Privacy Policy

This is the Privacy Policy and Register Description of Teiskon Vihreä Unelma Oy in accordance with the EU General Data Protection Regulation (GDPR). Created: 28 May 2026 Last updated: 28 May 2026

Data Controller

Teiskon Vihreä Unelma Oy, c/o Insinööritoimisto, LaRa Oy, Pyhäjärvenkatu 5 D, 33200 Tampere, Finland

Data Protection Contact Person: Mika Lahtinen
Phone: +358 40 700 6470
Email: mika.lahtinen@laraoy.com
www.resorttimaisa.fi

Name of the Register

Customer and Marketing Register of Teiskon Vihreä Unelma Oy

Legal Basis and Purpose of Processing Personal Data

Personal data is collected, processed, and used for managing customer relationships, providing services, organising events, delivering tickets, communicating with customers, marketing, and developing our business.

Personal data may be processed for the following purposes:

  • Customer communication and notifications
  • Event registration and participation
  • Creation and management of user accounts
  • Provision and maintenance of services
  • Ticket delivery
  • Customer service and enquiries
  • Marketing and direct marketing
  • Business development and analytics

The legal bases for processing personal data are:

  • Performance of a contract (e.g. event registration or service booking)
  • Compliance with a legal obligation (e.g. accounting requirements)
  • Legitimate interests of the Data Controller (e.g. customer relationship management and marketing)
  • Consent of the data subject (e.g. newsletters and cookies)

Based on legitimate interest, personal data may be processed for managing customer and contractual relationships, developing services, and carrying out direct marketing where it relates to an existing customer relationship.

Personal data is not used for automated decision-making or profiling.

Contents of the Register

The register may contain the following personal data:

  • Name
  • Contact details (such as telephone number, email address, and postal address)
  • Information related to event participation
  • Billing information
  • Communication and correspondence history

The following information may also be collected through the website:

  • IP address
  • Cookie information
  • Website usage and analytics data

Where required, users will be asked to consent to the use of cookies on the website. Visitors' IP addresses and cookies that are necessary for the operation of the website may be processed based on the Data Controller's legitimate interests, for example to maintain website security and compile visitor statistics where such data constitutes personal data. Consent will be requested separately for third-party cookies where required.

Personal data is retained for as long as the customer relationship remains active and for a maximum of five (5) years thereafter, unless legislation requires a longer retention period (for example, under accounting legislation).

Regular Sources of Information

Personal data stored in the register is obtained directly from the customer through messages sent via website forms, email, telephone, social media services, contracts and agreements, customer meetings, and other situations in which the customer voluntarily provides personal data.

Contact details of representatives of companies and other organisations may also be collected from public sources such as websites, business directories, and other companies.

Regular Disclosure of Data and Transfers Outside the EU or EEA

Personal data is not regularly disclosed to third parties.

However, personal data may be disclosed to:

  • Payment service providers (billing and payment processing)
  • IT and software service providers (such as CRM and email services)
  • Event partners (only the information necessary for organising the event)

Personal data may be transferred outside the European Union (EU) or the European Economic Area (EEA) where required by the services we use. In such cases, appropriate safeguards in accordance with the GDPR, such as the European Commission's Standard Contractual Clauses (SCCs), will be implemented.

Principles of Protecting the Register

Personal data is processed with due care, and information processed using information systems is protected appropriately. Where personal data is stored on internet servers, appropriate physical and digital security measures are implemented to safeguard the hardware and systems. The Data Controller ensures that stored information, server access rights, and other information critical to the security of personal data are handled confidentially and only by employees whose duties require such access.

Right of Access and Right to Request Correction of Personal Data

Every individual whose personal data is stored in the register has the right to access the personal data concerning them and to request the correction of inaccurate data or the completion of incomplete data. Requests for access or rectification must be submitted in writing to the Data Controller at: (mika.lahtinen@laraoy.com).

Where necessary, the Data Controller may request proof of identity before processing the request. The Data Controller will respond within the time limits specified by the GDPR, generally within one (1) month.

Other Rights Relating to the Processing of Personal Data

Individuals whose personal data is stored in the register have the right to request the deletion of their personal data. Data subjects also have other rights under the GDPR, including the right to request restriction of processing in certain circumstances. Requests must be submitted in writing to the Data Controller.

Where necessary, the Data Controller may request proof of identity before processing the request. The Data Controller will respond within the time limits specified by the GDPR, generally within one (1) month.

Right to Lodge a Complaint with a Supervisory Authority

Data subjects have the right to lodge a complaint with the competent data protection authority if they believe that their personal data has been processed in violation of applicable data protection legislation.

Contact details of the Finnish Data Protection Ombudsman:

Office of the Data Protection Ombudsman
Visiting address: Lintulahdenkuja 4, 00530 Helsinki
Postal address: PL 800, 00531 Helsinki
Email: tietosuoja@om.fi
Phone: 029 56 66700

Changes to This Privacy Policy

Teiskon Vihreä Unelma Oy may update this Privacy Policy when necessary. Changes may result from, for example, amendments to legislation or the development of our services.

Any updates will be published on the company's website and/or communicated to the data subject by email where contact details are available.