Hotel Lirak
Privacy Policy
1. Data controller
Hotel Lirak, Bulevard Iliria 10, 1200 Tetovo, North Macedonia, is the controller of your personal data ("we"). Contact: no-reply@lirakhotel.mk, +389 44 338 578. We process personal data in line with the Law on Personal Data Protection of North Macedonia and, where applicable, the EU General Data Protection Regulation (GDPR).
2. What we collect and why
- Booking data — name, email, phone, stay dates, room and rate, special requests, payment status. Purpose: performing the accommodation contract. Legal basis: contract.
- Check-in data — ID/passport details collected at reception, as required by registration law. Legal basis: legal obligation.
- Payment data — card payments are processed by Stripe. We never see or store full card numbers; we keep only the payment status and reference. Legal basis: contract.
- Restaurant / sauna / event reservations and enquiries — contact details and reservation info. Legal basis: contract / pre-contractual steps.
- Newsletter and offers — email address, only if you subscribe or opt in at checkout. Legal basis: consent, withdrawable at any time via the unsubscribe link or by contacting us.
- Technical data — server logs (IP address, time, page) kept for security. Legal basis: legitimate interest in running a secure website.
3. Cookies
The website uses strictly necessary cookies (session, security, language and currency preferences, and remembering your cookie choice). These are required for the site to function. If we introduce analytics or marketing cookies, they will be used only with your consent via the cookie banner, where you can also refuse them.
4. Who receives your data
- Stripe (payment processing) — when you pay online by card.
- Our hosting provider — the website and its database are hosted on servers operated by our hosting provider under a data-processing agreement.
- Email delivery provider — to send booking confirmations and, with your consent, offers.
- Public authorities — guest registration data where the law requires it.
We do not sell your personal data. Transfers outside North Macedonia / the EEA occur only with appropriate safeguards (such as standard contractual clauses).
5. How long we keep data
- Booking and invoicing records — for the period required by tax and accounting law.
- Guest registration records — for the period required by registration law.
- Newsletter data — until you unsubscribe.
- Enquiries — up to 24 months after the last contact.
6. Your rights
You have the right to access, rectify and erase your data, restrict or object to processing, data portability, and to withdraw consent at any time (without affecting prior processing). To exercise these rights, email no-reply@lirakhotel.mk. You may also lodge a complaint with the Personal Data Protection Agency of North Macedonia (azlp.mk) or your local supervisory authority.
7. Security
We use HTTPS across the site, restrict access to personal data to staff who need it, and apply technical and organisational measures appropriate to the risk.
8. Changes
We may update this policy. The current version is always available on this page.
Last updated: 26 July 2026