Book
Data Controller and Contact Information
Hotel SKT. Annæ is the data controller for the processing of your personal data.
Hotel SKT. Annæ
CVR no.: 27207448
Sankt Annæ Plads 18, 1250 Copenhagen K, Denmark
Phone: +45 33 96 20 00
Email: [email protected]
What Personal Data We Process
We process personal data when you, for example, book a stay, stay at the hotel, contact us, use guest WiFi, purchase gift cards/tickets/vouchers, subscribe to our newsletter, or use our chat.
Depending on the situation, we may process general personal data such as your name, contact details, booking and stay information, payment and transaction details, preferences and inquiries, as well as technical data from the use of our digital solutions. This may include consent and marketing data (e.g. subscriptions/unsubscriptions and campaign history), information from guest reviews to the extent they contain personal data, and information from possible identity verification if used during check-in.
Purpose and Legal Basis for Processing
We only process personal data when we have a lawful basis and only for purposes necessary to operate the hotel and provide the services you request as a guest.
Reservations, stays, and guest administration
We process personal data to complete reservations, manage stays, handle check-in and check-out, communicate with you before, during, and after your stay, and provide the services you have ordered. This processing is carried out as part of fulfilling the agreement with you in connection with your stay.
Marketing and newsletters
If you have given consent, we process your personal data to send newsletters and marketing communications. You can withdraw your consent at any time.
Service improvement and reputation management
We may process personal data in connection with handling guest feedback and reviews, as well as internal follow-up to improve service and operations. This processing is based on the hotel’s legitimate interest in developing and improving the business.
Sale of gift cards, tickets, and vouchers
If you purchase gift cards, tickets, or vouchers, we process personal data to complete and administer the purchase and delivery. This processing is carried out as part of fulfilling the agreement related to the purchase.
Finance, payment, and accounting
We process personal data in connection with payments, invoicing, and accounting. This processing is necessary to manage hotel operations and to comply with legal obligations, including bookkeeping and documentation requirements.
IT operations and security
We process personal data in connection with the operation and security of our IT systems, including technical logs and security measures, as well as in connection with the use of the hotel’s guest WiFi and video surveillance, if applicable. This processing is based on the hotel’s legitimate interest in ensuring stable operations and security.
Recipients and Data Processors
We use suppliers who process personal data on our behalf as data processors. They process personal data in accordance with our instructions and under data processing agreements.
We may also share personal data with independent data controllers when necessary, for example in connection with bookings via external booking channels, payments, or other services you request. In such cases, the third party processes personal data according to its own purposes and policies.
We only disclose personal data when necessary to provide a service you have requested, when we have a legal basis, or when we are legally required to do so.
Transfers to Third Countries
If a supplier processes personal data outside the EU/EEA, transfers will only take place when there is a valid legal basis under data protection regulations. This may include EU Standard Contractual Clauses (SCCs) or other valid transfer mechanisms, depending on the specific supplier and setup.
Storage and Deletion
We retain personal data for as long as necessary for the purpose and then delete or anonymize it, unless we are legally required to retain it longer or need to retain it for documentation purposes, for example in connection with ongoing cases, complaints, or legal claims.
Security
We have implemented technical and organizational measures to protect personal data against unauthorized access, alteration, loss, and disclosure. Access is limited to relevant employees and suppliers as needed.
Cookies
Social Media
Hotel SKT. Annæ is present on a number of social media platforms, including Facebook, Instagram, LinkedIn, Google, and TikTok. When you visit our profiles or interact with our content on these platforms, the respective platforms process your personal data for their own purposes, under their own terms and privacy policies. As a general rule, the platforms act as independent data controllers for their processing.
The individual social media platforms may process your data based on legitimate interest (Art. 6(1)(f)) and, where relevant, consent (Art. 6(1)(a)). You can manage your preferences, including consent, via each platform’s own settings. Please refer to the respective platforms’ privacy policies for more information.
Facebook and Instagram
Our Facebook and Instagram pages are operated via Meta Platforms Ireland Limited. Hotel SKT. Annæ and Meta may, in certain cases, be joint data controllers in relation to statistics and insights (Page Insights) generated based on visitors’ use of the pages. Hotel SKT. Annæ typically receives aggregated statistics from the platforms, such as reach, interactions, and audience data, which are used to understand and improve our communication and visibility. For more information, please refer to Facebook’s and Instagram’s privacy policies.
When you visit our LinkedIn profile, LinkedIn processes your personal data according to its own purposes and terms. Hotel SKT. Annæ and LinkedIn may, in certain cases, be joint data controllers, particularly in relation to statistics and insights about activity on the page. We only receive aggregated statistics, which are used to promote the company, present us as a workplace, and improve our communication. For further information, please refer to LinkedIn’s privacy policy.
When you find the hotel via Google, use Google Maps, read or write reviews, or otherwise interact with our profile, Google processes your data according to its own purposes and terms. Hotel SKT. Annæ may receive statistics and insights from Google regarding visibility and interactions, typically in aggregated form. For more information, please refer to Google’s privacy policy.
TikTok
When you visit or interact with our TikTok profile, TikTok processes your personal data according to its own purposes and terms. Hotel SKT. Annæ may receive statistics and insights about activity on the profile, typically in aggregated form, which can be used to evaluate and improve our content and communication. For more information, please refer to TikTok’s privacy policy.
Contact via Social Media
If you contact us via social media, we process the information you share with us in your message in order to respond to your inquiry. We recommend that you do not share sensitive information via social media.
Contact, Advertising, and Rights on Social Media
When you contact us via social media, we process the information you provide so that we can respond to your inquiry. We recommend that you do not share sensitive information via social media. For advertising and targeting on social media, the platforms’ own tools are used, and the platforms process personal data in this context according to their own terms. You can always manage your preferences and consents directly on each platform, and you have the same data protection rights vis-à-vis social media platforms as you do with us. However, since we do not have access to your profile or the data processed about you by the platforms, we cannot assist in exercising these rights. If you wish to exercise your rights, you must contact the relevant platform directly.
Your Rights
You have the following rights under data protection law, depending on the specific processing:
Right of access
You can obtain information about what personal data we process about you, what it is used for, who it may be shared with, and how long it is stored.
Right to rectification
You can have incorrect personal data corrected and incomplete data completed.
Right to erasure
In certain cases, you can have personal data deleted, for example if the data is no longer necessary for the purpose or if you withdraw consent and there is no other legal basis.
Right to restriction of processing
In certain cases, you can request that processing be restricted, for example if you contest the accuracy of the data or if the processing is unlawful but you do not want the data deleted.
Right to data portability
Where processing is based on consent or contract and carried out automatically, you may in certain cases receive the data you have provided in a structured, commonly used, and machine-readable format and have it transferred to another provider, where technically feasible.
Right to object
You may object to processing based on legitimate interests, including direct marketing. If you object to direct marketing, we will always stop such processing.
Right to withdraw consent
If processing is based on consent, you may withdraw your consent at any time. Withdrawal does not affect the lawfulness of processing prior to withdrawal.
Right to lodge a complaint
You have the right to lodge a complaint with the Danish Data Protection Agency (Datatilsynet), Carl Jacobsens Vej 35, 2500 Valby, Phone: +45 33 19 32 00, Email: [email protected], if you believe that our processing of your personal data does not comply with data protection law. However, we recommend that you first contact us using the contact details in section 1.
Personal Data Breaches
In the event of a personal data breach, it will be handled in accordance with internal procedures, including assessment of notification to the Danish Data Protection Agency and communication to affected individuals where required.
Updates
We may update this privacy policy. The latest revision date will appear on this page.