How BookMySand complies with the General Data Protection Regulation (GDPR) for EU users
Last Updated: January 10, 2025 | Version 1.0
BookMySand is committed to GDPR compliance for all EU users
As an EU user of BookMySand, you have the following rights under the General Data Protection Regulation (GDPR):
You can request a copy of all personal data we hold about you, including order history, delivery addresses, and account information.
You can update or correct any inaccurate personal data through your account settings or by contacting us.
You can request deletion of your personal data. Go to Settings → Privacy → Delete My Account. We provide a 30-day grace period.
You can request that we limit how we process your data in certain circumstances.
You can download your data in a structured, machine-readable format (JSON) for transfer to another service.
You can object to processing of your data for marketing purposes. You can manage this in Settings → Privacy → Manage Consents.
BookMySand implements appropriate technical and organizational measures to ensure a level of security appropriate to the risk:
We process your personal data based on the following legal bases:
For business customers who process personal data using BookMySand services, we provide a comprehensive Data Processing Agreement (DPA) that outlines:
To request a DPA, please contact: dpo@bookmysand.com
Data Storage Location: AWS Asia Pacific (India) - ap-south-1
If we transfer data outside the EU, we ensure:
To exercise any of your GDPR rights, you can:
Email: dpo@bookmysand.com
Response Time: 30 days (as per GDPR requirements)
If you believe we have not addressed your concerns adequately, you have the right to lodge a complaint with your local data protection authority (supervisory authority).
Find your authority: EDPB Members
Related Documents: