Privacy Policy

This Privacy Policy explains how Guided Journeys processes personal data when you use the website and related booking channels for guided tours and local excursions.

Effective Date
As stated in this policy
Scope
All users of our services
Questions?
01

Purposes of Processing

We use personal data to respond to enquiries, manage bookings, confirm dates and route suitability, coordinate meeting and return details, process payments, provide guided excursion services, handle customer support, maintain records, improve website performance, and meet legal or accounting obligations.

Processing is limited to operational, administrative, and compliance purposes connected with the service.
02

Sharing With Partners

We may share personal data with payment processors, website hosting and technical support providers, communication tools, and other service partners that help us operate the website and manage bookings. These parties may process data only for the purposes we specify and under appropriate confidentiality or data-processing obligations.

Service providers receive only the information needed to perform their assigned functions.
03

Legal Disclosures

We may disclose personal data to public authorities, courts, or other official bodies when required to comply with applicable law, lawful requests, or enforceable orders. We may also share information where necessary to establish, exercise, or defend legal claims.

Legal disclosures are made only when a valid request or obligation exists.
GDPR

Regulation

GDPR Overview

Where the GDPR applies, we process personal data on a lawful basis such as performance of a contract, compliance with legal obligations, legitimate interests, or consent where required. We apply data minimisation and purpose limitation to the information we handle.

If you are located in the European Economic Area, the GDPR may apply to our processing of your personal data.
This section is intended for users whose data is protected by the GDPR.

GDPR-aware data handling

GDPR Rights

Where applicable, you may request access, rectification, erasure, restriction, portability, or objection, and you may withdraw consent where processing relies on consent. You may also lodge a complaint with the competent supervisory authority if you believe your rights have been affected.

GDPR rights are available only to the extent they apply to the relevant processing activity.
01

Data We Collect

We may collect identification and contact details, booking and payment information, route preferences, date and fitness details, communication records, and limited technical data such as device or browser information. Where needed for a specific excursion, we may also process information relevant to route suitability, meeting arrangements, weather checks, and return planning.

The categories of data collected depend on the booking stage and the information a user chooses to provide.
02

Sources of Data

We receive personal data from website requests, email, phone calls, booking communications, and payment-related interactions. We may also obtain data from automated logs, cookies, and similar technologies used when a user visits or uses the website.

Most information is provided directly by the user, while some technical data is generated automatically.
03

Types of Cookies

The website may use strictly necessary cookies to support core functions, functional cookies to remember choices, and limited analytics cookies to understand how the site is used. Cookies may be session-based or persistent, depending on their purpose and lifespan.

We use only standard cookie categories needed for site operation, measurement, and preference handling.
04

Cookie Controls

Users can usually block, delete, or limit cookies through their browser settings. If cookies are disabled, some site functions may not work as intended. Where the website provides a cookie notice or preference tool, users should use it to adjust non-essential cookies.

Cookie preferences may be managed through browser settings and, where available, site controls.
User Rights

Your Rights

Depending on your location and the applicable law, you may have rights to access, correct, delete, restrict, object to, or receive a copy of your personal data. Some requests may be limited where we must retain information for legal, contractual, or security reasons.

The availability of each right depends on the legal basis and the context of processing.
Requests

How to Make a Request

To exercise a privacy right, submit a clear request through the contact details in this policy and describe the data or processing activity concerned. We may ask for information needed to verify your identity and to locate the relevant records before responding.

Requests are handled after reasonable verification of identity and scope.
Data Retention

Data Retention

We keep personal data only for as long as it is needed for the booking, service, accounting, dispute-handling, or legal compliance purpose for which it was collected. When data is no longer required, we delete it or anonymise it, unless a longer retention period is required by law.

Retention periods depend on the purpose of processing and any legal recordkeeping duties.
Policy Updates

Policy Updates

We may update this Privacy Policy from time to time to reflect changes in our services, legal requirements, or data handling practices. The revised version will apply from the date indicated on the policy page, and users should review it periodically.

We review this policy when our processing practices or legal obligations change.

Contact Information

Privacy email
Telephone
+39 312 367 3645
Postal address
Via Antonio Gramsci 272, 50056 Montelupo Fiorentino
Privacy contact