Privacy Policy
Highlander Whisky Tours (“we”, “us”, “our”) is committed to protecting and respecting your privacy. This policy explains how we collect, use, and safeguard your personal data when you book a tour, visit our website, or interact with us.
1. The Data We Collect
To provide our whisky tour services, we may collect and process the following information:
Identity Data: Name, title, and date of birth (to ensure compliance with UK alcohol licensing laws).
Contact Data: Email address, telephone number, and billing address.
Financial Data: Payment details (processed securely via PayPal or our merchant bank; we do not store full credit card numbers).
Technical Data: IP address, browser type, and usage data via cookies when you visit our website.
Special Requirements: Information you provide regarding disabilities or dietary requirements to ensure your safety and comfort at distilleries.
2. How We Use Your Personal Data
We only use your data when the law allows us to. Most commonly, we use it for:
Contractual Necessity: To process your booking and communicate tour details.
Legal Compliance: To verify that all guests are 18 or over before serving or providing access to whisky tastings.
Legitimate Interests: To improve our tour routes and respond to your enquiries.
Consent: If you opt-in to our newsletter, we may send you occasional updates about new Highland routes or distillery partner news.
3. Disclosures of Your Personal Data
We do not sell your data. However, we may share your information with:
Partner Distilleries: Only when necessary for guest manifests or pre-booked tasting experiences.
Service Providers: Secure payment processors (e.g., PayPal) and IT/cloud hosting services.
Professional Advisers: Lawyers, auditors, or insurers if required.
Law Enforcement: If required by the laws of Scotland or the United Kingdom.
4. Data Security
We have put in place appropriate security measures to prevent your personal data from being accidentally lost, used, or accessed in an unauthorised way. Access to your personal data is limited to those employees and partners who have a business “need to know.”
5. Data Retention
We will only retain your personal data for as long as necessary to fulfil the purposes we collected it for, including for the purposes of satisfying any legal, accounting, or reporting requirements (typically 6 years for financial records).
6. Your Legal Rights
Under the UK GDPR, you have rights including:
Access: The right to ask us for copies of your personal information.
Rectification: The right to ask us to correct information you think is inaccurate.
Erasure: The right to ask us to erase your personal information in certain circumstances.
Object/Restrict: The right to object to the processing of your data.
To exercise any of these rights, please contact us at [Insert Email Address].
7. Cookies
Our website uses cookies to distinguish you from other users and improve your browsing experience. You can set your browser to refuse all or some browser cookies, but this may affect the functionality of the booking system.
8. Changes to This Policy
We may update this policy from time to time. The “Last Updated” date at the bottom of this page will indicate when changes were made.