Privacy policy

INTRODUCTORY PROVISIONS

This Privacy Policy applies to our website and mobile app dedicated to SimpleFerry d.o.o. for consumers in Croatia and located at Molindrio 10, Poreč, available at www.simpleferry.com (the ‘Website’) where we, SimpleFerry, collect certain personal information. Please read this Privacy Policy carefully as it contains important information to help you understand our practices regarding any personal information that you give to us or that we collect otherwise in the context of the Website (‘Personal Data’). SimpleFerry (‘we’) are the controller of the Personal Data collected and processed.

We respect your privacy, and we are committed to keeping your Personal Data secure and managing it in accordance with our legal responsibilities under applicable data protection laws.

WHAT PERSONAL DATA WE COLLECT AND HOW WE USE YOUR PERSONAL DATA?

You can use the majority of our Website without being required to provide any Personal Data to us. For certain services and purposes of the Website, you need to provide Personal Data to us for us to be able to process your request. In addition to the information you are required to provide to us, we collect certain information when you visit our Website. We have specified the Personal Data we collect, the purposes for which we use the Personal Data and how long we will generally retain your Personal Data:

1. INFORMATION ABOUT YOUR VISIT TO AND USE OF OUR WEBSITE:

we collect certain information when you visit our Website, such as your which web pages you visit, the name of your computer, and type of internet browser, clicks and views. The information about your use of our Website and services enables us to build segments, which are groups of website visitors or customers with a number of common characteristics such as age group, gender or region. We will likely add you to one of our segments. Segments are used by us to customize the Website and to e.g. change the order of search results or where we place certain offers so you are more likely to see these. We use this Personal Data as it is necessary in our legitimate interests to do so to be able to improve the quality of our website. We will retain the Personal Data for up to 1 year.

2. MAINTENANCE AND OPTIMISATION OF OUR WEBSITE:

Your Personal Data will also be used for maintenance and analysis of our Website to solve performance issues, to improve the availability and to secure the website against fraud. Our use of your Personal Data for these purposes is necessary in our legitimate interests and will be retained for a maximum period of 1 year.

HOW WE SHARE YOUR PERSONAL DATA

We may need to share Personal Data with third parties to help us provide services and products to you and to run our Website. These third parties are: SimpleFerry group companies for the purpose of storing Personal Data processed via the Website, due to shared IT systems. In case SimpleFerry sells all or some of the assets or shares of a SimpleFerry group company to which Personal Data was transferred to a third party, your Personal Data may be provided to this third party.

SECURITY OF PERSONAL DATA

We will take appropriate technical, physical and organizational measures to protect the Personal Data collected through the Website from misuse or accidental, unlawful or unauthorized destruction, loss, alteration, disclosure, acquisition or access, that are consistent with applicable privacy and data security laws and regulations. However, no internet-based site can be 100% secure and we cannot be held responsible for unauthorised or unintended access that is beyond our control. Our Website may contain links to other websites. We are not responsible for the privacy practices, content or security used by such other websites, which shall not be governed by this Privacy Policy. We advise you to always carefully read the privacy policies on these other websites.

STATEMENT ON THE PROTECTION, COLLECTION AND USE OF PERSONAL DATA

SIMPLE FERRY d.o.o. is committed to protecting the personal data of customers by collecting only the necessary and basic information about customers/users required to fulfill our obligations. We inform customers about the ways in which the collected data is used and regularly provide customers with the option to choose how their data is used, including the option to decide whether or not they want their name removed from lists used for marketing campaigns. All customer data is strictly protected and accessible only to employees who need it to perform their duties. All employees of SIMPLE FERRY d.o.o. and business partners are responsible for adhering to the principles of privacy protection.

RETENTION OF YOUR PERSONAL DATA

We will retain your Personal Data for as long as legally required or for as long as necessary to provide you with any requested services or for any of the other purposes listed in this Privacy Policy. The specific retention term are listed in this Privacy Policy for each of the relevant purposes. We will take reasonable steps to destroy or de-identify Personal Data we hold if it is no longer needed for the purposes set out above or after the expiration of the defined retention term.

COOKIES

A major part of the information referred to in this Privacy Policy is collected via our use of cookies and similar techniques. Cookies are small text files containing small amounts of information which are downloaded and may be stored on your user device, e.g. your computer, smartphone or table. These cookies and similar techniques are sometimes necessary to remember your account settings, language and country, but also enable us to measure and analyse your behaviour on our Website and for showing you personalised advertisements on our Website or on third party websites. Where required, you will be asked for consent to our use of cookies. To view more information on what cookies we use and how we use them please review our separate Cookie Policy.

CHILDREN’S PRIVACY

The Website is not intended for use by individuals under the age of 18 (or the applicable legal age for consuming the products in question). We do not knowingly collect Personal Data from individuals under the age of 18.

YOUR RIGHTS TO ACCESS, RECTIFICATION, DELETION, RESTRICTION AND DATA PORTABILITY

You have the right to request an overview of your Personal Data processed by or on behalf of us. You have the right to have your Data rectified, deleted or restricted (as appropriate). You can exercise this right by contacting the info@simpleferry.com. Please note that requests that do not meet the requirements set out by applicable law or SimpleFerry guidelines may be requested to be re-issued or ultimately denied and that certain Personal Data may be exempt from such access, rectification and deletion requests pursuant to applicable data protection laws or other laws and regulations.

You have the right to receive the Personal Data that you have provided to us in a structured, commonly used and machine-readable format, and in certain circumstances we will, at your request, transmit your Data to another controller where this is technically feasible.

YOUR RIGHT TO OBJECT

You also have a right, in certain circumstances, to require us to stop processing your Personal Data, but where we have compelling legitimate grounds, we will continue processing your Personal Data. However, you have the right to object to our use of your Personal Data for direct marketing purposes, including profiling, and when you do so, we will accommodate your request. Where you have provided consent to our use of your Personal Data, you have the right to withdraw your consent without this effecting the lawfulness of our use of this Data before your withdrawal.

UPDATES

We will keep this Privacy Policy under review and make updates from time to time. Any changes to this Privacy Policy will be posted on our Website page and to the extent reasonably possible, will be communicated to you.

CONTACT

If you have any other question, objection to our use of your Personal Data or a complaint about this Privacy Policy or about our handling of your Personal Data, you can mail info@simpleferry.com. You also have the right to file a complaint with your local data protection authority, Martićeva 14, 10000 Zagreb (www.azop.hr).

Newsletter subscriptions

When you request our newsletter, we store your email address, preferred language, request time and consent version to process your request. We activate marketing only after you confirm through the email link. Our server providers are AWS and Supabase; Resend processes confirmation delivery. Unconfirmed requests expire after seven days. You can withdraw consent through the unsubscribe link; this removes your email from the subscription record immediately. A protected suppression identifier is retained for up to thirty days, then removed. Confirmed subscription details are retained until you unsubscribe. Newsletter consent is separate from your account and can be withdrawn without deleting your account.

Unfinished journeys and passport text

We save the journey details you enter, including travel dates, passenger details, selected options, contact details and your current booking stage, so you can continue after refreshing or returning to the website. These drafts are stored on our servers and linked to your signed-in account or, for guests, an essential secure browser cookie. Drafts expire thirty days after their last update. Expired drafts are removed when journey storage is next accessed or during scheduled maintenance. Local server storage encrypts these drafts at rest. Payment card details are not included in these drafts.

The optional passport text import processes the machine-readable lines in your browser. SimpleFerry does not upload the passport image or send the pasted lines to an external text-recognition service. You review the extracted name and document number before applying them. Once applied, those fields are saved with your journey details.

Journey planning and prices

We use your selected route, travel dates, passenger categories and selected options to request availability and fares from our travel suppliers. A displayed quote is not a reservation or ticket. The current checkout uses test payments. These do not charge your card, reserve a sailing or issue a ticket valid for travel.

Port maps

When you open the port map, your browser requests map images from OpenStreetMap tile servers. Those requests share your IP address, browser headers, our website origin and the map areas displayed. We do not send passenger details, payment details or your typed port search to the tile servers.

Required travel information and emergency contact

Where a ferry supplier requires it, we collect passenger identity-document details and one international emergency phone number for the booking to prepare the requested travel service and allow emergency contact. We check required details for every passenger and each journey leg. The emergency number is not sent to the payment gateway or included in public checkout responses, logs or analytics. The checkout copy is retained only until the checkout expires, at most fifteen minutes, and is removed on subsequent storage access or scheduled cleanup. Journey draft retention described above applies to passenger details saved in your draft. Test payments do not submit a real supplier booking.