Privacy Policy

Privacy Policy

Privacy Policy

Effective Date: 7th of March, 2025

1. Introduction

Welcome to Guestit (“we”, “us”, “our”, “Guestit.nl”). This Privacy Policy describes how we collect, use, disclose, and protect your personal data when you visit our website, use our services, or otherwise interact with us. We are committed to handling your data in accordance with the applicable data protection laws, including the European Union’s General Data Protection Regulation (GDPR).


2. Data Controller & Contact Information

  • Data Controller: Guestit (the entity deciding purposes and means of processing)

  • Address: Hollandsch Diep 63-C, 2904 EP Capelle aan den IJssel, Netherlands; and Ruzveltova 44A, 1000 Skopje, North Macedonia (HQ) (guestit.nl)

  • Contact Email: hey@guestit.nl

  • Phone: +31 (0)30 711 3232 (guestit.nl)



3. Personal Data We Collect

We may collect the following types of data:

Type

Examples / Details

Identity / contact data

Name, email address, phone number, company name, job title, postal address

Usage / technical data

IP address, browser type and version, device identifiers, operating system, pages visited, referral source, time stamps

Cookies & tracking

Cookies, local storage, analytics identifiers, similar technologies

Communications

Records of communications with you (e.g. email, support tickets)


We do not knowingly collect personal data from individuals under age 16. If you are under 16, please do not provide us with any personal data.


4. How We Use Your Data (Purposes & Legal Basis)

We use personal data for one or more of the following legal bases and purposes:

Purpose

Legal Basis

Description

To provide our services & fulfill contracts

Performance of contract

E.g. enabling you to use Guestit products, billing, support

To improve and develop our offerings

Legitimate interests

E.g. analytics, A/B testing, feature improvements

To communicate with you

Legitimate interests / consent

E.g. regarding support, marketing (if consented)

To comply with legal obligations

Legal obligation

E.g. tax, accounting, fraud prevention

To personalize and optimize your experience

Legitimate interests

E.g. content recommendations, remembering preferences

You may withdraw consent at any time (where applicable), but this will not affect processing based on other legal bases.


5. Data Sharing & Third Parties

We may share your personal data with:

  • Service providers / subprocessors who help us operate (analytics platforms, hosting, email service providers)

  • Affiliates / group companies

  • Legal authorities / regulators if required by law or to protect rights

  • In case of business transfer (merger, sale, reorganization) your personal data may be transferred, subject to confidentiality and protections

In all cases, we require third parties to process data in compliance with the GDPR and enter data processing agreements (verwerkersovereenkomst) where required. (Enty)


6. International Transfers

If personal data is transferred outside the European Economic Area (EEA), we will ensure it is protected through appropriate safeguards (e.g. Standard Contractual Clauses, adequacy decisions) in line with GDPR requirements.


7. Data Retention

We retain personal data only as long as necessary to achieve the purpose for which it was collected, or as required by law (e.g. accounting rules). After that period, data will be deleted or anonymized.


8. Your Rights under GDPR

You have the right to:

  1. Access your data (obtain a copy)

  2. Rectification (correct inaccurate / incomplete data)

  3. Erasure (“right to be forgotten”)

  4. Restriction of processing

  5. Object to certain processing (e.g. direct marketing)

  6. Data portability (receive data in structured format)

  7. Withdraw consent (if processing is based on consent)

To exercise your rights, contact us at hey@guestit.nl. We will respond within statutory time limits (usually one month).

You also have the right to lodge a complaint with the Dutch Data Protection Authority (Autoriteit Persoonsgegevens). (Autoriteit Persoonsgegevens)

9. Security Measures

We implement technical and organizational security measures to protect your data, such as encryption, access controls, pseudonymization, monitoring, backups, and staff training. However, no method is 100% secure — we cannot guarantee absolute security.


10. Cookies & Tracking Technologies

We use cookies and similar technologies to enhance functionality, analyze usage, run analytics, and deliver personalized content. You can manage cookie preferences via our cookie banner or your browser settings. For more details, refer to our Cookie Policy (if separate).

11. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will post the new version on our website and update the “Effective Date” above. Significant changes may also be communicated via email or notifications.


12. Miscellaneous

  • This policy is in English; where translated versions exist, the English version governs.

  • If any part is invalid or unenforceable, the rest remains in effect.

  • Our relationship (use of services) is also subject to our Terms & Conditions below.

Terms & Conditions (Terms of Use / Terms of Service)