A. Introduction
The privacy of our website visitors is very important to us, and we are committed to safeguarding it. This policy explains what we will do with your personal information.
This Privacy Policy applies to all Websites and Subdomains operated by our company, including Praguewithlove.cz, Praguewith.love, Booking.praguewithlove.cz, and Reviews.praguewithlove.cz. Any Personal Information collected on these Websites or Subdomains is processed in accordance with this Policy.
For a brief overview of our privacy practices, please see Section O – User-Friendly Summary.
B. Definitions
The words in this Privacy Policy and Cookies Policy that are capitalized have specific meanings defined below. These definitions apply regardless of whether they appear in singular or plural form.
- Company (referred to as either "the Company," "We," "Us," or "Our" in this Privacy Policy) refers to Prague with Love, located at Zelenečská 510/59, 198 00, Praha 9 - Hloubětín.
- Cookies are small files that are placed on Your computer, mobile device, or any other device by a website, containing details of Your browsing history on that website among its many uses.
- Website refers to Praguewithlove.cz, Praguewith.love, and all related Subdomains, including Booking.praguewithlove.cz and Reviews.praguewithlove.cz, accessible from these domains.
- You means the individual accessing or using the Website, or a company, or any legal entity on behalf of which such individual is accessing or using the Website, as applicable.
C. Credit
This document was created using a template from SEQ Legal (seqlegal.com), modified by Website Planet (www.websiteplanet.com) and then further modified by Us.
D. Collecting personal information
The following types of personal information may be collected, stored, and used:
- information about your computer including your IP address and geographical location;
- information about your visits to and use of this website including the referral source, length of visit, page views, and website navigation paths;
- information, such as your name or email address, that you enter when you register with our website;
- information, such as your name and email address, that you enter in order to set up subscriptions to our emails and/or newsletters;
- information that you enter while using the services on our website;
- information that is generated while using our website, including when, how often, and under what circumstances you use it;
- information relating to anything you purchase, services you use, or transactions you make through our website, which includes your name and email address;
- information that you post to our website with the intention of publishing it on the internet, which includes your username, and the content of your posts;
- information contained in any communications that you send to us by email or through our website, including its communication content and metadata;
- any other personal information that you send to us.
This includes Information entered on Subdomains (e.g., Booking.praguewithlove.cz, Reviews.praguewithlove.cz) for the purpose of booking or reviewing Tours or Services. All Data collected on these Websites and Subdomains is processed in line with this Privacy Policy.
Before you disclose to us the personal information of another person, you must obtain that person’s consent to both the disclosure and the processing of that personal information in accordance with this policy.
We do not use third-party tracking services such as Google Analytics. All user analytics and tracking are processed in-house, ensuring that your data is not shared with external analytics providers.
E. Using your personal information
Personal information submitted to us through our website will be used for the purposes specified in this policy or on the relevant pages of the website. We may use your personal information for the following:
- administering user information in Ghost CMS;
- personalizing our website for you;
- enabling your use of the services available on our website;
- sending you goods purchased through our website;
- supplying services purchased through our website;
- sending statements, invoices, and payment reminders to you, and collecting payments from you;
- sending you non-marketing commercial communications;
- sending you email notifications that you have specifically requested;
- sending you our email newsletter, if you have requested it (you can inform us at any time if you no longer require the newsletter);
- sending you marketing communications relating to our business or the businesses of carefully-selected third parties which we think may be of interest to you, by post or, where you have specifically agreed to this, by email or similar technology (you can inform us at any time if you no longer require marketing communications);
- dealing with inquiries and complaints made by or about you relating to our website;
- keeping our website secure and prevent fraud;
- verifying compliance with the terms and conditions governing the use of our website.
If you submit personal information for publication on our website, we will publish and otherwise use that information in accordance with the license you grant to us.
We use Mailgun’s API to deliver transactional and marketing emails. This means your email address is processed by Mailgun solely for the purpose of email delivery, and we do not share it with any other third parties for marketing.
We will not, without your express consent, supply your personal information to any third party for their or any other third party’s direct marketing.
F. Disclosing personal information
We may disclose your personal information to any of our employees, officers, insurers, professional advisers, agents, suppliers, or subcontractors as reasonably necessary for the purposes set out in this policy.
We may disclose your personal information:
- to the extent that we are required to do so by law;
- in connection with any ongoing or prospective legal proceedings;
- in order to establish, exercise, or defend our legal rights (including providing information to others for the purposes of fraud prevention and reducing credit risk);
- We may disclose your personal information to the purchaser (or prospective purchaser) of any business or asset that we are (or are contemplating) selling; and
- to any person who we reasonably believe may apply to a court or other competent authority for disclosure of that personal information where, in our reasonable opinion, such court or authority would be reasonably likely to order disclosure of that personal information.
- We use Stripe as our payment processor. When you make a purchase, your payment details are securely transmitted to Stripe for payment processing. We do not store or have access to your full payment information. For more details, please review Stripe’s Privacy Policy.
- We use Cloudflare as a Content Delivery Network (CDN) to optimize website performance and security. As part of this service, Cloudflare may temporarily process your IP address and connection metadata. This information is used solely for the purpose of delivering website content securely and efficiently. For more details, please review Cloudflare’s Privacy Policy.
Except as provided in this policy, we will not provide your personal information to third parties.
G. International data transfers
- Information that we collect is stored and processed in the Czech Republic, and is protected under Czech and EU data protection law (GDPR).
- Personal information that you publish on our website or submit for publication on our website may be available, via the internet, around the world. We cannot prevent the use or misuse of such information by others.
- Payment information processed by Stripe may be transferred and stored outside of the European Economic Area (EEA) to ensure secure payment processing. Stripe complies with applicable data protection laws to safeguard your personal information.
- Data processed by Cloudflare may be transferred internationally to ensure optimal website performance. Cloudflare complies with applicable data protection regulations to safeguard your personal information.
H. Retaining personal information
- This Section G sets out our data retention policies and procedure, which are designed to help ensure that we comply with our legal obligations regarding the retention and deletion of personal information.
- Personal information that we process for any purpose or purposes shall not be kept for longer than is necessary for that purpose or those purposes.
- We will delete all your personal information if you request us to do so.
- Notwithstanding the other provisions of this Section G, we will retain documents (including electronic documents) containing personal data:
- to the extent that we are required to do so by law;
- if we believe that the documents may be relevant to any ongoing or prospective legal proceedings; and
- in order to establish, exercise, or defend our legal rights (including providing information to others for the purposes of fraud prevention and reducing credit risk).
I. Security of your personal information
- We are committed to protecting your personal information and ensuring GDPR compliance. We implement reasonable technical and organizational measures to safeguard your data against unauthorized access, loss, or misuse.
- We use HTTPS to encrypt all data transmitted between your browser and our website. Email communication is secured using TLS to protect your information during transmission.
- We do not use traditional passwords for website access. Instead, we use one-time login links to enhance account security.
- All databases are secured with strong, unique passwords and isolated using containerization, with separate user permissions for each container.
- Although we do not encrypt stored data, our robust access controls and security practices ensure a high level of data protection.
- We use advanced firewall technology to block communication with suspicious or malicious IP addresses, providing an additional layer of security against unauthorized access.
- You acknowledge that the transmission of information over the internet is inherently insecure, and while we take precautions, we cannot guarantee absolute security.
J. Amendments
We may update this policy from time to time by publishing a new version on our website. You should check this page occasionally to ensure you understand any changes to this policy. We may notify you of changes to this policy by email.
K. Your rights
You may instruct us to provide you with any personal information we hold about you.
We may withhold personal information that you request to the extent permitted by law.
You may instruct us at any time not to process your personal information for marketing purposes.
In practice, you will usually either expressly agree in advance to our use of your personal information for marketing purposes, or we will provide you with an opportunity to opt out of the use of your personal information for marketing purposes.
L. Third party websites
Our website includes hyperlinks to, and details of, third party websites. We have no control over, and are not responsible for, the privacy policies and practices of third parties.
M. Updating information
Please let us know if the personal information that we hold about you needs to be corrected or updated.
N. Cookie Policy
We use cookies to enhance your experience on our website. This section explains what cookies are, how we use them, and your options regarding their use.
- What are Cookies? Cookies are small text files that websites place on your device (computer, tablet, or smartphone) to store information about your browsing activity. This can include login details, language preferences, and other settings.
- Types of Cookies We Use:
- Necessary/Essential Cookies:
- Type: Session Cookies
- Administered by: Us (Prague with Love) and Ghost CMS
- Purpose: These cookies are essential for the website to function properly. They help to authenticate users, prevent fraudulent use, and enable core functionality. We only use these Cookies to provide You with those services. Ghost CMS also uses necessary cookies to allow administration of the website.
- Examples: Session ID (Ghost CMS), Authentication Token.
- Lifespan: Session (deleted when the browser is closed)
- Functionality Cookies:
- Type: Persistent Cookies
- Administered by: Us (Prague with Love)
- Purpose: These cookies allow us to remember choices You make when You use the Website, such as remembering your login details or language preference. The purpose of these Cookies is to provide You with a more personalized experience and to avoid You having to re-enter your preferences every time You use the Website.
- Examples: Language Preference
- Lifespan: One year
- Third-Party Cookies: We do not use any third-party tracking or advertising cookies on our website.
- Necessary/Essential Cookies:
- Your Choices Regarding Cookies: If You prefer to avoid the use of Cookies on the Website, first You must disable the use of cookies in your browser and then delete the Cookies saved in your browser associated with this website. You may use this option for preventing the use of Cookies at any time. If You do not accept Our Cookies, You may experience some inconvenience in your use of the Website and some features may not function properly.
- How to Manage Cookies: To delete cookies or instruct your web browser to delete or refuse Cookies, please visit the help pages of your web browser. Here are links for some popular browsers:
O. User-Friendly Summary
We value your privacy and want to help you understand how we handle your personal information. Here’s a quick overview of the most important points:
- What Information We Collect:
- We collect information like your name, email, and how you use our website. This helps us improve our services and communicate with you.
- We do not use third-party tracking tools. All tracking is done in-house to protect your data.
- How We Use Your Information:
- To provide the services you request, like sending newsletters, processing orders, or collecting reviews.
- To improve your experience on our website by analyzing how you use it.
- We may send you marketing communications if you agree to receive them, but you can opt out at any time.
- Sharing Your Information:
- We do not sell your personal information.
- We only share your data with trusted partners when necessary, such as:
- Stripe for payment processing.
- Mailgun for sending emails.
- Cloudflare for website performance and security.
- Your Rights:
- You can request to see the personal information we have about you.
- You can ask us to correct or delete your data.
- You can opt out of marketing communications at any time.
- How We Protect Your Data:
- We take security seriously and use strong passwords, one-time login links, and protected servers.
- While we do not currently use encryption, we take reasonable steps to keep your information safe.
- Cookies:
- Our website uses cookies to improve your experience, like remembering your language preference.
- You can control cookies through your browser settings.
If you have any questions or concerns about our privacy practices, please feel free to contact us.
P. Updates
- 12.10.2023 - Initial release.
- 11.02.2025 - Explicit mention about not using third parties to track users and about the use of Mailgun to send emails. Added explicit mention of Czech and EU (GDPR) data protection law in the section on international data transfers (G.1).
- 12.02.2025 - Merged Cookie Policy into the Privacy Policy for a more cohesive document. Added a User-Friendly Summary section for better accessibility. Updated Security of Personal Information (I) to reflect advanced security practices, including the use of one-time login links, HTTPS, TLS for email communication, strong passwords, containerized databases, and advanced firewall technology.
- 14.02.2025 - Added explicit mention of Stripe as the payment processor, Cloudflare for website performance and security, and Reviews.praguewithlove.cz for collecting feedback. Expanded scope to cover all domains and subdomains (Praguewithlove.cz and Praguewith.love).