Controller identity
Where it determines the purposes and means of personal-data processing for its own business and public website, Syncbeds is the controller.
Controller and processor
For data that a business customer enters into the Service about its own guests, employees or contacts, that customer normally determines the purposes of processing, and Syncbeds may act as processor only under documented instructions and the contractual relationship.
Data categories
Depending on the contact and functions actually used, data may include identity and contact details, account data, communications, usage data and data that a business customer lawfully enters into the Service.
Purposes and legal bases
Data are processed to reply to an enquiry, conclude or perform a contract, manage an account, maintain security, meet legal duties and protect legitimate interests, always with an appropriate legal basis.
How data are collected
Data are collected directly from you through forms, accounts, communications and use of the Service; business-customer data are collected from that customer or under its instructions.
Recipients and processors
Data are disclosed only to authorised people and actually engaged service providers where necessary for the stated purposes, with suitable contractual and security measures. A list will be published after confirmation.
International transfers
No transfer outside the European Economic Area is stated as existing until confirmed. If one is introduced, Syncbeds will apply suitable safeguards and update this Policy.
Retention periods
Data are retained only for as long as needed for the purpose, contract, legal duty or handling of a request. Specific periods will be published after internal confirmation.
Security measures
Syncbeds applies organisational and technical measures appropriate to risk, including access management and confidentiality protection. No claim about a specific technology is made until verified.
Data-subject rights
You may request access, rectification, erasure, restriction, portability or object where the conditions are met. For data controlled by a business customer, requests should normally be directed to that customer.
Complaint to AZOP
If you believe processing breaches the rules, you may lodge a complaint with the Croatian Personal Data Protection Agency (AZOP) or another competent authority.
Policy changes
Syncbeds may update this Policy because of changes to processing, law or the Service. A new version will be posted on this page with its effective date.
Contact
For all legal questions and privacy enquiries, contact Neven Palčec at neven@syncbeds.com. The same contact applies to enquiries addressed to the Data Protection Officer (DPO).
Company details
Syncbeds d.o.o. za informatičke usluge i trgovinu Ulica Vjekoslava Klaića 14, 10000 Zagreb, Hrvatska OIB: 64494783672 Matični broj: 05499267 Djelatnost: Ostale rezervacijske usluge i djelatnosti povezane s njima
