Privacy Policy

··· Legal Information ···

Privacy
Policy

At Can Pardal we take your privacy seriously.
Here you will find, clearly, how we use your data and what your rights are.

Last update: March 2026 · Version 2.0

01 Data Controller

Who is responsible
for your data?


Owner

Can Pardal Ibiza, S.L.

Tax ID (CIF)

B-XXXXXXXX (update with real CIF)

Address

Carrer de Missa, 3
07815 Sant Miquel de Balansat
Ibiza, Balearic Islands

Contact

T. (+34) 971 33 45 75
info@canpardalibiza.com

Applicable Regulations

GDPR (EU) 2016/679
LOPDGDD (Organic Law 3/2018)
LSSI-CE (Law 34/2002)

Can Pardal Ibiza, S.L. is the Data Controller for all personal data collected through this website, the contact form, the booking system, and any direct communication with the establishment. This policy applies to all visitors, customers, and individuals interacting with our services.

02 Data We Collect

What information
do we collect?


Data provided by you

Contact form and email: name, surname, email address, telephone number, and the content of your inquiry.

Booking process (Cloudbeds): full name, ID/passport (mandatory by Spanish hotel regulations), date of birth, postal address, email, telephone, credit card details (managed entirely by Cloudbeds/payment gateway), check-in and check-out dates, room preferences, and special requests.

Newsletter (if you subscribe): name and email address.

Automatically collected data

When you browse our website, our systems and the third-party services we use (see section 05) may automatically collect: IP address, browser type and operating system, pages visited, time spent, referral URL, and general interaction data. This information is collected through cookies and similar technologies (see section 07).

Hotel registration data (mandatory by law)

In compliance with Organic Law 4/2015 on the Protection of Citizen Security and Royal Decree 933/2021, hotel establishments in Spain are required to register and communicate specific guest data to the State Security Forces: name and surname, identity document number, nationality, date of birth, check-in date, and room number.

03 Purposes and Legal Basis

What we use
your data for


Purpose

Legal Basis

GDPR Art.

Booking management

Confirm, modify, and manage stays

Performance of contract

6.1.b

Customer service

Respond to inquiries, complaints, and special requests

Contract / Legitimate Interest

6.1.b / 6.1.f

Mandatory hotel registration

Data communication to Security Forces (RD 933/2021)

Legal obligation

6.1.c

Invoicing and accounting obligations

Issuing invoices and tax compliance

Legal obligation

6.1.c

Website navigation analysis

Improve website and user experience (Google Analytics)

Legitimate Interest / Consent

6.1.f / 6.1.a

Newsletter and marketing communications

Sending offers, news, and hotel content

Express consent

6.1.a

Claims management

Process and resolve potential claims or incidents

Legitimate Interest / Legal obligation

6.1.f / 6.1.c

04 Retention Periods

How long do we
keep your data?


Booking and stay data

6 years

Tax and accounting obligation (Art. 30 Code of Commerce and tax regulations)

Hotel registration (RD 933/2021)

3 years

Legal period established by public safety regulations for lodging establishments

Inquiries and contact

1 year

From the last communication, unless a booking materializes (in which case booking period applies)

Newsletter

Until unsubscribed

As long as you maintain the subscription. You can unsubscribe at any time from any email received

Web browsing data

13 months

Maximum applicable by AEPD for analytics cookies. Google Analytics anonymizes IP by default

Claims

5 years

Statute of limitations for civil actions and contractual liability according to the Civil Code

Once the indicated periods have elapsed, your data will be deleted or, where appropriate, irreversibly anonymized. During retention periods, access to data will be restricted and used only for the exercise or defense of claims.