Privacy Policy for culiacanturismo.com

1. Introduction

At culiacanturismo.com, we are fully committed to protecting and respecting your privacy. This Privacy Policy outlines how we collect, use, store, and safeguard your personal data in accordance with applicable privacy legislation, including but not limited to the General Data Protection Regulation (EU) 2016/679 (“GDPR”) and the California Consumer Privacy Act of 2018 (“CCPA”). Our objective is to handle your personal data responsibly, with the highest standards of security and transparency.

2. Scope of This Policy and Data Controller Role

This Privacy Policy applies to all users of the website culiacanturismo.com (hereafter “the Website”) and to all personal data collected through your interactions with our services, website functionalities, and communications.

Culiacanturismo.com acts as the data controller for the personal information collected through the Website. If you have any questions about how your information is managed, please contact our privacy team at: [email protected].

3. Categories of Personal Data We Collect

We may collect and process the following categories of data:

A. Usage Data
Information about how you use the Website, such as IP addresses, browser type, date/time of visits, pages viewed, referral URLs, and clickstream behavior.

B. Account Data
Data you provide when creating or managing an account, including your name, email address, physical address, phone number, and login details.

C. Profile Data
Preferences, interests, user-generated content, service usage trends, and data related to bookings, purchases, or tours.

D. Communication Data
Records of email inquiries, contact form messages, support requests, customer service interactions, and follow-up correspondence.

E. Technical Data
Device and system configuration details, including operating system, screen resolution, language settings, and mobile device identifiers.

F. Transaction Data
Details of any payments made or tour bookings processed on the Website, including billing addresses, transaction timestamps, and delivery or service fulfillment data.

G. Preference Data
Marketing and communication preferences, including your opt-in status for newsletters, promotions, and product recommendations.

4. Legal Bases for Processing Personal Data

We process your personal data lawfully, based on the following legal grounds:

– Performance of a contract: When processing is needed to fulfill a booking or user registration.
– Legitimate interests: To improve the Website, enhance security, personalize experiences, and prevent fraud.
– Consent: Where we ask and receive your permission, for example in the case of cookie deployment or marketing communications.
– Compliance with legal obligations: To meet regulatory requirements or respond to lawful governmental requests.

5. Your Data Protection Rights

Subject to applicable legal requirements and limitations, you have the following rights regarding your personal data:

– Right of Access: You may request confirmation and a copy of the personal data we hold about you.
– Right of Rectification: You may correct inaccurate or incomplete data.
– Right to Erasure: You may request deletion of your personal data, subject to retention obligations.
– Right to Restrict Processing: You may request that we limit the use of your data in certain cases.
– Right to Data Portability: You may receive your data in a structured, commonly used, and machine-readable format, and transmit it to another controller.

To exercise any of these rights, please email us at: [email protected].

6. Security Measures

We employ rigorous administrative, technical, and physical safeguards to protect your data from unauthorized access, alteration, disclosure, or destruction. These measures include:

– TLS (Transport Layer Security) encryption
– Secure data storage environments
– Access controls and authentication procedures
– Regular security audits
– Staff training in data protection principles

7. International Data Transfers

Some of your information may be processed or stored outside of your jurisdiction, including in countries that may not offer the same level of legal protection as your own. Where such transfers occur, we use:

– European Commission approved Standard Contractual Clauses (SCCs)
– Binding Corporate Rules (where applicable)
– Other lawful mechanisms to ensure data protection compliance

By using culiacanturismo.com, you acknowledge and agree to these international data transfer practices where lawful.

8. Data Retention

We retain personal data for as long as required to fulfill the purposes for which it was collected, including compliance with legal, tax, accounting, or reporting requirements.

Type of Data and Retention Period:

– Usage and Technical Data: 26 months for analytical purposes.
– Account and Profile Data: Retained while your account is active and for 5 years after closure.
– Transaction Data: Retained for 7 years for financial compliance.
– Communication Data: Retained for 2 years for customer service follow-ups.
– Preference Data: Updated continuously as preferences change or consent is withdrawn.

Once the applicable retention period has ended, we securely erase or anonymize your information.

9. Cookie Policy

The Website utilizes cookies and similar tracking technologies:

– Essential Cookies: Enable core functions such as navigation and access to secure areas.
– Functional Cookies: Remember user settings and preferences.
– Analytics Cookies: Help us understand user behavior to improve website functionality.
– Performance Cookies: Monitor system performance, load times, and technical errors.

Cookies may be set by us or by third-party service providers on our behalf, such as analytics or marketing partners.

10. Cookie Management & GDPR/CCPA Compliance

You have full control over your cookie preferences. You may:

– Accept or reject non-essential cookies via the cookie management banner.
– Modify your cookie settings at any time via browser preferences.
– Withdraw consent for cookie use without affecting the lawfulness of processing prior to withdrawal.

Under CCPA, residents of California have rights similar to the GDPR and may request:

– A notice of categories of personal information collected
– Disclosure of personal information
– Deletion of collected data
– Opt-out from the sale or sharing of personal data (note: culiacanturismo.com does not sell personal data)

11. Children’s Privacy

Culiacanturismo.com is not intended for users under the age of 13. We do not knowingly collect personal information from children under this age. If you believe we have inadvertently collected data from a child under 13, please contact us immediately at [email protected] and we will take appropriate steps to delete the data.

12. Policy Updates

We may update this Privacy Policy from time to time to reflect changes in our operations, legal obligations, or industry standards. We encourage you to periodically review this page to stay informed about how we are protecting your data. Where material changes are made, we will notify registered users and post a notice prominently on the Website.

13. Contact Us

If you have questions or concerns regarding this Privacy Policy or our data handling practices, please contact our privacy team:

Email: [email protected]
Website: https://culiacanturismo.com

We are committed to resolving privacy-related concerns promptly and transparently.

We take your privacy seriously, and culiacanturismo.com operates in compliance with the GDPR, CCPA, and other applicable privacy laws. If you need further clarification regarding your personal data, do not hesitate to reach out to us.