PRIVACY
We have prepared this Privacy Policy, version dated 1 April 2020 – 311166459, in order to explain to you, in accordance with the requirements of the General Data Protection Regulation (EU) 2016/679, what information we collect, how we use data and what choices you have as a visitor to this website.
Unfortunately, it is in the nature of the subject that these explanations may sound very technical. However, we have made every effort to describe the most important points as simply and clearly as possible.
COOKIES
Our website uses HTTP cookies to store user-specific data.
Below, we explain what cookies are and why they are used so that you can better understand the following Privacy Policy.
What exactly are cookies?
Whenever you browse the internet, you use a browser. Well-known browsers include Chrome, Safari, Firefox, Internet Explorer and Microsoft Edge. Most websites store small text files in your browser. These files are called cookies.
There is no denying that cookies are very useful tools. Almost all websites use cookies. More precisely, they use HTTP cookies, as there are other types of cookies for different areas of application.
HTTP cookies are small files stored by our website on your computer. These cookie files are automatically placed in the cookie folder, which can be regarded as the “memory” of your browser. A cookie consists of a name and a value. When a cookie is defined, one or more attributes must also be specified.
Cookies store certain user data, such as your language or personal website settings. When you return to our website, your browser sends the user-related information back to our website. Thanks to cookies, our website knows who you are and can provide you with your usual default settings.
In some browsers, each cookie is stored in a separate file. In other browsers, such as Firefox, all cookies are stored in a single file.
There are both first-party cookies and third-party cookies. First-party cookies are created directly by our website. Third-party cookies are created by partner websites, such as Google Analytics.
Each cookie must be assessed individually, as every cookie stores different data. The expiry period of a cookie can also vary from a few minutes to several years.
Cookies are not software programs and do not contain viruses, Trojan horses or other harmful programs. Cookies also cannot access information stored on your computer.
Cookie data may, for example, look as follows:
Name: _ga
Expiry period: 2 years
Purpose: Differentiation between website visitors
Example value: GA1.2.1326744211.152311166459
A browser should support the following minimum capacities:
A cookie should be able to contain at least 4,096 bytes.
At least 50 cookies should be permitted per domain.
A total of at least 3,000 cookies should be permitted.
What types of cookies are there?
The specific cookies we use depend on the services used and are explained in the following sections of this Privacy Policy. At this point, we would like to briefly describe the different types of HTTP cookies.
Four types of cookies can be distinguished:
Strictly necessary cookies
These cookies are required to ensure the basic functionality of the website.
For example, such cookies are required when a user places a product in the shopping basket, continues browsing other pages and only proceeds to checkout later. These cookies prevent the shopping basket from being deleted, even if the user closes the browser window.
Functional cookies
These cookies collect information about user behaviour and whether the user receives any error messages.
They are also used to measure the loading time and behaviour of the website in different browsers.
Preference cookies
These cookies provide a better user experience.
For example, entered locations, font sizes or form data may be stored.
Advertising cookies
These cookies are also referred to as targeting cookies. They are used to provide users with individually tailored advertising.
This can be very useful, but it can also be very annoying.
When you visit a website for the first time, you will usually be asked which of these types of cookies you would like to permit. Your decision will, of course, also be stored in a cookie.
How can I delete cookies?
You decide how and whether you wish to use cookies.
Regardless of the service or website from which the cookies originate, you always have the option of deleting cookies, allowing only certain cookies or disabling them.
For example, you can block third-party cookies while allowing all other cookies.
To find out which cookies have been stored in your browser or to change or delete cookie settings, please refer to your browser settings:
Chrome: Delete, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Delete cookies to remove data that websites have stored on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
If you generally do not want cookies, you can configure your browser so that it always informs you whenever a cookie is about to be set.
You can then decide individually whether you wish to allow each cookie.
The procedure differs depending on the browser. The best approach is to search for instructions in Google using the search term “delete cookies Chrome” or “disable cookies Chrome” when using Chrome. Replace the word “Chrome” with the name of your browser, such as Edge, Firefox or Safari, where applicable.
What about my privacy?
Cookie guidelines have existed since 2009. These guidelines state that storing cookies requires the consent of the website visitor.
However, the implementation of these guidelines still differs considerably between EU countries.
In Germany, the cookie guidelines were not implemented as separate national legislation. Instead, the implementation of these guidelines was largely carried out through Section 15(3) of the German Telemedia Act.
To learn more about cookies and if you are comfortable reading technical documentation, we recommend:
This is the Internet Engineering Task Force’s Request for Comments entitled “HTTP State Management Mechanism”.
STORAGE OF PERSONAL DATA
Personal data that you electronically submit to us through this website, such as your name, email address, postal address or other personal details submitted through a form or blog comment, will be used by us only for the stated purpose.
The data will be securely stored together with the time of submission and the IP address and will not be passed on to third parties.
We therefore use your personal data only to communicate with visitors who expressly request contact and to process the services and products offered on this website.
We do not pass on your personal data without your consent. However, we cannot rule out the possibility that the data may be inspected in the event of unlawful conduct.
If you send us personal data by email, meaning outside this website, we cannot guarantee the secure transmission and protection of your data.
We recommend that you never send confidential data by unencrypted email.
The legal basis pursuant to Article 6(1)(a) GDPR, relating to the lawfulness of processing, is that you give us your consent to process the data you enter.
You can withdraw this consent at any time. An informal email is sufficient. You can find our contact details in the legal notice.
RIGHTS UNDER THE GENERAL DATA PROTECTION REGULATION
Under the provisions of the GDPR, you generally have the following rights:
Right to rectification pursuant to Article 16 GDPR
Right to erasure, also known as the “right to be forgotten”, pursuant to Article 17 GDPR
Right to restriction of processing pursuant to Article 18 GDPR
Right to notification concerning the rectification or erasure of personal data or restriction of processing pursuant to Article 19 GDPR
Right to data portability pursuant to Article 20 GDPR
Right to object pursuant to Article 21 GDPR
Right not to be subject to a decision based solely on automated processing, including profiling, pursuant to Article 22 GDPR
If you believe that the processing of your data violates data protection law or that your data protection rights have otherwise been infringed, you may contact the German Federal Commissioner for Data Protection and Freedom of Information.
ANALYSIS OF VISITOR BEHAVIOUR
In the following Privacy Policy, we inform you whether and how we analyse data relating to your visit to this website.
The collected data is generally analysed anonymously, and we are usually unable to draw conclusions about your identity based on your behaviour on this website.
Further information about the options available to object to the analysis of visitor data can be found in the following sections of this Privacy Policy.
TLS ENCRYPTION USING HTTPS
We use HTTPS to securely transmit data over the internet and prevent it from being intercepted. This constitutes data protection by design pursuant to Article 25(1) GDPR.
By using TLS, or Transport Layer Security, an encryption protocol for secure data transmission over the internet, we can ensure the protection of confidential data.
You can recognise the use of this secure data transmission method by the small padlock symbol in the top-left corner of your browser and by the use of “https” instead of “http” as part of our website address.
GOOGLE MAPS PRIVACY POLICY
We use Google Maps, a service provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, on our website.
Google Maps enables us to present locations more clearly and thereby improve our service.
When Google Maps is used, data is transferred to Google and stored on Google’s servers.
We would now like to explain in more detail what Google Maps is, why we use this Google service, what data is stored and how you can prevent this.
What is Google Maps?
Google Maps is an online map service provided by Google Inc.
Google Maps allows you to use a computer or an app to search online for the exact locations of cities, places of interest, accommodation providers or businesses.
If businesses are represented on Google My Business, additional information about the business is displayed alongside its location.
To provide directions, map sections showing a location can be embedded in a website using HTML code.
Google Maps displays the Earth’s surface as a street map or as aerial and satellite imagery.
Thanks to Street View images and high-quality satellite images, very detailed presentations are possible.
Why do we use Google Maps on our website?
All our efforts on this website are aimed at providing you with a useful and meaningful experience.
By integrating Google Maps, we can provide you with the most important information about various locations.
Google Maps allows you to see the location of our business at a glance.
The directions function always shows you the best or quickest route to us.
You can obtain directions for travelling by car, public transport, on foot or by bicycle.
For us, providing Google Maps forms part of our customer service.
What data is stored by Google Maps?
For Google Maps to provide its service in full, the company must collect and store data relating to you.
This includes, among other things, the search terms you enter, your IP address and latitude and longitude coordinates.
If you use the route planner function, the starting address you enter will also be stored.
However, this data storage takes place on the Google Maps website.
We can only inform you about this and have no influence over it.
As we have integrated Google Maps into our website, Google places at least one cookie, named NID, in your browser.
This cookie stores data about your user behaviour.
Google primarily uses this data to optimise its own services and provide you with individualised and personalised advertising.
The following cookie is placed in your browser as a result of the integration of Google Maps:
Name: NID
Expiry period: 6 months
Purpose: Google uses NID to adapt advertisements to your Google searches.
With the help of this cookie, Google remembers your most frequently entered searches or your previous interactions with advertisements.
This allows you to receive personalised advertisements.
The cookie contains a unique ID that Google uses to collect the user’s personal preferences for advertising purposes.
Example value: 188=h26c1Ktha7fCQTx8rXgLyATyITJ311166459
Please note that we cannot guarantee that the information provided regarding the stored data is complete.
Changes by Google, particularly in relation to cookies, cannot be ruled out.
A separate test page on which only Google Maps was integrated was created in order to identify the NID cookie.
How long and where is the data stored?
Google’s servers are located in data centres around the world.
However, most of the servers are located in the United States.
For this reason, your data is also increasingly stored in the United States.
You can find detailed information about the locations of Google’s data centres at:
Google distributes the data across various data storage devices.
This makes the data more quickly accessible and provides protection against attempts at manipulation.
Each data centre also has special emergency programs.
For example, if problems occur with Google hardware or if a natural disaster affects the servers, the data is highly likely to remain protected.
Google stores certain data for a specified period.
For other data, Google only provides the option of deleting it manually.
The company also anonymises information, such as advertising data, in server logs by deleting parts of the IP address and cookie information after nine or eighteen months.
How can I delete my data or prevent data storage?
With the automatic deletion function for location and activity data introduced in 2019, location information and web and app activity are stored for either three or eighteen months, depending on your chosen settings, and are then deleted.
You can also delete this data manually from your history at any time through your Google Account.
To completely prevent the collection of your location, you must pause the “Web & App Activity” section in your Google Account.
Select “Data & Personalisation” and then “Activity Controls”.
You can activate or deactivate the activities there.
You can also disable, delete or manage individual cookies in your browser.
The procedure differs depending on the browser you use.
The following instructions explain how you can manage cookies in your browser:
Chrome: Delete, enable and manage cookies in Chrome
Safari: Manage cookies and website data in Safari
Firefox: Delete cookies to remove data that websites have stored on your computer
Internet Explorer: Delete and manage cookies
Microsoft Edge: Delete and manage cookies
If you generally do not want cookies, you can configure your browser so that it always informs you when a cookie is about to be set.
You can then decide whether to allow each individual cookie.
Google is an active participant in the EU–US Privacy Shield Framework, which regulates the correct and secure transfer of personal data.
Further information is available at:
To learn more about data processing by Google, we recommend reading Google’s own Privacy Policy at:
GOOGLE FONTS PRIVACY POLICY
We use Google Fonts, a service provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, on our website.
You do not need to register or enter a password to use Google Fonts.
Furthermore, no cookies are stored in your browser.
The files, including CSS files and fonts, are requested through the Google domains fonts.googleapis.com and fonts.gstatic.com.
According to Google, requests for CSS files and fonts are completely separate from all other Google services.
If you have a Google Account, you do not need to worry about your Google Account data being transmitted to Google while Google Fonts are being used.
Google records the use of CSS and the fonts used and securely stores this data.
We will now explain in more detail how this data is stored.
What are Google Fonts?
Google Fonts, formerly known as Google Web Fonts, is an interactive directory containing more than 800 fonts that Google LLC provides for free use.
Many of these fonts are published under the SIL Open Font License, while others are published under the Apache License.
Both are free software licences.
We can therefore use the fonts freely without paying licence fees.
Why do we use Google Fonts on our website?
Google Fonts allows us to use fonts on our own website without having to upload them to our own server.
Google Fonts is an important component that helps us maintain the quality of our website.
All Google fonts are automatically optimised for the internet, which reduces data volume and is particularly beneficial when used on mobile devices.
When you visit our website, the small file size ensures fast loading times.
Google Fonts are also considered secure web fonts.
Different image synthesis or rendering systems in different browsers, operating systems and mobile devices can cause errors.
Such errors can sometimes visually distort text or entire websites.
Thanks to Google’s fast content delivery network, there are no cross-platform problems with Google Fonts.
Google Fonts supports all common browsers, including Google Chrome, Mozilla Firefox, Apple Safari and Opera, and works reliably on most modern mobile operating systems, including Android 2.2 and later and iOS 4.2 and later for iPhone, iPad and iPod.
We therefore use Google Fonts to present our entire online service as attractively and consistently as possible.
Pursuant to Article 6(1)(f) GDPR, this constitutes a legitimate interest in the processing of personal data.
In this context, a legitimate interest includes legal, economic or non-material interests recognised by the legal system.
What data is stored by Google?
When you visit our website, the fonts are loaded from a Google server.
This external request transfers data to Google’s servers.
Google can therefore recognise that you or your IP address have visited our website.
The Google Fonts API was developed to reduce the collection, storage and use of end-user data to what is necessary for the efficient provision of fonts.
API stands for Application Programming Interface and is used, among other things, as a data intermediary in the software sector.
Google Fonts securely stores CSS and font requests.
The collected usage figures enable Google to determine the popularity of fonts.
Google publishes the results on internal analysis websites, such as Google Analytics.
Google also uses data from its own web crawler to determine which websites use Google fonts.
This data is published in the Google Fonts BigQuery database.
BigQuery is a Google web service for companies that process and analyse large amounts of data.
However, it should also be taken into account that every Google Fonts request automatically transmits information such as the IP address, language settings, browser screen resolution, browser version and browser name to Google’s servers.
It is not possible to clearly determine whether this data is also stored, as Google does not communicate this unambiguously.
How long and where is the data stored?
Google stores requests for CSS assets for one day on its servers, which are primarily located outside the European Union.
This enables us to use the fonts through a Google stylesheet.
A stylesheet is a formatting template that can be used to quickly and easily change elements such as a website’s design or font.
Google stores font files for one year.
Google’s aim is to improve website loading times.
When millions of websites reference the same fonts, those fonts are cached after the first visit and are immediately available on all other websites subsequently visited.
Google occasionally updates font files in order to reduce file sizes, extend language coverage and improve the design.
How can I delete my data or prevent data storage?
The data that Google stores for one day or one year cannot simply be deleted.
The data is automatically transmitted to Google when the page is accessed.
To request the early deletion of this data, you must contact Google Support at:
In this case, you can only prevent data storage by not visiting our website.
Unlike other web fonts, Google provides us with unrestricted access to all fonts.
We can therefore access an unlimited number of fonts and select the optimal fonts for our website.
Further information about Google Fonts and related questions is available at:
Google addresses some data protection matters there, but the page does not contain particularly detailed information about data storage.
It is relatively difficult, and almost impossible, to obtain precise information from Google about the data that is stored.
You can also find information about the data generally collected by Google and the purposes for which it is used at:
LOCALLY HOSTED GOOGLE FONTS PRIVACY POLICY
We use Google Fonts, a service provided by Google Inc., 1600 Amphitheatre Parkway, Mountain View, CA 94043, USA, on our website.
We have integrated the Google fonts locally, meaning on our own web server and not on Google’s servers.
As a result, no connection is established with Google’s servers and no data is transferred or stored by Google.
What are Google Fonts?
Google Fonts, formerly known as Google Web Fonts, is an interactive directory containing more than 800 fonts that Google LLC provides for free use.
Google Fonts could be used without uploading the fonts to our own server.
However, to prevent any information from being transferred to Google’s servers, we have downloaded the fonts to our own server.
In this way, we act in accordance with data protection requirements and do not transfer any data to Google Fonts.
Unlike other web fonts, Google provides us with unrestricted access to all fonts.
We can therefore access an unlimited number of fonts and select the optimal fonts for our website.
Further information about Google Fonts and related questions is available at:
AUTOMATIC DATA STORAGE
When you visit websites today, certain information is automatically generated and stored. This also applies to this website.
When you visit our website, our web server, meaning the computer on which this website is stored, automatically records data such as:
The address or URL of the accessed website
The browser and browser version
The operating system used
The address or URL of the previously visited page, also known as the referrer URL
The hostname and IP address of the device used to access the website
The date and time
This information is stored in web server log files.
Web server log files are generally stored for two weeks and then automatically deleted.
We do not pass this data on to third parties. However, we cannot rule out the possibility that this data may be inspected in the event of unlawful conduct.
Source: Created using the AdSimple Privacy Policy Generator in cooperation with slashtechnik.de
Villa Maluma
Jadranska ulica 39
22203 Rogoznica
Croatia
Represented by:
Karolina Paulisch
Contact:
Email: info@villa-maluma.com