Vaulted lobby at Hotel Kaiserhof Anif with reception and staircase

Your trust matters to us

Privacy Policy

This English version is a courtesy translation. The German version is legally binding.

We handle your data with the same care we give our guests. Here you can find out what we process, when and why.

1. Controller

The controller responsible for data processing on this website within the meaning of the General Data Protection Regulation (GDPR / DSGVO) is:

Richard Absenger e.U.
Salzachtal Bundesstraße 135
A-5081 Anif near Salzburg, Austria
Telephone: +43 6246 8920
E-Mail: office@kaiserhof-anif.at
VAT ID: ATU45031807 · Company Register No. (FN) 213874 x, Regional Court of Salzburg (Landesgericht Salzburg)

For all questions concerning data protection and the exercise of your rights, please contact this address directly. A data protection officer has not been appointed, as not legally required.

2. General information

The protection of your personal data is particularly important to us. We process your data solely on the basis of legal provisions (GDPR / DSGVO, Data Protection Act (Datenschutzgesetz), Telecommunications Act (Telekommunikationsgesetz)). This Privacy Policy explains the key aspects of data processing in connection with our website.

You can generally visit our website without providing us with personal data. You disclose data only when you contact us of your own accord – for example, through our enquiry form, by email or by telephone.

3. Hosting and server log files

This website is hosted by Vercel Inc., 340 S Lemon Ave #4133, Walnut, CA 91789, USA. Vercel processes data on our behalf; a data processing agreement pursuant to Art. 28 GDPR (DSGVO) is in place. Delivery takes place via a worldwide content delivery network – visitors from Europe are generally served from European locations. Processing in the USA cannot be excluded and is based on the European Commission's standard contractual clauses.

Each time a page is accessed, technical access data is automatically recorded in what are known as server log files:

Purpose and legal basis: This data is technically necessary to deliver the website to you, ensure its stability and security, and prevent misuse. The legal basis is our legitimate interest in secure and uninterrupted operation (Art. 6(1)(f) GDPR / DSGVO). This data is not combined with other data sources or analysed for advertising purposes.

4. Cookies and local storage

Cookies are used on various pages to simplify use of our website and communication, and to tailor our online presence more closely to your needs. A cookie is a small text file placed on your device by a website. Cookies do not harm your computer and contain no viruses. You can disable cookies at any time in your browser settings.

We use them sparingly. At present, this website stores only the following entries – in your browser's local storage (localStorage), not as traditional cookies. This data is not transmitted to us or to third parties:

Legal basis: For technically necessary storage, Art. 6(1)(f) GDPR (DSGVO) (legitimate interest in a functioning website) in conjunction with Section 165(3) Telecommunications Act 2021 (TKG 2021). For all non-essential categories, we obtain your consent (Art. 6(1)(a) GDPR / DSGVO); without your consent, we do not load the relevant content.

Cookie settings

Here you can . To remove cookies already set, please delete the cookies and website storage in your browser. Instructions can be found in your browser's help pages.

5. Enquiry and reservation forms, contacting us

When you contact us via the enquiry form, by email or by telephone, we process the data you provide – in particular your name, email address, preferred travel period, room category, number of persons and your message – in order to respond to your enquiry and prepare and process your reservation.

Technical note: When you submit the forms on this website – the room enquiry on the home page and the general enquiry form on the contact page – your entries are sent to a function on our hosting (Vercel). It forwards them by email to office@kaiserhof-anif.at and sends a confirmation to the address you provided. For sending email we use the service Resend (Resend, Inc., USA) as processor, with sending via the EU region (Ireland). Where data is transferred to the USA in the process, this relies on appropriate safeguards under Art. 46 GDPR. We do not keep a separate database of enquiries; afterwards the enquiry sits in our email mailbox. If sending ever fails, your own email program opens instead with a prepared message that you send yourself.

Legal basis: Art. 6(1)(b) GDPR (DSGVO) (performance of pre-contractual measures and fulfilment of the accommodation or catering contract) and Art. 6(1)(f) GDPR / DSGVO (legitimate interest in responding to general enquiries).

Storage period: We delete enquiries that do not result in a contract no later than six months after the last communication. We retain data from confirmed bookings for seven years due to commercial and tax-law retention obligations (Section 132 Federal Fiscal Code (BAO), Section 212 Commercial Code (UGB)). The periods under the Salzburg Registration Act (Salzburger Meldegesetz) also apply to guest registration data.

6. Fonts

This website uses the “Poppins” and “Allura” typefaces. We do not integrate these fonts via Google Fonts, but deliver them from our own webspace. As a result, no connection to Google is established when a page is accessed and your IP address is not transmitted to Google.

Both fonts are licensed under the SIL Open Font License 1.1. No cookies are set and no data is transmitted to third parties.

7. Map service and route planning

We do not directly embed a Google Maps map on this website. On our contact page, you will find only a link to route planning. Only when you actively click this link do you leave our website and data is transmitted to Google. Google is then responsible for the processing; Google's terms of use and privacy notices apply: policies.google.com/privacy.

Should we directly embed a map or booking window in future, we will load this content only after your explicit consent via the cookie notice (category “External content”, Art. 6(1)(a) GDPR / DSGVO).

7a. Booking form

On the home page, we embed the booking form from Tourisoft SA / Hotel-Spider, Route de Champ-Colin 18, CH-1260 Nyon, Switzerland. It allows you to check availability and prices and book directly with us.

The form is loaded only after you have consented to the “external content” category in the notice banner. Without your consent, you will see only a notice here, and no connection to Hotel-Spider is established. The legal basis is your consent (Art. 6(1)(a) GDPR / DSGVO in conjunction with Section 165(3) TKG 2021); you can withdraw it at any time via the cookie settings in the footer.

When it is loaded, your browser transmits your IP address to Hotel-Spider, together with usual connection data such as the time, requested file, browser type and operating system. If you enter data in the form and complete a booking, Hotel-Spider processes the information entered (travel period, number of persons, contact details and, where applicable, payment data) on our behalf to transfer the booking to our hotel management system. Switzerland has an adequacy decision from the European Commission.

We provide the jQuery software library required for the form from our own server. No third-party content delivery network is accessed, and no data is transmitted to additional recipients in this respect.

Hotel-Spider privacy notices: hotel-spider.com/de/datenschutz

8. Review platforms

On our home page, we link to our profiles on Google (Google Ireland Limited, Gordon House, Barrow Street, Dublin 4, Ireland) and Tripadvisor (Tripadvisor LLC, 400 1st Avenue, Needham, MA 02494, USA). These are simple text links – we do not embed widgets, scripts or tracking pixels from these providers. Unless you click the links, no data is transmitted to Google or Tripadvisor.

If you follow a link and leave a review there, you do so independently with the relevant platform. The platform operator is then solely responsible for processing your data. We have no influence over this and do not receive any personal data about you from the platforms. Their privacy notices can be found at policies.google.com/privacy and tripadvisor.mediaroom.com.

9. Social media

We have a page on Facebook and Instagram (in each case Meta Platforms Ireland Limited, Merrion Road, Dublin 4, Ireland). We link to these profiles in our footer using a simple icon.

Important: We deliberately use no social media plugins, no “Like” or “Share” buttons, and no embedded timelines. These are solely ordinary links. Accordingly, merely accessing our website does not establish any connection to Facebook or Instagram, and no data is transmitted to Meta.

Only when you click an icon do you reach the respective platform. Meta is responsible for the processing there – jointly with us as joint controllers pursuant to Art. 26 GDPR (DSGVO) for page-view statistics. We receive only anonymised statistics from Meta on the use of our pages. Further information is available at facebook.com/privacy/policy and help.instagram.com.

10. Audience measurement and advertising

This website currently uses no web analytics tools, Google Analytics, conversion tracking, remarketing or advertising networks. No profiling or automated decision-making takes place.

Should we use an analytics tool in future, we will do so only after obtaining your consent via the cookie notice (category “Statistics”, Art. 6(1)(a) GDPR / DSGVO), and it will be described transparently here. Independently of this, you can generally disable Google's advertising cookies at adssettings.google.com and third-party cookies via the Network Advertising Initiative's opt-out page at optout.networkadvertising.org.

11. Recipients of your data

We pass on your data only where this is necessary to provide our services or required by law. Recipients may include:

Your data is not sold or passed on for third parties' advertising purposes.

12. Data security

This website is delivered exclusively via an encrypted connection (TLS/HTTPS). You can recognise this by the lock icon in your browser's address bar. In addition, we take appropriate technical and organisational measures to protect your data against loss, manipulation and unauthorised access.

For security reasons, we do not accept credit card data by telephone or by unencrypted email. Please never send us payment data by email.

13. User consent

When you contact us via our forms, by email or by telephone, we process your details in order to respond to your enquiry and prepare your stay. The legal basis is pre-contractual measures and performance of the contract (Art. 6(1)(b) GDPR / DSGVO), as well as our legitimate interest in responding to enquiries (Art. 6(1)(f) GDPR / DSGVO). Where we obtain your consent – for example, in the notice banner – this is done through an explicit action. You may withdraw consent given at any time with effect for the future – informally by email to office@kaiserhof-anif.at. This does not affect the lawfulness of processing carried out before withdrawal.

14. Your rights

As a data subject, you have the following rights:

To exercise these rights, an informal message to office@kaiserhof-anif.at or a letter to the address above is sufficient. We will respond free of charge and without undue delay, no later than within one month. To protect your security, we may ask you for proof of identity.

Right to lodge a complaint

If you believe that processing of your data breaches data protection law or otherwise infringes your data protection rights, you may lodge a complaint with the supervisory authority:

Austrian Data Protection Authority (Österreichische Datenschutzbehörde)
Barichgasse 40–42, 1030 Vienna
Telephone: +43 1 52 152-0
E-Mail: dsb@dsb.gv.at
Web: www.dsb.gv.at

15. Changes to this Privacy Policy

We update this Privacy Policy whenever our website, the services used or the legal situation changes. The version published on this page applies in each case. Please therefore check the current version before transmitting data again.