Personal Data Processing Policy
1. General Provisions
1.1. This personal data processing policy has been prepared in accordance with the requirements of Federal Law No. 152-FZ of July 27, 2006, "On Personal Data" and determines the procedure for processing personal data and measures to ensure their security taken by Tratato Co.,Ltd. (hereinafter referred to as the Operator).
1.2. The Operator considers the observance of human and civil rights and freedoms in the processing of personal data, including the protection of the right to privacy, personal and family secrets, as the most important goal of its activities.
1.3. This Privacy Policy applies to all information that the Operator may receive about visitors to the website: https://tisland.travel.
1.4. Within the framework of this Policy, the User's personal information means:
- Personal data that the User provides independently during registration or in the course of using services, including mandatory data.
- Data automatically transmitted to Site services when using software installed on the User's device, such as IP address, cookie data, browser information, technical characteristics, date and time of access, and addresses of requested pages.
1.5. The Operator may process the following User personal data: full name, date of birth, phone number, email address, passport data.
1.6. Processing of personal data is based on the following principles: lawfulness and fairness; limitation to specific purposes; accuracy and relevance; storage no longer than necessary.
2. Purposes of Personal Data Processing
2.1. The Site collects and stores personal data necessary for providing services or fulfilling agreements with the User.
2.2. Personal data is processed for the following purposes:
- User identification and authorization;
- Preparation, conclusion, and execution of civil law contracts;
- Marketing of goods, works, and services;
- Advertising activities with User consent;
- Site usage analysis and improvement;
- Other purposes specified in the Policy and its appendices.
3. Conditions for Personal Data Processing
3.1. Processing is carried out with the consent of the data subject, unless otherwise provided by federal law.
3.2. The Operator may entrust data processing to another person with the data subject's consent, ensuring compliance with legal requirements.
3.3. The Operator may transfer personal data to third parties when: the User has consented; transfer is necessary for the service or contract; or transfer is required by law.
3.4. The Operator takes organizational and technical measures to protect data from unauthorized access, destruction, alteration, blocking, copying, and distribution.
3.5. The Operator undertakes to notify the User of any loss or disclosure of personal data within 3 business days.
4. Rights and Obligations of Personal Data Subjects
4.1. Personal data subjects have the right to receive information about data processing, request clarification, blocking, or destruction of data, and appeal actions or inactions of the Operator.
4.2. Data subjects are obligated to provide accurate data and report changes to their data.
4.3. Persons who provide false data about themselves or others without their consent are liable in accordance with the law.
5. Principles of Personal Data Processing
5.1–5.7. Data processing is carried out on a legal basis, limited to specific and legitimate purposes, with only relevant data processed, ensuring accuracy and storing data no longer than necessary for processing purposes.
6. Dispute Resolution
6.1. Filing a claim is mandatory before going to court.
6.2. The recipient of the claim must respond within 7 calendar days.
6.3. Disputes not resolved through the claims process shall be referred to the court in accordance with the legislation of the Russian Federation.
7. Conditions for Personal Data Processing
7.1–7.5. Data processing is carried out with consent, for contract execution, legal obligations, protection of legitimate interests, or in cases provided by the legislation of the Russian Federation.
8. Procedure for Personal Data Processing
8.1–8.7. Data security is ensured through legal, organizational, and technical measures. The Operator takes all necessary measures to exclude unauthorized access. Personal data is transferred to third parties only with consent or as required by law. The User may update or withdraw consent to data processing at any time by contacting the Operator at e-mail@tisland.travel.
9. Confidentiality of Personal Data
9.1. The Operator and other persons who have gained access to data are obligated not to disclose or distribute personal data without the consent of the data subject, except in cases provided by federal law.
10. Final Provisions
10.1–10.7. The User may seek clarification on data processing issues by emailing the Operator at e-mail@tisland.travel. All Privacy Policy changes will be reflected in this document. The current version of the Policy is available at: https://tisland.travel.