Privacy Policy
Last Updated: May 1, 2025
1. Introduction
This Privacy Policy describes how Prism Resorts ("we," "our," or "us") collects, uses, and shares information about you when you visit our website, use our services, or interact with us in person at our establishment located in Poland.
We respect your privacy and are committed to protecting your personal data. This policy is designed to help you understand what information we collect, why we collect it, and how you can update, manage, or request deletion of your information.
2. Information We Collect
We collect information in the following ways:
2.1. Information You Provide to Us
- Personal identification information: Name, date of birth, nationality, passport or ID card details, address, phone number, email address, and other similar information.
- Reservation and booking information: Dates of visit, special requests, preferences, and service interests.
- Payment information: Credit card details, billing address, and other financial information necessary for reservations or purchases.
- Correspondence: Information provided in communications with us, including feedback, inquiries, and reviews.
- Membership information: Information related to loyalty programs, preferences, and usage history.
2.2. Information Collected Automatically
- Usage data: Information about how you use our website, such as the pages you visit, time spent on each page, and links clicked.
- Device information: Information about the device you use to access our website, including device type, browser type, and operating system.
- IP address and location data: General geographic location based on your IP address.
- Cookies and similar technologies: Information collected through cookies and similar technologies to enhance your browsing experience. For more details, please see our Cookie Policy section.
2.3. Information from Third Parties
- Business partners: Information received from business partners, such as travel agencies, online booking platforms, or payment service providers.
- Public sources: Publicly available information from sources such as public records or social media platforms.
3. How We Use Your Information
We use the collected information for the following purposes:
- To verify your identity in compliance with legal requirements for casino entry
- To process and confirm your reservations and bookings
- To provide and improve our services
- To personalize your experience at our establishment
- To communicate with you about reservations, promotions, and events
- To process payments and prevent fraudulent transactions
- To respond to your inquiries and provide customer support
- To comply with legal obligations, including age verification for casino entry
- To monitor and analyze website usage and trends
- To conduct internal research and development
4. Legal Basis for Processing
We process your personal data on the following legal grounds:
- Contractual necessity: Processing is necessary for the performance of a contract with you or to take steps at your request before entering into a contract.
- Legal obligation: Processing is necessary for compliance with a legal obligation to which we are subject, such as age verification requirements and anti-money laundering regulations.
- Legitimate interests: Processing is necessary for our legitimate interests or those of a third party, such as improving our services, preventing fraud, and ensuring the security of our premises.
- Consent: You have given consent to the processing of your personal data for one or more specific purposes.
5. How We Share Your Information
We may share your information with the following categories of recipients:
- Service providers: Third-party companies that provide services on our behalf, such as payment processing, data analysis, email delivery, hosting services, and customer service.
- Business partners: Companies that collaborate with us to offer products or services, or that help us operate our website and conduct marketing activities.
- Legal authorities: Government agencies, regulatory bodies, and law enforcement agencies when required by law or to protect our rights and interests.
- Professional advisors: Accountants, auditors, lawyers, and other professional advisors when necessary.
We do not sell your personal information to third parties.
6. Data Retention
We retain your personal data for as long as necessary to fulfill the purposes for which we collected it, including for the purposes of satisfying any legal, accounting, or reporting requirements. The criteria used to determine our retention periods include:
- The length of time we have an ongoing relationship with you
- Legal obligations that require us to retain data for certain periods
- Statute of limitations under applicable law
- Our legitimate business interests
7. Your Rights
Under the GDPR and applicable Polish data protection law, you have the following rights:
- Right to access: You have the right to request information about the personal data we hold about you.
- Right to rectification: You have the right to request that we correct inaccurate or incomplete personal data.
- Right to erasure: You have the right to request the deletion of your personal data in certain circumstances.
- Right to restrict processing: You have the right to request that we restrict the processing of your personal data in certain circumstances.
- Right to data portability: You have the right to receive your personal data in a structured, commonly used, and machine-readable format.
- Right to object: You have the right to object to the processing of your personal data in certain circumstances.
- Right to withdraw consent: You have the right to withdraw your consent at any time where we rely on consent to process your personal data.
To exercise any of these rights, please contact us using the details provided in the "Contact Us" section below.
8. Cookie Policy
Our website uses cookies and similar technologies to distinguish you from other users of our website. This helps us to provide you with a good experience when you browse our website and also allows us to improve our site.
A cookie is a small file of letters and numbers that we store on your browser or the hard drive of your computer if you agree. Cookies contain information that is transferred to your computer's hard drive.
We use the following types of cookies:
- Strictly necessary cookies: Required for the operation of our website. They include, for example, cookies that enable you to log into secure areas of our website.
- Analytical/performance cookies: Allow us to recognize and count the number of visitors and to see how visitors move around our website when they are using it.
- Functionality cookies: Used to recognize you when you return to our website, enabling us to personalize our content for you and remember your preferences.
- Targeting cookies: Record your visit to our website, the pages you have visited, and the links you have followed.
You can set your browser to refuse all or some browser cookies, or to alert you when websites set or access cookies. If you disable or refuse cookies, please note that some parts of this website may become inaccessible or not function properly.
9. Data Security
We have implemented appropriate technical and organizational measures to protect your personal data against unauthorized or unlawful processing, accidental loss, destruction, or damage. These measures include:
- Encryption of sensitive data
- Regular security assessments
- Access controls and authentication procedures
- Staff training on data protection
- Secure network architecture
While we strive to protect your personal data, no method of transmission over the internet or method of electronic storage is 100% secure. Therefore, we cannot guarantee its absolute security.
10. International Data Transfers
We primarily process your personal data within the European Economic Area (EEA). However, in some cases, your personal data may be transferred to, and processed in, countries outside the EEA where our service providers are located.
When we transfer your personal data outside the EEA, we ensure a similar degree of protection is afforded to it by implementing appropriate safeguards, such as:
- Using specific contracts approved by the European Commission that give personal data the same protection it has in Europe
- Transferring data to countries that have been deemed to provide an adequate level of protection by the European Commission
- Where we use providers based in the US, we may transfer data to them if they are part of the Privacy Shield or have implemented similar appropriate safeguards
11. Children's Privacy
Our services are strictly for adults 18 years of age or older. We do not knowingly collect or process personal data from children under 18 years of age. If we become aware that we have collected personal data from a child under 18, we will take steps to delete such information from our records as soon as possible.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for other operational, legal, or regulatory reasons. When we make changes, we will update the "Last Updated" date at the top of this policy and take any other steps required by applicable law.
We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information.
13. Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data processing practices, please contact us at:
Data Protection OfficerPrism Resorts - Casino & Fine Dining
ul. Przykładowa 123
00-001 Warsaw, Poland
Email: privacy@prism-resorts.com
Phone: +48 123 456 789
You have the right to lodge a complaint with a data protection authority. In Poland, the supervisory authority is the President of the Personal Data Protection Office (Prezes Urzędu Ochrony Danych Osobowych).