Privacy Policy
Last updated: 12 August 2025
Who we are
Guest Experiences LTD (“we”, “us”, “our”).
Website: https://guest-experiences.com
Contact: Guest Experiences LTD Guest Experiences LTD
Tax Nr. 208325033
Zornitza 47
8000 Burgas
Bulgaria
hello@guest-experiences.com • +359 897 880 666
What personal data we collect and why we collect it
Comments
When visitors leave comments, we collect the data shown in the comments form, and also the visitor’s IP address and browser user agent string to help with spam detection.
An anonymized string created from your email address (a hash) may be provided to the Gravatar service to check if you are using it. The Gravatar service privacy policy is available here: https://automattic.com/privacy/. After approval of your comment, your profile picture is visible to the public in the context of your comment.
Media
If you upload images to the website, avoid uploading images with embedded location data (EXIF GPS). Visitors to the website can download and extract any location data from images on the website.
WooCommerce (Orders & Checkout)
When you purchase from us, we collect information to process your order and support your experience:
- Collected: name, billing and shipping addresses, phone, email, order items, unique identifiers (order ID), IP address, and browser data.
- Payment data: handled by our payment processors (we do not store full card details).
- Why: to provide products/services, prevent fraud, comply with legal/tax obligations, and improve our store.
- Who sees it: our team members who process orders, refunds, and customer support have access to order details.
Payments
We use third-party payment processors (e.g., Stripe/Bank Transfer/other payment methods). When processing payments, some of your data will be passed to the processor, including information required to process or support the payment, such as the purchase total and billing information. Please review your chosen provider’s privacy policy.
Cookies
- If you leave a comment on our site, you may opt-in to saving your name, email address, and website in cookies for your convenience. These cookies last for one year.
- If you visit our login page, we set a temporary cookie to determine if your browser accepts cookies. It contains no personal data and is discarded when you close your browser.
- When you log in, we set cookies to save your login information and screen display choices. Login cookies last two days, and screen options cookies last one year. If you select “Remember Me”, your login persists for two weeks. When you log out, login cookies are removed.
- If you edit or publish an article, an additional cookie will be saved in your browser. It includes no personal data and indicates the post ID of the article you just edited. It expires after 1 day.
- WooCommerce cookies we use to keep your cart and checkout working include (examples):
woocommerce_cart_hash,woocommerce_items_in_cart,wp_woocommerce_session_*, andstore_notice*.
Embedded content from other websites
Articles on this site may include embedded content (e.g., videos, images, articles). Embedded content from other websites behaves exactly as if the visitor has visited the other website. These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with the embedded content, including tracking your interaction if you have an account and are logged in to that website.
Analytics (optional)
If enabled, we may use analytics tools (e.g., [Google Analytics/Matomo]) to understand site usage. These services may set their own cookies. You can opt out via your browser settings or the provider’s opt-out tools. [Add your analytics details or remove this section.]
Who we share your data with
- Service providers: payment processors, hosting providers, email/SMS providers, anti-spam/anti-fraud services, and logistics partners—only as necessary to run our website and fulfill orders.
- Password resets: if you request a password reset, your IP address will be included in the reset email.
- Legal compliance: we may disclose information to comply with legal obligations or respond to lawful requests.
How long we retain your data
- Comments: comments and their metadata are retained indefinitely to recognize and approve follow-up comments automatically.
- Registered users: for users who register, we store the personal information they provide in their user profile. All users can see, edit, or delete their personal information at any time (except the username). Website administrators can also see and edit that information.
- Orders: we retain order and transaction records for as long as required for accounting, tax, and legal obligations typically 1 years, per local law.
What rights you have over your data (GDPR/EEA)
If you have an account on this site or have left comments or placed orders, you can request:
- Access to the personal data we hold about you.
- Correction of inaccurate or incomplete data.
- Deletion of your personal data (except data we must keep for administrative, legal, or security purposes).
- Restriction or objection to certain processing.
- Portability of your data in a machine-readable format.
To exercise these rights, contact us at hello@guest-experiences.com]. You also have the right to lodge a complaint with your local supervisory authority (in Bulgaria: Commission for Personal Data Protection).
Your choices and consent
Where our processing is based on consent, you may withdraw your consent at any time without affecting the lawfulness of processing before withdrawal.
Where your data is sent
Visitor comments may be checked through an automated spam detection service. Some services we use may transfer data outside the EEA; where this occurs, we take steps to ensure appropriate safeguards (e.g., standard contractual clauses).
Legal bases for processing (GDPR)
We process personal data under the following legal bases:
- Contract: to provide and support purchases, bookings, and customer service.
- Legitimate interests: to operate, protect, and improve our services (e.g., fraud prevention, analytics, security).
- Consent: for optional features like marketing subscriptions.
- Legal obligation: to meet accounting, tax, and regulatory requirements.
How we protect your data
We use technical and organizational measures such as encryption in transit (HTTPS), access controls, and staff training. While no method is 100% secure, we work to protect your information to the best of our ability.
Data breach procedures
If we become aware of a data breach that is likely to result in a risk to your rights and freedoms, we will notify affected users and relevant authorities as required by law.
Automated decision-making and profiling
We do not make decisions with legal or similarly significant effects based solely on automated processing. If this changes, we will inform you and explain your rights.
Contact information
For privacy requests, data access, or complaints, contact:
Guest Experiences LTD • Email: hello@guest-experiences.com] • Address: 8000 Burgas Zornitza 47 Bulgaria Phone: +359 897 880 666