Legal
This policy explains how we handle the personal data of guests and of anyone who contacts us, when you use corfuseaview.com, send us a message or book directly. It gives the information required by Articles 13 and 14 of the General Data Protection Regulation (EU) 2016/679 (GDPR).
Mario Baratta and Anna Zanella
Via Sperone Speroni 66, 35141 Padova, Italy
Email: albertoalexandre06@icloud.com · Tel/WhatsApp: +39 334 733 1454
Mario Baratta and Anna Zanella let the apartment jointly as private individuals and are the controllers of your personal data. Alberto answers enquiries and manages bookings on their behalf. For any question about your data, write to the email address above. We have not appointed a data protection officer, as the law does not require one for a letting of this size.
We collect only what you give us and what is needed to run the letting.
Enquiries — the contact form, email, WhatsApp or phone
Direct bookings
Legal and tax obligations
Security and fraud prevention
Visiting the website. We use no analytics, advertising or tracking of any kind. To deliver the pages, Cloudflare necessarily processes your IP address and technical request data (legitimate interest, Art. 6(1)(f)). Our fonts and map software are stored on this website itself, so loading a page sends nothing to Google or to any other font or code library. Only the map on the Location page loads map images from CARTO, which therefore sees your IP address when the map is displayed.
Airbnb and Booking.com receive only the dates of a direct booking, so they can block them in their calendars — never your name or contact details. We never sell your data and never use it for marketing.
Stripe, Cloudflare and Resend may process data in the United States. Each is certified under the EU–US Data Privacy Framework, which the European Commission recognised as providing adequate protection on 10 July 2023, and each also relies on the Commission's Standard Contractual Clauses. Apple and CARTO may also use servers outside the EEA, under Standard Contractual Clauses. You can ask us for details of these safeguards.
This website sets no cookies and stores nothing in your browser — no analytics, no advertising, no tracking. We checked this on the live site in September 2026. That is why there is no cookie banner: none is needed.
Stripe's checkout page, which is on Stripe's own website, uses cookies that are necessary for the payment and for fraud prevention, as described in Stripe's cookie policy. If we ever add a non-essential cookie to this website, we will ask for your consent first.
Sending an enquiry is voluntary, but we need an email address or phone number to reply. To book, we need your name, email address and payment: without them we cannot conclude or perform the contract. Some details of the stay are then required by Greek law, as explained in section 2.
We make no decisions about you by automated means and do no profiling. Stripe screens card payments for fraud automatically, which can occasionally lead to a payment being declined; if that happens, contact us and we will look at it personally.
Under the GDPR you have the right to:
Write to us at albertoalexandre06@icloud.com. We reply free of charge within one month and may first ask you to confirm your identity. Records we must keep by law cannot be erased until their retention period ends.
If you think we have handled your data wrongly, please tell us first so we can put it right. You also have the right to lodge a complaint with a data protection supervisory authority — in Greece, where the apartment is:
Hellenic Data Protection Authority
Kifissias 1-3, 115 23 Athens, Greece
Tel. +30 210 6475600 · contact@dpa.gr · www.dpa.gr
You may instead complain to the supervisory authority of the EU country where you live or work.
Version 2.0 · Last updated September 2026.