Privacy Policy
Last Updated: July 3, 2026
At Abitare Retreat, we are committed to protecting your privacy and ensuring that your personal information is handled in a safe and responsible manner. This policy outlines how we collect, use, and protect your data in compliance with the General Data Protection Regulation (GDPR) and local laws in Cyprus.
1. Information We Collect
To process your booking and provide a high-quality service, we collect the following information:
- Identity Data: Full name, passport or ID number, and, where requested for security verification, a copy of your ID or passport (required for legal reporting to Cyprus authorities and to verify guest identity).
- Contact Data: Email address, phone number, and billing address.
- Booking Data: Dates of stay, number of guests, any special requests, and, where requested for security verification, proof of travel such as flight ticket details.
- Payment Data: Payments are made via direct bank transfer. We do not use third-party payment processors and never receive or store your card details; we only retain records of the transfer (amount, date, reference) for accounting and legal purposes. A small refundable security deposit may also be requested ahead of your stay.
2. How We Use Your Information
We use your data strictly for the following purposes:
- To manage and confirm your reservation.
- To communicate important check-in details and property information.
- To comply with Cyprus legal requirements (reporting guest arrivals to the Deputy Ministry of Tourism/Local Authorities).
- To process payments and issue invoices.
- To verify guest identity and prevent fraud, where additional security checks are requested.
3. Data Sharing & Disclosure
We value your trust and do not sell your personal data. We only share information with:
- Service Providers: Such as our cleaning team, solely to prepare for your arrival.
- Legal Authorities: When required by Cyprus law for tax purposes or security reporting.
4. Data Security
We implement robust security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorized way. Access to your personal data is limited to those who have a genuine business need to know.
5. Your Rights (GDPR)
Under European law, you have the right to:
- Request access to the personal data we hold about you.
- Request correction of any inaccurate information.
- Request the deletion of your data once our legal record-keeping obligations (e.g., for tax purposes) have been met.
- Object to or restrict the processing of your data.
6. Cookies
Our website uses "cookies" to improve your browsing experience and analyze site traffic. You can choose to disable cookies through your browser settings, though this may affect the functionality of the booking system.
7. Contact Us
If you have any questions regarding this Privacy Policy or the handling of your data, please contact us at:
- Email: [email protected]
- Location: Paphos, Cyprus
