Privacy Policy

Your Privacy Matters to Us

Tamari Resortshttps://tamariresorts.com • Effective Date: August 31, 2026

1. Introduction

Tamari Resorts (“we”, “our”, or “us”) operates the website at https://tamariresorts.com. This Privacy Policy explains how we collect, use, disclose, and protect personal information when you use our services.

2. Scope of This Policy

This Privacy Policy applies to all personal information collected through https://tamariresorts.com and any related applications, services, APIs, or communications provided by Tamari Resorts. It does not apply to third-party websites, products, or services even if they are linked from our platform. By using our services you acknowledge that you have read and understood this policy.

3. Information We Collect

We may collect the following categories of information:

  • Personal Details: Full name, email address.
  • Technical & Usage Data: IP address, device information, usage logs.

This includes information submitted when users create an account or manage their workspace. We may also obtain personal information about you from sources other than you directly, such as business partners, analytics or advertising providers, public sources, or referrals, and combine it with information we collect directly. Where required, we inform you of the categories of such data and its source.

4. How We Use Information

We use personal information to:

  • Provide, maintain, and improve our services;
  • Respond to support requests and communicate about the service;
  • Secure the platform and detect fraud or abuse;
  • Comply with legal obligations;
  • Send marketing and product update communications where permitted by law;
  • Understand usage patterns and improve product performance through analytics.

5. Cookies and Tracking

We use cookies and similar technologies to keep users signed in, remember preferences, and improve site performance. We also use analytics tools to understand feature usage and performance trends.

6. Third-Party Service Providers

We work with trusted third-party service providers to support our operations, such as hosting, analytics, and communications. These providers may process personal information on our behalf subject to contractual and legal safeguards.

7. Data Retention

We retain your personal data only for as long as necessary to fulfill the purposes described in this policy; it is then securely deleted or anonymized.

8. Your Privacy Rights

Depending on where you are located and the laws that apply, you may have the right to:

  • Right of Access: Request a copy of the personal information we hold about you;
  • Right to Rectification: Request correction of inaccurate or incomplete information;
  • Right to Erasure: Request deletion of personal information, subject to legal exceptions;
  • Right to Data Portability: Receive a machine-readable copy of your data where applicable;
  • Right to Object: Object to processing based on legitimate interests or direct marketing;
  • Right to Restriction: Request that we limit how we process your information in certain circumstances;
  • Right to Withdraw Consent: Withdraw consent at any time where we rely on consent as our legal basis.

How to exercise your rights: You may submit a Data Subject Access Request (DSAR) or any other privacy request by emailing us at info@tamariresorts.com. We will acknowledge your request within 5 business days and provide a substantive response within 30 days of receipt (or such shorter period as required by applicable law). In complex cases we may extend this by a further 60 days and will notify you accordingly.

9. Legal Basis and Jurisdiction

We process personal information in accordance with applicable privacy laws. The table below sets out the legal basis we rely on for each category of processing activity:

Processing ActivityLegal Basis
Account creation & core service deliveryContract performance: Processing is necessary to perform our agreement with you.
Transaction records & regulatory complianceLegal obligation: Processing is required to meet applicable legal requirements.
Security monitoring & fraud preventionLegitimate interests: We have a legitimate interest in keeping the service and our users secure.
Platform analytics & product improvementLegitimate interests: We have a legitimate interest in understanding how the service is used; anonymized data is used where possible.
Marketing & promotional communicationsConsent: We only send marketing emails where you have opted in; you may withdraw consent at any time.

Privacy contact: We have designated a responsible person to oversee privacy compliance. All privacy enquiries should be directed to the contact address in Section 12.

10. Security

We implement reasonable technical and organizational safeguards designed to protect personal information against unauthorized access, disclosure, alteration, or destruction.

11. International Transfers

If personal information is transferred across borders, we take steps to ensure the information receives an adequate level of protection under applicable law.

12. Contact Us

If you have questions about this Privacy Policy or want to exercise a privacy right, contact us:

We aim to respond to all privacy enquiries within 5 business days.

13. Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the effective date above and provide notice where required.


Annex A. Jurisdiction-Specific Privacy Disclosures

The following provisions supplement this Privacy Policy and apply where the relevant law governs your relationship with us.

General Data-Protection Rights: Depending on the laws that apply where you live, you may have rights to access, correct, delete, or port your personal information, to object to or restrict certain processing, and to withdraw consent. To exercise any of these rights, contact us at info@tamariresort.com. If your local law provides a data-protection regulator, you also have the right to lodge a complaint with it.

Data Breach Notification: If a personal-data breach occurs that is likely to result in a risk to your rights and freedoms, we will notify the relevant supervisory authority and notify affected individuals without undue delay where required by applicable breach-notification law (including U.S. state breach laws, Australia’s NDB scheme, PIPEDA breach reporting, and LGPD Article 48).

Sub-Processors: We engage categories of sub-processors including cloud hosting, transactional email, payment processing, customer support, analytics, error monitoring, and security services. Each sub-processor is bound by a written contract requiring confidentiality, security, and processing only on our documented instructions (conforming to GDPR Article 28 / UK GDPR / LGPD Article 39 requirements). We provide reasonable advance notice of new sub-processors where required by enterprise customer DPAs.