Introduction

We at dev.bookingcore.co are committed to protecting your privacy and respecting your rights under the EU General Data Protection Regulation (GDPR) and the Swedish Data Protection Act (SFS 2018:218). This policy describes how we collect, use, safeguard, and transfer your personal data, and your rights as a data subject.

Effective Date: April 24, 2025




1. Definitions

Personal Data: Any information relating to an identified or identifiable natural person.

Processing: Any operation performed on personal data (collection, storage, use, deletion, etc.).

Controller: The entity determining the purposes and means of processing personal data.




2. Data We Collect

2.1 Automated DataIP address, browser type/version, operating system, pages visited, session duration.



2.2 Voluntary Data
Provided when registering or filling out forms: name, email, address, phone number, booking details.



3. Lawful Basis for Processing

Explicit Consent (Art. 6(1)(a) GDPR) for optional data.

Contractual Necessity (Art. 6(1)(b)) to fulfill contracts.

Legal Obligation (Art. 6(1)(c)) to comply with laws.

Legitimate Interests (Art. 6(1)(f)) such as site security and fraud prevention.



4. Processing Purposes

Create and manage accounts.

Provide booking services and administrative notifications.

Improve user experience and perform analytics.

Comply with regulatory and legal requirements.



5. Data Sharing

Service Providers under data protection agreements.

Legal Requirements (court orders, regulatory bodies).

Business Transfers (mergers, acquisitions) with user rights safeguarded.



6. International Data Transfers

 

Transfers outside the EEA are permitted only if:

There is an Adequacy Decision by the European Commission.

Appropriate safeguards (e.g., Standard Contractual Clauses) are in place.



7. Retention Periods

Contractual Data: Up to 5 years post-contract (SFS 2018:218).

Analytical Data: Aggregated for up to 2 years without personal identification.



8. Your Rights under GDPR

Right of access.

Right to rectification.

Right to erasure (right to be forgotten).

Right to restrict processing.

Right to data portability.

Right to object.

Right to withdraw consent.

To exercise your rights: contact privacy@bookingcore.co



9. Security Measures

SSL/TLS encryption.

Firewalls and intrusion detection.

Regular backups.



10. Data Protection Officer (DPO)

Email: dpo@bookingcore.co

Phone: +46 [number]

Address: [Full street address], Sweden.



11. Complaints

 

You may lodge a complaint with the Swedish Authority for Privacy Protection (IMY):

Website: https://www.imy.se
Email: imy@imy.se
Phone: +46 8 657 61 00