GDPR

Privacy policy

Last updated: 2026-06-03

AM Radices AB (reg. no. 559300-3071) is the data controller for personal data processed via radices.se. We process your data in accordance with the EU General Data Protection Regulation (GDPR).

Data controller

AM Radices AB, reg. no. 559300-3071. Contact: info@radices.se. GDPR enquiries: faktura@radices.se.

Data we collect

Booking: name, email, phone number, company (optional), message, check-in date, check-out date, number of guests. Payment: handled entirely by Stripe — we never store card details. Calendar sync (iCal): dates only, no personal data shared externally. Website: language preference and cookie consent are stored in your browser (localStorage).

Purpose and legal basis

Fulfilling the booking contract (Art. 6(1)(b) GDPR). Bookkeeping obligations under Swedish accounting law (Art. 6(1)(c) GDPR). Responding to enquiries (legitimate interest, Art. 6(1)(f) GDPR).

Recipients

Stripe (payment service, EU/US — Standard Contractual Clauses). Lovable Cloud / Supabase (EU hosting). Email provider for booking confirmations and notifications. We never sell your data to third parties.

Retention

Booking data: 7 years (accounting law). Enquiries without booking: 12 months. Account information: until the user requests deletion. Cookie consent: 12 months.

Your rights

You have the right to request access, rectification or erasure of your data, as well as data portability and restriction of processing. You may withdraw consent at any time. Complaints may be filed with the Swedish Authority for Privacy Protection (IMY), www.imy.se.

Cookies

We only use necessary cookies / localStorage for session, language preference and consent. No third-party tracking cookies are used.

Contact

For data protection enquiries, contact faktura@radices.se.