Privacy Policy Daruvarske toplice rezervacije

This Privacy Policy describes the data practices of the mobile application Daruvarske toplice rezervacije (the “App”), an online reservation application for Daruvarske Toplice services. The App is developed by ANIQ d.o.o. on behalf of Daruvarske Toplice. By using the App you agree to the terms of this Privacy Policy.
 
Information Collection and Use The App collects a limited set of personal data strictly necessary to provide its reservation functionality:
  • First and last name — to identify the reservation holder.
  • Email address — to send reservation confirmations and service-related communication.
  • Phone number — for direct contact regarding the reservation.
  • Reservation details — selected service, date, and time.
 
This information is collected only when you create a reservation in the App and is used solely for the purpose of fulfilling that reservation.
 
No Tracking The App does not engage in tracking as defined by Apple’s App Tracking Transparency framework. Specifically:
  • The App does not access the Advertising Identifier (IDFA) or any equivalent identifier.
  • The App does not link user or device data with third-party data for advertising or measurement purposes.
  • The App does not share user data with data brokers.
  • The App does not track users across other apps or websites.
 
Third-Party Services No third-party analytics, advertising, marketing, or data-tracking SDKs are integrated into the App. The App does not use Google Analytics, Firebase Analytics, Meta Pixel, AppsFlyer, Adjust, Branch, or any similar service.
 
The App does not employ third-party companies or individuals for data collection beyond the hosting infrastructure that stores reservation records, which acts solely as a data processor under a data processing agreement and does not access data for its own purposes.
 
Cookies The App does not use “cookies” as understood in a web browsing context. The App does not integrate any third-party code or libraries that use cookies for tracking or analytics.
 
Advertising The App contains no advertisements, ad networks, behavioral advertising, remarketing, or attribution mechanisms.
 
Local Storage Some non-sensitive operational data (such as your acceptance of the GDPR consent and a local copy of your reservation history for offline viewing) is stored on your device in the App’s local database. This data remains on your device and is not transmitted except as needed to synchronize reservations with the service provider.
 
Service Providers The App relies on the following service provider to operate:
  • Reservation backend host — stores reservation records so that staff at Daruvarske Toplice can process your booking. The host acts strictly as a data processor and does not use the data for any other purpose.
 
Security We take reasonable technical and organizational measures to protect personal data, including HTTPS encryption of all network traffic, restricted database access, and secure storage of credentials. However, no method of transmission over the Internet or method of electronic storage is 100% secure, and we cannot guarantee absolute security.
 
Data Retention Reservation data is retained for as long as necessary to provide the service and to comply with applicable legal obligations (typically up to 5 years after the reservation is fulfilled, for tax and accounting purposes). After this period, data is permanently deleted.
 
Legal Basis for Processing (GDPR) For users in the European Union, the legal basis for processing personal data is:
  • Performance of a contract (Art. 6(1)(b) GDPR) — processing reservations and communicating with you about them.
  • Legal obligation (Art. 6(1)(c) GDPR) — retention of records required by tax and accounting laws.
 
Your Rights Under applicable data protection law (including GDPR) you have the right to access, rectify, erase, restrict, or object to the processing of your personal data, and the right to data portability. You may also lodge a complaint with the Croatian Personal Data Protection Agency (AZOP).
 
To exercise these rights, please contact us at the email address listed below.
 
Children’s Privacy The App is not directed to children under the age of 16. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
 
Changes to This Privacy Policy We may update this Privacy Policy from time to time. Changes are effective when posted on this page. We encourage you to review this Privacy Policy periodically. The “Effective date” at the top of this page indicates when this Policy was last revised.
 
Contact Us If you have any questions or requests regarding this Privacy Policy, please contact:
 
ANIQ d.o.o. Augusta Cesarca 22, Novska, Croatia Email: info@aniq.tech
 
For matters concerning the data controller (Daruvarske Toplice), please contact Daruvarske Toplice directly through their official channels.