Privacy Policy
Detailed information on how fayth-moul.com collects, processes, and protects your personal data in full compliance with GDPR and Spanish LOPD-GDD.
-
Article 1
Data Controller & Scope of Policy
This Privacy Policy applies to the digital portal fayth-moul.com (hereinafter referred to as "the Website", "we", "us", or "our"). The Data Controller responsible for data processing on this website operates in full compliance with Regulation (EU) 2016/679 of the European Parliament (General Data Protection Regulation or GDPR) and Spanish Organic Law 3/2018 (LOPD-GDD).
This policy governs the processing of personal data gathered when users access informational pages, use cruise inquiry calculators, or submit contact requests regarding the cruise ship MSC World Europa.
-
Article 2
Categories of Personal Data Collected
We may collect and process the following categories of data:
- Identification & Contact Data: First name, last name, email address, telephone number, and communication preferences submitted through inquiry forms.
- Cruise Preference Data: Preferred departure port (e.g. Barcelona), travel season, cabin category, estimated guest count, and notes submitted in planning tools.
- Technical & Connection Data: IP address, browser type and version, operating system, time zone settings, referral URLs, and pages visited.
- Interaction & Analytics Data: Aggregated information regarding page dwell time, link clicks, and navigation paths.
-
Article 3
Legal Bases for Data Processing
Under Article 6 of the GDPR, we process personal data under the following legitimate legal bases:
- Consent (Art. 6(1)(a) GDPR): Explicit consent provided when submitting inquiry forms, subscribing to communications, or accepting optional cookies.
- Pre-contractual Measures (Art. 6(1)(b) GDPR): Processing inquiries and cruise quotation requests initiated by the user.
- Legitimate Interests (Art. 6(1)(f) GDPR): Maintaining website security, preventing abuse, diagnosing server errors, and improving content quality.
- Legal Obligations (Art. 6(1)(c) GDPR): Retaining records where mandated by European Union or Spanish statutory provisions.
-
Article 4
Purposes of Data Processing
Personal data collected through the Website is utilized exclusively for:
- Responding to user inquiries, itinerary requests, and questions regarding MSC World Europa.
- Providing customized cruise fare estimations based on user-selected parameters.
- Delivering technical functionality, preventing fraudulent submissions, and optimizing server response times.
- Complying with regulatory obligations and defending legal rights if required.
-
Article 5
Cookies & Tracking Technologies
The Website utilizes technical session cookies necessary for core navigation and form security, as well as optional aggregated analytics cookies. Users retain full control over cookie preferences through our on-site cookie banner and browser configurations. For comprehensive details, please consult our dedicated Cookie Policy.
-
Article 6
Third-Party Links & External Booking Platforms
The Website provides external hyperlinks directing users to third-party web destinations, including the official booking portal of MSC Cruises (msccruises.com / msccruceros.es). When clicking external links, users exit our domain and are subject to the independent privacy terms and data governance of those respective third parties.
-
Article 7
Data Sharing & Third-Party Processors
We do not sell, rent, or trade personal data to third parties. We may engage trusted data processing vendors (e.g. secure cloud hosting providers, DNS providers, and email transmission services) strictly bound by Data Processing Agreements (DPAs) pursuant to Article 28 GDPR.
-
Article 8
International Data Transfers
Whenever data is processed outside the European Economic Area (EEA), such transfers are governed by appropriate safeguards recognized by the European Commission, such as Standard Contractual Clauses (SCCs) or adequacy decisions under Article 45 GDPR.
-
Article 9
Data Retention Periods
Personal data is retained only for the duration necessary to satisfy the purpose for which it was gathered. Contact and cruise inquiries are retained for up to twelve (12) months following resolution, unless ongoing legal retention periods apply, after which data is securely erased or anonymized.
-
Article 10
User Rights Under GDPR & LOPD-GDD
European and Spanish residents have the following statutory data rights:
- Right of Access (Art. 15 GDPR): Request confirmation and copy of personal data held.
- Right to Rectification (Art. 16 GDPR): Correct inaccurate or incomplete records.
- Right to Erasure / 'To be Forgotten' (Art. 17 GDPR): Request deletion of data.
- Right to Restriction of Processing (Art. 18 GDPR): Limit specific processing activities.
- Right to Data Portability (Art. 20 GDPR): Receive data in structured, machine-readable format.
- Right to Object (Art. 21 GDPR): Object to processing based on legitimate interests.
- Right to Withdraw Consent: Revoke previously granted consent at any time.
-
Article 11
Technical & Organizational Security Measures
We implement industry-standard cybersecurity controls including SSL/TLS encrypted data transmission (HTTPS), firewall protection, input sanitization, and access controls to safeguard data from accidental loss, disclosure, or unauthorized alteration.
-
Article 12
Age Limitations & Protection of Minors
This Website is intended for general adult audiences and adults seeking cruise travel information. Inquiries relating to onboard casino gaming are strictly restricted to individuals aged 18 or older. We do not knowingly collect personal information from individuals under 16 years of age without verifiable parental consent.
-
Article 13
Policy Modifications & Updates
We reserve the right to modify this Privacy Policy periodically to reflect technological advances, legislative updates, or changes in operational practices. The "Last Updated" date indicates the effective date of the latest revision.
-
Article 14
Supervisory Authority & Contact Inquiries
To exercise any of your data rights or to submit privacy-related questions, please use our Contact Page. If you believe your data has been handled in violation of applicable laws, you retain the right to lodge a complaint with the Spanish Data Protection Agency (Agencia Española de Protección de Datos - AEPD, www.aepd.es).