Privacy Policy
Effective Date: January 1, 2025
Ubud Valley Resort (“we”, “our”, or “us”) is committed to protecting the privacy and personal data of our guests, website visitors, and anyone who interacts with our services. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at https://ubudvalleyresort.com/, make a reservation, stay at our resort, or otherwise communicate with us.
By using our website or services, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
We collect various types of information for different purposes to provide and improve our services to you.
1.1. Personal Data You Provide Directly: This includes information you voluntarily provide when you:
- Make a reservation or inquiry (online, via phone, email, or third-party booking sites).
- Check-in at the resort.
- Sign up for newsletters or promotions.
- Participate in surveys or contests.
- Communicate with us via email, phone, social media, or WhatsApp.
- Request specific services (e.g., spa treatments, activities, dietary preferences, special occasions).
The types of personal data collected may include, but are not limited to:
- Contact Information: Name, email address, postal address, phone number, country of residence.
- Reservation Details: Arrival and departure dates, room preferences, special requests, number of guests.
- Payment Information: Credit card details (card type, number, expiry date, security code) – primarily collected via secure payment gateways like STAAH, not directly stored by us unless explicitly stated otherwise for specific, secure purposes.
- Identification Information: Passport/ID details (for check-in purposes as required by Indonesian law).
- Demographic Information: Date of birth, nationality.
- Preferences: Dietary restrictions, health conditions relevant to your stay (e.g., allergies for dining, or conditions for spa treatments), activity interests, special occasion details (e.g., honeymoon, anniversary).
1.2. Data Collected Automatically (through website usage): When you visit our website, we may automatically collect certain information through cookies, web beacons, and other tracking technologies. This information may include:
- Usage Data: Your computer’s Internet Protocol (IP) address, browser type, browser version, the pages of our website that you visit, the time and date of your visit, the time spent on those pages, unique device identifiers, and other diagnostic data.
- Location Data: General geographical location (city, country) derived from your IP address, but not precise GPS location unless specifically enabled by you for a service.
- Device Information: Information about the device you use to access our website, such as hardware model, operating system, and mobile network information.
1.3. Information from Third Parties: We may receive information about you from third-party sources, such as:
- Online Travel Agencies (OTAs): When you make a reservation through platforms like Booking.com, Expedia, or Agoda, they may send us your reservation details.
- Payment Processors: When you make payments, secure payment gateways (like STAAH) process your transaction and may provide us with confirmation details.
- Social Media Platforms: If you interact with us on social media.
- Partners: From business partners for promotions or joint activities.
2. How We Use Your Information
We use the collected information for various purposes, primarily to provide and improve our services, manage our business operations, and communicate with you.
- To Manage Reservations and Stays: Processing bookings, facilitating check-ins and check-outs, assigning rooms, fulfilling special requests, and providing essential services during your stay.
- To Personalize Your Experience: Tailoring services and offers to your preferences, remembering your choices for future visits.
- To Communicate with You: Sending booking confirmations, pre-arrival information, post-stay surveys, newsletters, marketing communications (if you’ve opted in), and responding to your inquiries.
- For Customer Service: Providing support, resolving issues, and handling complaints.
- For Marketing and Promotions: Sending you updates, special offers, and promotional materials about Ubud Valley Resort’s services, events, or partnerships that we believe may be of interest to you. You can opt-out of marketing communications at any time.
- For Internal Business Operations: Data analysis, research, auditing, developing new services, improving our website and services, identifying usage trends, and determining the effectiveness of our promotional campaigns.
- For Security and Fraud Prevention: Protecting the security and integrity of our resort and website, preventing fraud and other illegal activities.
- To Comply with Legal Obligations: Meeting requirements under applicable laws, regulations, and governmental requests (e.g., tax, immigration, and public health regulations).
3. Sharing Your Information
We may share your personal data with the following categories of recipients:
- Service Providers: Third-party companies and individuals who perform services on our behalf, such as payment processing (e.g., STAAH), IT support, website hosting, marketing, analytics, and other operational support. These providers are obligated to protect your information and use it only for the purposes for which it was provided.
- Business Partners: With trusted partners for joint marketing activities, promotions, or co-branded services, but only with your consent or as permitted by law.
- Affiliates: With entities within the same corporate group as Ubud Valley Resort, for internal administrative purposes.
- Legal Requirements and Law Enforcement: When required by law or in response to valid requests by public authorities (e.g., a court or government agency), or to protect our rights, privacy, safety, or property, or that of our guests or the public.
- Sale or Transfer of Assets: In connection with a merger, acquisition, or sale of all or a portion of our assets, your personal data may be transferred as part of that transaction.
- With Your Consent: We may share your information for any other purpose with your explicit consent.
We will never sell your personal data to third parties for their independent marketing or commercial purposes without your explicit consent.
4. Data Security
We are committed to ensuring the security of your personal data. We implement appropriate technical and organizational measures to protect your information from unauthorized access, alteration, disclosure, or destruction. These measures include:
- Secure servers and encrypted connections (HTTPS) for our website.
- Restricted access to personal data for authorized personnel only.
- Regular security assessments and updates.
- Use of reputable third-party payment processors (like STAAH) for secure handling of payment details.
Despite our efforts, no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your Personal Data, we cannot guarantee its absolute security.
5. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected, including for the purposes of satisfying any legal, accounting, or reporting requirements. The retention period for different types of data may vary depending on the purpose and applicable laws.
6. Your Data Protection Rights
Depending on your location and applicable data protection laws, you may have certain rights regarding your personal data. These rights may include:
- Right to Access: The right to request copies of your personal data we hold.
- Right to Rectification: The right to request that we correct any information you believe is inaccurate or complete information you believe is incomplete.
- Right to Erasure (Right to be Forgotten): The right to request that we erase your personal data under certain conditions.
- Right to Restrict Processing: The right to request that we restrict the processing of your personal data under certain conditions.
- Right to Object to Processing: The right to object to our processing of your personal data under certain conditions.
- Right to Data Portability: The right to request that we transfer the data that we have collected to another organization, or directly to you, under certain conditions.
- Right to Withdraw Consent: Where we rely on your consent to process your personal data, you have the right to withdraw that consent at any time.
To exercise any of these rights, please contact us using the details provided in the “Contact Us” section below. We will respond to your request in accordance with applicable laws.
7. Cookies and Tracking Technologies
We use cookies and similar tracking technologies to track the activity on our website and hold certain information.
- Cookies: Small data files stored on your device. They help us remember your preferences, understand how you use our site, and improve your Browse experience.
- Web Beacons/Pixels: Tiny graphic files that allow us to count users who have visited certain pages or opened emails, and for other related website statistics (e.g., recording the popularity of a certain section and verifying system and server integrity).
You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.
We use Google Analytics to understand website usage and Facebook Pixel for advertising purposes. These services may collect data about your interactions with our website. Please refer to their respective privacy policies for more information on how they handle your data.
8. Links to Other Websites
Our website may contain links to other websites that are not operated by us (e.g., TripAdvisor, social media platforms, STAAH booking engine). If you click on a third-party link, you will be directed to that third party’s site. We strongly advise you to review the Privacy Policy of every site you visit. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.
9. Children’s Privacy
Our services are not intended for anyone under the age of 18 (“Children”). We do not knowingly collect personally identifiable information from anyone under 18. If you are a parent or guardian and you are aware that your Children have provided us with Personal Data, please contact us. If we become aware that we have collected Personal Data from children without verification of parental consent, we take steps to remove that information from our servers.
10. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the “Effective Date” at the top of this Privacy Policy. You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
11. Contact Us
If you have any questions about this Privacy Policy, your data, or would like to exercise your data protection rights, please contact us:
Ubud Valley Resort Jl. Raya Pejeng Kangin, Pejeng Kangin, Kec. Tampaksiring, Kabupaten Gianyar, Bali 80552
Phone: +62 811 2914 00
WhatsApp: +62 811 9814 00
Email: info@ubudvalleyresort.com