Steps prior to entering into a contract or our legitimate interest in responding to your communication.
GDPR
Privacy information.
We use personal data only to communicate, prepare or provide services and meet our legal obligations.
Last updated: 3 August 2026Data controller
DADEXtravel.com s.r.o.
Konvalinková 6395/3, 900 27 Bernolákovo
Company ID: 50 253 905
Privacy enquiries and data-subject requests: business@dadextravel.com
Data we process
- name, company and professional role,
- email, phone and other contact details,
- the content of an enquiry and subsequent communication,
- route, indicative dates and approximate traveller count if provided,
- data required to prepare or provide a travel service if supplied later,
- basic technical and security data associated with visiting the website.
Do not include identity-document numbers, payment card details or sensitive personal data in the initial contact form.
Purposes and legal bases
Performance of a contract and related communication.
Compliance with legal obligations.
Our legitimate interest in protecting the website, services and users.
Business contact form
The form records the enquiry in structured storage connected to DADEXtravel hosting so that the initial contact is not lost. The enquiry is then available only to authorised users in the internal DADEXtravel CRM section. It does not create a public profile or marketing account. We record the submission time, language, contact details, selected enquiry type and travel context you provide.
To limit abuse, we use a short-lived one-way technical key. The raw IP address is not stored in the enquiry record. Initial non-contractual communication is retained for no longer than three years; once the configured period expires, the record and its internal history are automatically removed unless a contract or legal claim requires longer retention.
Recipients
Data may be processed by authorised staff and contracted providers of IT, hosting, email, accounting or legal services, always only to the extent needed. For a travel service, data may be provided to an airline, accommodation provider, insurer, reservation system or another supplier where necessary to deliver the service.
Where a recipient is outside the European Economic Area, a transfer takes place only where an appropriate legal mechanism under the GDPR is available.
Retention
General non-contractual communication is retained for no longer than three years after the last contact unless longer retention is needed to protect legal claims. Contractual, accounting and tax records are kept for the periods required by law. Data no longer required is deleted or anonymised.
Your rights
You may request access, rectification, erasure or restriction, object to processing based on legitimate interests and, where the conditions apply, request data portability. Where processing is based on consent, you may withdraw it at any time.
Send a request to business@dadextravel.com. You may also lodge a complaint with the Office for Personal Data Protection of the Slovak Republic, Galvaniho 7/B, 821 04 Bratislava, statny.dozor@pdp.gov.sk.
Automated decision-making
We do not use solely automated decision-making in handling contact enquiries where that decision would have legal or similarly significant effects.