Go to content

Privacy Policy – Personal Data Protection - Dolomites Dream | Holiday Apartments & Property Management in the Dolomites

Skip menu
EN   |   IT   |   DE
Skip menu
Privacy Policy
1. Scope of application
This Privacy Policy applies to the Dolomites Dream website (dolomitesdream.com) and to the related booking portal (booking.dolomitesdream.com), accessible via subdomain and used for the management of bookings and stays.
This notice describes how personal data are processed for users who:
  • browse the informational website;
  • submit enquiries through contact forms;
  • make a booking through the dedicated booking portal.

2. Data controller
The Dolomites Dream brand is used by multiple legal entities that operate independently in the management of properties for short-term tourist rentals.
The Data Controller is, from time to time, the legal entity responsible for the booked property or for the request submitted by the user.
In particular, the Data Controllers are:
  • Dolomites Dream Business S.r.l., Località Capoluogo, 39 – 32023 Rocca Pietore (BL), Italy
    VAT No. IT01298470251 – email: booking@dolomitesdream.com
  • Dolomites Dream di Farenzena Lucia & C. S.a.s., Località Capoluogo, 39 – 32023 Rocca Pietore (BL), Italy
    VAT No. IT01217090255 – email: booking@dolomitesdream.com
Personal data are processed exclusively by the competent entity and are not shared between different controllers, except where required by law.

3. Types of data processed
Processed personal data may include:
  • identification and contact details (name, surname, email address, phone number);
  • data required for booking and stay management;
  • administrative and fiscal data;
  • payment-related data;
  • documents required by law (e.g. communications to competent authorities).
No special categories of data pursuant to Article 9 GDPR are processed.

4. Purposes of processing
Personal data are processed for the following purposes:
  • handling information requests submitted via the website;
  • managing bookings and stays;
  • managing payments and transactions;
  • fulfilling contractual and pre-contractual obligations;
  • complying with legal obligations (including fiscal, public security and statistical requirements);
  • administrative and organisational management of activities.
Personal data are not used for marketing or profiling purposes.

5. Legal basis of processing
Processing is based on one or more of the following legal grounds:
  • performance of a contract or pre-contractual measures requested by the data subject;
  • compliance with legal obligations;
  • consent of the data subject, where required.
Providing personal data is necessary to complete bookings or manage requests. Failure to provide such data may prevent booking or request handling.

6. Processing methods
Personal data are processed using electronic and IT tools, in accordance with principles of lawfulness, fairness and transparency.
Appropriate technical and organisational measures are adopted to ensure data security and to prevent unauthorised access, loss or unlawful use.

7. Data processors
To carry out its activities, the Data Controller uses external service providers appointed as Data Processors pursuant to Article 28 GDPR.
In particular:
  • Avantio, as provider of the VRMS and booking portal;
  • Stripe, as provider of electronic payment services.
These providers process personal data solely according to the instructions of the Data Controller.

8. Data retention
Personal data are retained only for the time strictly necessary to fulfil the purposes for which they were collected and in accordance with applicable legal requirements.

9. Data disclosure
Personal data are not publicly disclosed.
They may be communicated only to public or private entities where required by law or necessary to fulfil contractual or legal obligations.

10. Transfer of data outside the EU
Some service providers (e.g. payment services) may involve the transfer of data outside the European Union.
Such transfers are carried out in compliance with GDPR safeguards and using appropriate legal mechanisms.

11. Data subject rights
Users may exercise their rights under Articles 15–22 GDPR at any time, including:
  • access to personal data;
  • rectification or update;
  • deletion of data;
  • restriction of processing;
  • objection to processing.
Requests may be sent to the Data Controller using the contact details available on the website.
Users also have the right to lodge a complaint with the competent Data Protection Authority.

12. Cookies
For detailed information on the use of cookies, please refer to the Cookie Policy available on the website.

13. Changes to this Privacy Policy
The Data Controller reserves the right to amend this Privacy Policy at any time.
Any changes will be published on this page and will take effect from the date of publication.

14. Legal references
This Privacy Policy is drafted in accordance with Regulation (EU) 2016/679 (GDPR) and applicable Italian data protection laws.
Back to content