Legal

Privacy Policy

DRAFT — requires solicitor review. This page is a working placeholder and does not constitute legal advice. It is not the final policy and must be reviewed and approved by a qualified data-protection solicitor before Euro Padel Travel relies on it. Last updated 7 August 2026.

This policy explains how Euro Padel Travel (“we”, “us”, “our”) collects, uses and protects your personal data when you use our website or enquire about or book a trip. We are the data controller. We aim to comply with the UK GDPR and the Data Protection Act 2018.

DRAFT — company details to confirm: registered company name, company number, registered address and Data Protection contact email all require confirmation before publication.

What data we collect

  • Enquiry & contact details — name, email, phone number, destination, dates, group size and any message you send us through our enquiry form.
  • Booking & member details — the information needed to organise a trip for you and your group, including each member's name, email and phone number.
  • Payment data — deposits and balances are processed by our payment provider (Stripe). We do not store full card numbers; card handling is carried out by Stripe as processor.
  • Messaging opt-ins — where you opt in, we record consent to contact you by email and/or WhatsApp, together with the type, source and timestamp of that consent.
  • Technical & cookie data — see our Cookie Policy.

How and why we use it (lawful bases)

  • To respond to enquiries and organise your trip — performance of a contract, or steps taken at your request before entering a contract.
  • To take payment and manage deposits and balances — performance of a contract.
  • To send trip and account updates — legitimate interests and/or contract (transactional messages are not marketing).
  • To send marketing — only where you have given explicit, separate opt-in consent, which you can withdraw at any time.
  • To meet legal obligations — for example tax and accounting record-keeping.

Who we share it with

We share personal data only where necessary, with processors and partners acting on our instructions or as needed to deliver your trip. This is expected to include (all to be confirmed):

  • Payment processing — Stripe.
  • Hosting, database and authentication — our infrastructure provider (e.g. Supabase / Vercel).
  • Messaging — email and, where you opt in, WhatsApp via the official WhatsApp Business API (Meta).
  • Travel suppliers — hotels, venues and other suppliers where sharing your details is needed to deliver the trip you book.
  • Professional advisers and authorities where required by law.

We do not sell your personal data. We only market to people who have opted in.

International transfers

DRAFT. Some providers may process data outside the UK. Where they do, we will put in place an appropriate safeguard (such as UK adequacy regulations or the International Data Transfer Agreement). The specific transfers and safeguards must be confirmed.

How long we keep it

DRAFT — retention periods to be set. We keep personal data only as long as necessary for the purposes above and to meet legal, accounting and tax requirements, then delete or anonymise it.

Your rights

Under UK GDPR you have the right to:

  • access a copy of your data;
  • have inaccurate data corrected;
  • have your data erased in certain circumstances;
  • restrict or object to certain processing;
  • data portability; and
  • withdraw consent at any time, without affecting prior processing.

To exercise any of these rights, contact us at the address below. You also have the right to complain to the Information Commissioner's Office (ICO) at ico.org.uk, though we'd ask you to raise it with us first.

Cookies

We use cookies and similar technologies as described in our Cookie Policy. Non-essential cookies are off by default until you agree to them.

Contact

DRAFT — contact details to confirm. Questions about this policy or your data can be sent to us via our contact page.