PRIVACY POLICY

1. We Respect What You Don’t Say Out Loud

At BrightSideHotel, we value not only your presence but your boundaries. That’s why privacy isn’t just a legal checkbox for us — it’s an extension of how we treat our guests: quietly, respectfully, and without intrusion.
This Privacy Policy explains how we collect, use, and protect your personal data when you visit www.brightsidehotel.com, contact us, or stay with us — whether you're booking a room, exploring spa options, or just browsing.

2. Who We Are

BrightSideHotel
 ul. Jana III Sobieskiego 15,
02-957 Warszawa, Poland
Phone: +48 22 276 34 81
Email: stay@brightsidehotel.com
We operate under the legal framework of the Republic of Poland and comply with GDPR regulations.

3. What We Collect — And Why

We only collect what helps us serve you better — no more, no less.

We may collect:

Contact data (name, email, phone number) Booking details (check-in/out dates, preferences, room type) Payment information (secured via encrypted third-party gateways) Technical data (IP address, device type, browser) for site optimization Communication history (emails, contact forms, live chat) We never:

Sell your data Track you across unrelated websites Collect more than necessary

4. How We Use It — With Precision and Restraint

We use your information to:

Confirm and manage reservations
Provide personalized service
Respond to inquiries or support requests
Improve website experience and functionality
Comply with legal or contractual obligations
We believe in data minimalism. If we don’t need it, we don’t keep it.

5. Third Parties We Trust

Your data is only shared with services essential to your experience — and only when their standards match ours. Examples include:

Secure payment processors (Stripe, PayU, etc.)
Email communication platforms
Analytics tools (Google Analytics, anonymized)
Booking platforms (if used externally)
All third parties are GDPR-compliant and under strict contractual controls.

6. How Long We Keep Your Data

Guest booking data: kept up to 5 years for legal/accounting compliance
Contact form messages: retained for 12 months
Newsletter subscription: until you unsubscribe
Cookies: based on browser settings (see Cookies Policy)
We regularly audit and delete non-essential stored data.

7. Your Rights — And How to Use Them

Under GDPR, you have the right to:

Access your personal data
Request correction or deletion
Withdraw consent at any time
Object to or restrict processing
Lodge a complaint with a Data Protection Authority (UODO in Poland)
Want to exercise any of the above?
Just email us at privacy@brightsidehotel.com — we will respond within 14 days.

8. Data Security — Quiet but Robust

We use encryption, access controls, secure hosting, and regular backups to protect your data from loss, misuse, or unauthorized access. Our IT philosophy is the same as our hospitality: if it doesn’t make you feel safer, it shouldn’t exist.

9. Cookies & Tracking

We use minimal, non-invasive cookies for:

Site performance
Language preferences
Anonymous usage analytics
We do not use ad trackers or behavioral targeting.
 You can manage cookies via your browser at any time. See our full Cookies Policy for details.

10. Updates to This Policy

We don’t change policies often — but when we do, we’ll let you know here.
We encourage guests to revisit this page occasionally to stay informed.

🍪 We use cookies

This site uses cookies to improve your user experience, analyze traffic, and personalize content.