GDPR – Personal Data Processing
Privacy Notice for Hotel Internet Access Services
Depending on the specific contractual arrangement with the hotel, the Mikenopa group entity providing the service may act either as an independent data controller or as a data processor on behalf of the hotel operator. Where Mikenopa acts as a data processor, the hotel operator remains the data controller and is responsible for providing the applicable privacy information to guests.
Where Mikenopa acts as an independent data controller, the Mikenopa group entity providing internet access services in the relevant hotel (the “Controller”) processes personal data as described below in accordance with Act No. 110/2019 Coll., on the Processing of Personal Data, and Regulation (EU) 2016/679 (hereinafter as “GDPR”):
- Surname and Name of the hotel guest or hotel employee using the service
- Hotel room number
- MAC address of the device used
- IP address assigned
- Connection timestamps
- Device identifier
Personal data are processed for the purpose of:
- the performance of contract with the user of the service (Article 6(1)(b) GDPR);
- compliance with legal obligations under Act No. 127/2005 Coll., on electronic communications (Article 6(1)(c) GDPR).
Personal data are retained for up to 6 months from the date of connection in accordance with Act No. 127/2005 Coll. Subsequently, the personal data are deleted.
Provision of personal data is necessary to provide internet access services and to comply with applicable legal obligations. Without providing such data, internet access cannot be granted. The Controller does not carry out automated decision-making or profiling in relation to the provision of internet access services.
Personal data may be processed by the Controller and by trusted IT infrastructure and connectivity service providers acting as processors and, where required by law, public authorities. Where data is transferred outside the EU, appropriate safeguards such as Standard Contractual Clauses or adequacy decisions are applied. For more information on the processing of your personal data, you can contact the Controller at any time by email at gdpr@mikenopa.com. Contact details of the specific Controller are available upon request or at the hotel reception.
Please note that under the applicable data protection legislation, including GDPR, you are entitled to
- request information about the personal data processed in relation to you,
- request an explanation regarding the processing of your personal data,
- request access to your personal data,
- require them to be rectified or erased, or to limit the processing,
- object to processing,
- lodge a complaint with the competent supervisory authority in your country of residence or where the alleged infringement occurred (for Czech clients, supervisory authority is https://www.uoou.cz/), and
- to exercise the right to transfer your personal data.
In case of any doubt about our compliance with personal data processing legislation, you have the right to contact us with an objection to the processing of your personal data.
