Privacy Policy
Last updated: January 2025
1. Introduction
Best Hotel Rates ("we", "our", "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website and services. We comply with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.
2. Information We Collect
We collect the following types of information:
- • Personal Information: Name, email address, phone number, and payment details when you make a booking.
- • Booking Information: Travel dates, hotel preferences, guest details, and special requests.
- • Account Information: Login credentials, profile information, and booking history.
- • Technical Data: IP address, browser type, device information, and cookies for website functionality.
- • Usage Data: How you interact with our website, search history, and preferences.
3. How We Use Your Information
- • To process and confirm hotel bookings.
- • To send booking confirmations, updates, and important travel information.
- • To process payments securely through our payment provider (Stripe).
- • To provide customer support and respond to enquiries.
- • To improve our website and services based on usage patterns.
- • To send marketing communications (only with your consent).
- • To comply with legal obligations and prevent fraud.
4. Data Sharing
We share your information only when necessary:
- • Hotels and Suppliers: To complete your booking reservation.
- • Payment Processors: Stripe processes payments on our behalf.
- • Service Providers: Email services (Resend) for booking confirmations.
- • Legal Requirements: When required by law or to protect our rights.
We do not sell your personal information to third parties.
5. Data Security
We implement appropriate security measures to protect your personal information, including:
- • SSL/TLS encryption for all data transmission.
- • PCI-DSS compliant payment processing through Stripe.
- • Secure password hashing for user accounts.
- • Regular security audits and updates.
6. Your Rights (GDPR)
Under UK GDPR, you have the right to:
- • Access: Request a copy of your personal data.
- • Rectification: Correct inaccurate or incomplete data.
- • Erasure: Request deletion of your data ("right to be forgotten").
- • Portability: Receive your data in a structured, machine-readable format.
- • Object: Object to processing of your data for marketing purposes.
- • Withdraw Consent: Withdraw consent at any time where processing is based on consent.
To exercise these rights, contact us at privacy@besthotelrates.co.uk
7. Cookies
We use cookies to enhance your experience. Essential cookies are required for the website to function. Analytics cookies help us understand how visitors use our site. You can manage your cookie preferences through the cookie consent banner or your browser settings. See our Cookie Policy for more details.
8. Data Retention
We retain your personal data for as long as necessary to fulfil the purposes for which it was collected, including legal, accounting, or reporting requirements. Booking records are typically retained for 7 years for legal compliance. Account data is retained until you request deletion.
9. Contact Us
For privacy-related enquiries or to exercise your rights, contact our Data Protection team: privacy@besthotelrates.co.uk
You also have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk