
Privacy Notice
1. DATA CONTROLLER IDENTIFICATION
In compliance with Regulation (EU) 2016/679 (GDPR) and Organic Law 3/2018, on the Protection of Personal Data and Guarantee of Digital Rights (LOPDGDD), users are informed that the personal data collected through the website www.soulofasiatravel.com will be processed by:
Data Controller:
SOUL OF ASIA TRAVELS, S.L.
Tax ID (NIF): B-21892732
Address: Camino Moncada 96, 4º, 20, 46025 Valencia (Spain)
Email: eutravellers@soulofasiatravels.com
2. PURPOSES OF DATA PROCESSING
Users' personal data will be processed for the following purposes:
-
To manage information and contact requests made through the website, email, or contact forms.
-
To manage the booking, contracting, and invoicing of the tourism services offered.
-
To send communications related to the services contracted (confirmations, travel notices, changes, incidents, etc.).
-
To comply with legal obligations in tax, accounting, administrative, or tourism matters.
-
To send, only with prior consent, promotional or commercial information about SOUL OF ASIA’s products, services, or activities.
Your data will not be used for purposes other than those stated above.
3. LEGAL BASIS FOR PROCESSING
The processing of personal data is based on the following legal grounds:
-
Performance of a contract (Art. 6.1.b GDPR): for managing the contracting of travel and tourism services.
-
Explicit consent (Art. 6.1.a GDPR): for sending marketing communications, where applicable.
-
Compliance with legal obligations (Art. 6.1.c GDPR): particularly in accounting, tax, tourism, and safety matters.
-
Legitimate interest (Art. 6.1.f GDPR): for fraud prevention and service quality improvement, provided it does not override user rights.
4. DATA RECIPIENTS
Personal data will not be disclosed to third parties except in the following cases:
-
When necessary for the provision of contracted services (e.g., accommodation, transport, insurance providers).
-
To financial institutions for payment processing.
-
To public administrations and competent authorities where there is a legal obligation.
-
To data processors who provide services to SOUL OF ASIA under a data processing agreement in accordance with Article 28 of the GDPR.
No international data transfers will be made unless required by the destination of the trip and strictly necessary for the performance of the contract (e.g., communicating with providers or hotels located in third countries). In such cases, appropriate safeguards will be adopted in accordance with Articles 44 et seq. of the GDPR.
5. DATA RETENTION PERIODS
Personal data will be retained for the following periods:
-
For as long as necessary to fulfill the purpose for which they were collected.
-
While legal or contractual obligations exist that justify their retention (e.g., tax requirements).
-
For marketing purposes, until the user withdraws their consent or objects to the processing.
Once the relevant time limits have expired, data will be securely deleted, unless legally required to be kept in a blocked state.
6. USER RIGHTS
Users may exercise their data protection rights at any time, including:
-
Right of access: to know what personal data SOUL OF ASIA processes.
-
Right to rectification: to correct inaccurate or incomplete data.
-
Right to erasure (“right to be forgotten”): to request deletion when the data is no longer necessary.
-
Right to object: to object to processing under certain circumstances.
-
Right to restrict processing: to request temporary suspension of data use.
-
Right to data portability: to receive and transfer data to another controller.
-
Right not to be subject to automated decision-making, including profiling.
To exercise these rights, the user must send a written request accompanied by a copy of their national ID or equivalent to:
-
Postal Address: Calle Maestro Ripollés, 13-3º-A, 12003 Castellón (Spain)
In addition, the user has the right to lodge a complaint with the Spanish Data Protection Agency (AEPD) if they believe their rights have been violated:
www.aepd.es
7. SECURITY MEASURES
SOUL OF ASIA has implemented appropriate technical and organizational security measures to protect personal data from unauthorized access, loss, alteration, or misuse, in accordance with the GDPR’s principle of proactive responsibility and Article 32 of the Regulation.
8. MINORS' POLICY
SOUL OF ASIA’s services are not intended for minors under 16 years of age, without the express authorization of a parent or legal guardian. If data is inadvertently collected from minors without such consent, it will be deleted immediately.
9. CHANGES TO THIS PRIVACY POLICY
SOUL OF ASIA reserves the right to modify this Privacy Policy at any time to adapt it to new legal or jurisprudential developments. Users are advised to consult this page periodically.