Privacy policy

Country Hotel Anna

Manfred Rettenbacher
Version from 26.04.2023

The protection of your personal data is of particular concern to us. We therefore process your data exclusively on the basis of the applicable legal provisions (EU General Data Protection Regulation GDPR, TKG 2003). In this data protection information, we inform you about the most important aspects of data processing in the context of our activities.

It is generally possible to use our website without providing personal data. If you enter personal data, e.g. for the purpose of contacting us or subscribing to a newsletter, we will pass on the necessary information to companies that process data on our behalf (e.g. send the newsletter). We only commission companies that are subject to the General Data Protection Regulation.

Encrypted transmission
For reasons of security and data protection, this website uses SSL encryption, which prevents third parties from intercepting and reading the data you enter during transmission. You can recognize active encryption by the padlock or similar symbol in the address bar of your browser.
Contact with us
If you contact us using the form on the website, by email or by other means, the data you provide (name, email address and optionally telephone number) will be stored by us for one year for the purpose of processing the inquiry and in the event of follow-up questions. If the inquiry results in a contract, the statutory retention periods apply. We will not pass on this data without your consent. Data processing is carried out on the basis of Art. 6 para. 1 lit. b (contract fulfillment) and Art. 6 para. 1 lit. a (consent) of the GDPR.
EasyBooking booking platform
We use the EasyBooking booking platform on the basis of legitimate interest to simplify booking requests.
Operator of the EasyBooking booking platform:
zadego GmbH; easybooking department;
Tschamlerstraße 4
A-6020 Innsbruck (Austria)

If the guest makes bookings and inquiries via the third-party platform EasyBooking, we receive various personal information from EasyBooking. In addition, we may receive inquiries about your booking. We will process this data by name in order to record your booking as requested and provide the booked services. The legal basis for data processing for this purpose is the fulfillment of a contract in accordance with Art. 6 para. 1 lit. b GDPR.

Finally, we may be informed by the EasyBooking booking platform about disputes in connection with a booking. We may also receive data on the booking process, which may include a copy of the booking confirmation as proof of the actual completion of the booking. We process this data to safeguard and enforce our claims. This is our legitimate interest within the meaning of Art. 6 para. 1 lit. f GDPR.

Please also note the privacy policy of EasyBooking https://www.easy-booking.at/wo/Services/com/eBook/legalDocs/legalDoc.php?legalDocName=PrivacyPolicy&legalDocType=bookingEngine&legalDocCategory=guest&localeName=de_AT&content=textHTML

Newsletter
You have the option of subscribing to our newsletter via our website. To do this, we need your e-mail address and your declaration that you agree to receive the newsletter. As soon as you have registered for the newsletter, we will send you a confirmation email with a link to confirm your registration. Data processing is therefore carried out on the basis of the statutory provisions of Section 96 (3) TKG and Art. 6 (1) (a) (consent) of the GDPR. You can unsubscribe from the newsletter at any time. Please send your cancellation to the following e-mail address: or use the corresponding link at the end of the newsletter. We will then immediately delete your data in connection with the newsletter dispatch. The newsletter is sent by “MailChimp”, a brand of Rocket Science Group, LLC, 675 Ponce De Leon Ave NE #5000, Atlanta, GA 30308, USA. Your e-mail address, the date of your registration and the IP address used are stored on MailChimp’s servers in the USA. MailChimp uses this information to send and analyze the newsletter on our behalf. MailChimp also uses the data to optimize its own service, but will never pass it on or write to subscribers itself. The newsletters sent contain small images (tracking pixels) or redirected links for the purpose of statistical analysis, which we can use to determine whether you have read our newsletter and what type of device you have used. We have concluded an order processing contract with Mailchimp, in which Mailchimp undertakes to comply with the standard contractual clauses defined by the EU Commission. You can find MailChimp’s privacy policy here.
Server logs
The server from which this website is provided stores information that is automatically transmitted to us by your browser in so-called log files. These are
  • Browser type and browser version
  • Operating system used
  • The page (URL) from which you came to us
  • The IP address of the accessing computer
  • Time of the request
  This data is used exclusively for the technical monitoring of the web server (utilization, optimization, error detection, security) and is absolutely necessary for this purpose. They are not linked to other data sources so that they cannot be assigned to individual persons. They are deleted after three months. Data processing is carried out on the basis of Article 6(1)(f) (legitimate interests) of the GDPR. The legitimate interest within the meaning of the GDPR is the proper and secure functioning of the website.
Google Fonts
We use fonts from Google Inc, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA on our website. When you view our website, your browser downloads these fonts from Google.

Google Fonts are used without logging in and no cookies are sent to Google. If you are logged in to Google when you visit our website, your Google account data will not be transmitted to Google. Google only records the use of the corresponding fonts and stores this data securely. Details can be found at https://developers.google.com/fonts/faq. Please also refer to the Google privacy policy at https://www.google.com/intl/de/policies/privacy/, where you will find further information on the data processed. Data processing is carried out on the basis of Art. 6 para. 1 lit. f (legitimate interests) of the GDPR. The legitimate interest within the meaning of the GDPR is the appealing design of the website.
Google Maps
With your consent, we use Google Maps on our website, i.e. a road map from Google Inc, 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA. This allows us to show you the location of our site and give you the option of calculating a route to us.

If you click on the map and thereby signal your consent, your IP address, the location you are viewing and your geographical position and possibly other data will be transmitted to Google in the USA. If you have a route calculated, the starting point you entered will also be transmitted. In addition, a cookie is set that allows Google to recognize you. Please also refer to the Google privacy policy at https://www.google.com/intl/de/policies/privacy/, where you will find further information on the data processed. The data processing takes place on the basis of Art. 6 para. 1 lit. a (consent) of the GDPR.
Cookies
Our website uses so-called cookies. These are small text files that are stored on your end device with the help of the browser. They do not cause any damage.

We use cookies to make our website more user-friendly. Some cookies remain stored on your end device until you delete them. They enable us to recognize your browser on your next visit.

Some of these cookies are necessary for the operation of the website and are used to log in and store your consent to non-necessary cookies. If you do not want the necessary cookies to be stored, you can set up your browser so that it informs you about the setting of cookies and you only allow this in individual cases.

The legal basis for the use of necessary cookies is Art. 6 para. 1 lit. f (legitimate interests) of the GDPR. Legitimate interests within the meaning of the GDPR are the proper and secure functioning of the website and the optimization of our offer.

In addition, other cookies that are not absolutely necessary for the operation of the website may be stored only with your consent. Details can be found in the following sections.
Google Analytics
With your consent, our website uses functions of the web analysis service “Google Analytics” from the provider Google Inc, 1600 Amphitheatre Parkway Mountain View, CA 94043, USA. Cookies are used for this purpose, which enable the use of the website by your visitors to be analyzed. The information generated in this way is transferred to the provider’s server and stored there.

If you have consented to the use of Google Analytics, cookies are set in your browser that identify you when you visit our website again and allow us to distinguish visitors and analyze what you have viewed on previous visits to our website. As the privacy of our users is important to us, this data is pseudonymized, i.e. we cannot assign it to specific persons and do not know who the respective visitor was.

We have activated the “IP anonymization” function on this website. This means that your IP address is shortened before it is transmitted to the USA and can no longer be assigned to a specific person. Only a rough localization is possible. The IP address transmitted by your browser as part of Google Analytics will not be merged with other Google data.

We have concluded a processor agreement with Google in which Google undertakes to comply with the standard contractual clauses defined by the EU Commission.

Data processing is carried out on the basis of the statutory provisions of Section 96 (3) TKG and Article 6 (1) (a) (consent) of the GDPR.

The Google terms of use and further information on data protection can be found at the following links: https://www.google.com/analytics/terms/de.html and http://www.google.com/intl/de/policies/privacy/
Data storage
We store the following customer data for accounting purposes: Name, address, telephone number, e-mail address, VAT. ID. If you have agreed to a direct debit order (SEPA direct debit mandate), your bank details will also be stored. This data is not passed on, with the exception of transmission to the processing bank/payment service provider for the purpose of debiting, as well as to our tax advisor for accounting purposes and to fulfill our tax obligations. The data is stored exclusively within the EU.

The data you provide is required to fulfill the contract or to carry out pre-contractual measures. Without this data, we cannot conclude and fulfill the contract with you.

All data from a contractual relationship is stored until the expiry of the retention period under tax law (7 years).

The above-mentioned data is stored:
  • On encrypted local computer systems or portable computers secured by passwords and physical access protection
  • in encrypted and password-protected cloud solutions from Microsoft (Microsoft Ireland Operations Limited, Atrium Block B, Carmenhall Road, Sandyford Industrial Estate, Dublin 18, Ireland). The data is stored exclusively on servers within the EU.

We have concluded a processor agreement with Microsoft, in which Microsoft undertakes to comply with the standard contractual clauses defined by the EU Commission. You can find Microsoft’s privacy policy here.

Data processing is carried out on the basis of Art. 6 para. 1 lit c (legal provisions) of the GDPR and Art. 6 para. 1 lit b (necessary for contract fulfillment) of the GDPR.

For the purpose of contract fulfillment, access data to online services used by you such as web hosting, e-mail providers, office solutions, social media platforms, etc. will also be stored if necessary for the order placed by you and actively transmitted by you.

The storage takes place:

  • On encrypted local computer systems or portable computers secured by passwords and physical access protection.
  • In the encrypted and password-protected cloud solution LastPass (LogMeIn Ireland Limited, Bloodstone Building Block C, 70 Sir John Rogerson’s Quay, Dublin 2, Ireland). The data is stored exclusively on servers in Germany. LogMeIn is certified under the US-EU “Privacy Shield” data protection agreement and a contract data processing agreement is currently in progress.

For the purpose of remote maintenance, we use the Teamviewer service from TeamViewer GmbH, Göppingen, Germany.

For the purposes of project management, communication and time recording, your contact details or information on the content of the contract may be stored on the following systems:

  • Trello, Atlassian Pty Ltd, USA
  • Evernote, Evernote Corporation, USA
  • Slack, Slack Technologies, USA
  • Domainfactory, Germany
  • Fruux, Germany
  • TimelyApp, Norway

For the purpose of social media design and social media marketing, we will publish content on the desired social media platforms on your behalf. The data to be published (images, videos, audio files) will be provided by you. It is your responsibility to ensure that you have the necessary rights and consents for publication.

We use the following services to create, edit and publish social media content:

  • Adobe Spark, Adobe Systems Incorporated, USA
  • Hootsuite, Hootsuite Inc., Canada
  • Canva, Australia

We have concluded a processor agreement with all of the above-mentioned companies, in which these companies undertake to comply with the GDPR.

The companies based in the USA undertake to comply with the standard contractual clauses as defined by the EU Commission.

The data you provide is required to fulfill the contract or to carry out pre-contractual measures. Without this data, we cannot conclude and fulfill the contract with you. Data will only be transferred to third parties with your express permission.

All data from a contractual relationship is stored until the expiry of the retention period under tax law (7 years). Access data to systems used by the customer will be deleted immediately after the end of the contract.

Data processing is carried out on the basis of the statutory provisions of Section 96 (3) TKG and Art. 6 (1) (a) (consent) and/or (b) (necessary for contract performance) of the GDPR.

Your rights
In principle, you have the rights to information, correction, deletion, restriction, data portability, revocation and objection. Corresponding requests can be addressed to the e-mail address info@landhotel-anna.at.

If you believe that the processing of your data violates data protection law or that your data protection rights have been violated in any other way, you can lodge a complaint with the supervisory authority. In Austria, this is the data protection authority.

You can reach us at the following contact details:


Landhotel Anna
Manfred Rettenbacher
Edstraße 26
A-5522 St. Martin am Tennengebirge


+43 6463 20 298
+43 664 46 35 280
info@landhotel-anna.at