1. Data controller
Christine Zürcher, The Alpine Chalet, Maurersweide 19, 3703 Aeschi bei Spiez, Switzerland, is responsible for processing personal data in connection with our holiday apartment.
This notice is based on the Swiss Federal Act on Data Protection (FADP). Where the European General Data Protection Regulation applies to processing, we also observe its requirements.
2. Visiting the website
Hostinger hosts this website and processes IP addresses, requested URLs, times and browser information for delivery and security. The hosting server is in France and website backups are in Lithuania. Hostinger CDN is also used for worldwide delivery.
Accommodation photos, styling and scripts are delivered with the website. We have not added our own advertising or analytics trackers or external fonts. Maps and review platforms are plain links and are not embedded when the page loads.
3. Contact and email
We use Hostinger Business Email. Hostinger and its service providers process messages, contact details and delivery information. Details of these services and subprocessors are available in the provider links below. Email links open your own email application; this website has no contact form.
Hostinger Privacy · Hostinger Data Processing Addendum
5. Airbnb, Booking.com and external links
When you open external links, the privacy notices of those providers apply. When you book through Airbnb or Booking.com, these platforms process your data under their own responsibility and send us the information needed for your stay. Ratings shown here are a dated snapshot, not live embedded review widgets.
6. Purposes and recipients
We use personal data to answer enquiries, process bookings, provide your stay and meet legal obligations such as guest registration and tourist taxes. Where necessary for these purposes, booking and IT providers, competent authorities or tourism offices receive the required information. We do not sell personal data.
7. Processing abroad
Data is processed outside Switzerland, notably in France for hosting, Lithuania for backups, Germany for Smoobu, and the EU and United Kingdom for SMTP delivery. International hosting, CDN and email providers may use further recipients abroad. Transfers to countries without adequate protection require appropriate safeguards, such as recognised standard contractual clauses, or statutory exceptions. Hostinger describes its transfer arrangements and subprocessors in its Data Processing Addendum. You can ask us about the recipients and safeguards used for your data.
Hostinger Privacy · Hostinger Data Processing Addendum
8. Retention and security
We retain enquiry and booking data for as long as needed for processing, contract performance and legal obligations, then delete or anonymise it. Wi-Fi registration emails are deleted 365 days after the stay unless a specific incident or legal obligation requires longer retention. Providers also maintain their own technical security and delivery logs. The website uses HTTPS; absolute security of internet communication cannot be guaranteed.
9. Your rights
Subject to applicable law, you may request access, correction and deletion and, where applicable, delivery or transfer of your data. You may withdraw consent for the future. Legal obligations may prevent immediate deletion. Please address requests to the controller named above.
You may also contact the Federal Data Protection and Information Commissioner (FDPIC). Where the GDPR applies, its rights to object, restrict processing and lodge a complaint also apply in particular.
10. Changes
We update this notice when our processing activities or services change. The version published on this website applies.
11. Guest Wi-Fi and registration notifications
For Wi-Fi registration notifications we process the name, email address, device MAC address, terms status supplied by the portal and the time. These are sent through SMTP2GO (Sand Dune Mail Ltd., EU/UK SMTP service) to our internal Hostinger mailbox. The purpose is guest Wi-Fi management and documentation, not advertising. A notification is not independent proof of identity or consent. The mailbox retention period is 365 days after the stay. Temporary cryptographic check values protect against abuse and duplicates; hourly cleanup removes expired records. A necessary session cookie enables status messages. The original URL redirect may leave guest data in server logs; after processing it is removed from the displayed address. This page does not grant internet access.