Privacy Policy

Information on the processing of personal data

Privacy Policy

Transparency

Privacy Policy

This notice explains how La Perla processes personal data collected through the website, booking requests, online payments and communications sent by users.

Last updated: July 29, 2026

Data controller

The data controller is La Perla, reachable at the property in Viale degli Alpini, snc, 67038 Scanno (AQ), Italy. For privacy-related questions you can write to laperla.scanno@gmail.com or use the contact details shown on the Contacts page.

Data collected

We may process identification and contact data such as name, email address, phone number and the details needed to manage booking and stay requests: selected room, check-in and check-out dates, number of guests, notes, pricing, booking status and payment status.

During browsing, technical data may also be processed, such as IP address, user agent, request date and time, session information and technical preferences strictly necessary for the website to function.

For online payments, the website uses Stripe Checkout: the website does not store full card details, but it may retain technical session or payment identifiers required to match the payment with the booking.

Purposes of processing

Data is processed to reply to information requests, manage bookings, organise availability and pricing, process payments, send operational communications and protect the security of the website and related services.

In the admin area, some data is also processed for two-factor authentication and for the administrative management of bookings.

Legal basis

Processing may be based on pre-contractual steps requested by the data subject, performance of a contract, compliance with legal obligations, the controller's legitimate interest in the security and proper operation of the service or, where required, the user's explicit consent.

Data retention

Data is kept for the time needed to manage the request or booking and, where applicable, for the periods required by civil, tax, accounting or rights-protection obligations.

Temporary codes used for admin login verification are stored only for the time strictly necessary to complete the authentication flow.

Disclosure and third-party tools

Data may be processed by providers supporting the website or service delivery, for example hosting, databases, transactional email, online payments or interactive maps. Services currently used include Vercel for application hosting, Neon for the database, Stripe for payments, Resend for operational emails and Google Maps for the interactive map.

Payment data is handled through Stripe's secure interface and is not stored on the website in full form. The use of external services may involve additional processing governed by their own privacy notices.

Transfers to third parties and non-EU countries

Some technical providers used by the website may process personal data outside the European Economic Area or through internationally distributed infrastructures. In those cases, processing takes place according to the terms and safeguards made available by the relevant providers.

Data subject rights

You may exercise the rights available under applicable law, including access, rectification, erasure, restriction of processing, objection and, where applicable, data portability.

You also have the right to lodge a complaint with the competent supervisory authority.

Cookies and external content

Choose how third-party content should be displayed

We only use technical cookies for the website to function. The interactive Google Maps content is loaded only if you consent to optional external content.

You can accept everything, keep necessary cookies only, or customise your choice. Read the Cookie Policy