these rights and will respond accordingly to any requests made under these laws.
5. How to Exercise Your Rights
If you wish to exercise any of the rights mentioned above, you can contact us at:
- Email: [email protected] or [email protected]
We will respond to your request within the timeframes required by the relevant privacy laws. Please note that we may require you to verify your identity before processing your request.
6. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to track your activity on our website. Cookies help us analyze traffic and improve the user experience. You can manage your cookie preferences through your browser settings.
7. Data Sharing and Selling
We do not sell, trade, or rent personal data to third parties. We may share your personal data with:
- Service providers: Payment processors, booking systems, and other third parties necessary to manage our services.
- Legal obligations: When required by law, or in response to valid requests by public authorities.
8. Data Security
We use appropriate technical and organizational measures to secure your personal data and protect it from unauthorized access, disclosure, or misuse.
9. Data Retention
We retain personal data only for as long as necessary to fulfill the purposes outlined in this policy, or as required by law.
10. Children’s Privacy
We do not knowingly collect personal data from individuals under the age of 16 without parental consent. If we discover such data, we will take steps to delete it.
11. Changes to This Privacy Policy
We may update this privacy policy from time to time. Any changes will be posted on this page, and we encourage you to review it periodically.
12. Contact Us
If you have any questions about this privacy policy, please contact us:
- Email: [email protected] or [email protected]