LEGAL - PRIVACY POLICY
Information handled with restraint, and explained plainly.
This Privacy Policy explains how personal information may be collected and processed when you interact with Parislabyrinths.com. The Cookie Policy is set out in full at clause 06.
Last updated: September 2026 - fourteen clauses
INTRO
Paris Labyrinths respects the importance of privacy and responsible handling of personal information.
This Privacy Policy explains at a general level how personal information may be collected and processed when you interact with Parislabyrinths.com and use our paid membership services.
This page contains two documents: the Privacy Policy (clauses 01–17) and the Cookie Policy, set out in full at clause 06.
01
Our Approach to Privacy
Our approach is based on several fundamental principles:
Transparency
People should understand why information is collected and how it’s used.
Purpose Limitation
Information should be used for defined and legitimate purposes.
Data Minimization
Only necessary information should be collected or retained.
Security
Reasonable safeguards protect information against unauthorized access.
Retention Discipline
Personal information is not retained indefinitely without legitimate reason.
Accountability
Responsibility accompanies collection and use of personal information.
02
Information We May Collect
Depending on how you interact with our website and services, information may include:
Information you Provide
– Name and email address
– Phone number and country
– Billing and payment information
– Profile information (photo, bio, preferences)
– Travel interests and preferences
– Correspondence and support inquiries
– Newsletter preferences
Technical and usage information
– IP address and browser type
– Device and operating system information
– Pages accessed and time spent
– Referring page and clicks
– Date and time of access
– Security and diagnostic logs
These principles align with the GDPR and CCPA core processing principles.
03
Why we may process information
Personal information may be used for legitimate purposes including:
– Processing membership payments and billing
– Providing access to exclusive content
– Sending newsletters and member communications
– Responding to inquiries and support requests
– Verifying account identity and preventing fraud
– Improving website functionality and content
– Understanding user behavior and preferences
– Satisfying legal or regulatory obligations
– Protecting systems and users from misuse
04
How we protect information
We implement appropriate technical and organizational measures to protect personal information:
– Encryption: HTTPS/TLS for all data transmission
– Payment security: PCI DSS compliance via Stripe
– Password protection: Bcrypt hashing for stored passwords
– Access controls: Limited employee access to personal data
– Regular audits: Security reviews and penetration testing
– Data retention: Deletion of data after retention periods expire
Note
No system is 100% secure. While we implement strong protections, we cannot guarantee absolute security against all threats.
05
Data retention and deletion
We retain personal information only as long as necessary:
DATA RETENTION SCHEDULE
– Account Information: Retained for the duration of your membership plus 1 year. (Required for legal and billing purposes)
– Payment Records: Retained for 7 years. (Required for tax and legal compliance)
– Support Tickets: Retained for 2 years. (Maintained for service history and quality reference)
– Analytics Data: Retained for 26 months. (Used to measure and improve website performance)
– Email Addresses: Retained indefinitely. (Maintained strictly on a suppression list to honor opt-out requests)
You can request deletion of your account and associated data by contacting us. We’ll comply within 30 days, except where legal or legitimate interests require retention.
06
Cookie Policy
Cookies are small files stored on your device. We use the following types:
Essential cookies (always active)
– Session management: Keep you logged in
– Security: CSRF protection and fraud detection
– Payment processing: Stripe transaction handling
– Preferences: Language and theme selections
Analytics cookies (with consent)
– Google Analytics: Understand site usage and user behavior
– Hotjar: Record session replays and heatmaps (optional)
Marketing cookies (with consent)
– Facebook Pixel: Track conversions and retargeting
– LinkedIn Insights: Audience measurement (if applicable)
Managing your cookies
Most browsers allow you to control cookies through settings:
– Chrome: Settings > Privacy > Clear browsing data
– Firefox: Preferences > Privacy > Manage Data
– Safari: Preferences > Privacy > Manage Website Data
– Edge: Settings > Clear browsing data
07
Data sharing with third parties
We do not sell personal information. Information may be shared with:
Service providers
– Stripe: Payment processing
– SendGrid/Mailgun: Email delivery
– Google: Analytics and hosting infrastructure
– Cloudflare: Security and CDN services
Legal requirements
We may disclose information to government agencies, law enforcement, or courts if required by law.
Business transfers
If Paris Insider is acquired or merged, personal information may transfer to the new owner under equivalent privacy protections.
08
Your rights
Depending on your location, you have rights regarding your personal information:
All users
– Access: Request a copy of your personal data
– Correction: Update or correct inaccurate information
– Deletion: Request deletion of your data
– Opt-out: Unsubscribe from marketing emails anytime
European users (GDPR)
– Portability: Receive data in portable format
– Objection: Object to processing for legitimate interests
– Restriction: Restrict processing in certain circumstances
– Complaint: Lodge complaint with data protection authority
California users (CCPA)
– Know: Know what personal information is collected
– Delete: Delete personal information (with limited exceptions)
– Opt-out: Opt-out of data sales (we don’t sell data)
– Non-discrimination: No discrimination for exercising rights
To exercise your rights, Contact UsÂ
Select the inquiry type:
09
Children's privacy
Our services are not intended for children under 13. We do not knowingly collect personal information from children. If we become aware that a child has provided information, we will delete it immediately and notify the parent/guardian.
10
International data transfers
Personal information may be transferred to, and processed in, countries other than your country of residence. These countries may have data protection laws that differ from your country.
Where we transfer data internationally (particularly to the US), we rely on appropriate safeguards such as Standard Contractual Clauses approved by the European Commission.
11
Third-party links and content
Our website contains links to external sites and embedded content from partners (hotels, booking platforms, affiliate services). We’re not responsible for their privacy practices. Review their privacy policies before sharing information with them.
12
Newsletter and email marketing
We send emails to members about exclusive content, travel tips, and offers. You can manage preferences in your account settings or click “unsubscribe” in any email. We comply with CAN-SPAM and GDPR requirements.
We never share email addresses with third parties for marketing without your explicit consent.
13
Changes to this policy
We may update this Privacy Policy periodically. Significant changes will be notified via email or prominent website notice. Your continued use after changes means you accept the updated policy.
14
Contact information
For privacy questions or to exercise your rights requests should be submitted through the Contact Us page.
Select the inquiry type:
– Response time: 30 days
– For GDPR inquiries, you may also contact our Data Protection Officer or lodge a complaint with your local data protection authority.
Legal & website notices
Read this page alongside the following
Disclaimer notice
Information on this website is general and informational. It does not constitute professional, investment, financial, tax, legal, or other regulated advice and should not be relied upon as a substitute for advice appropriate to your circumstances.
network notice
Barry Docks Corporation refers to the Barry Docks network and/or one or more of its member firms, each of which is a separate legal entity. For more details, please see our Governance Guide.
External links notice
The Barry Docks Corporation is not responsible for the content of external websites. Read more about our policy regarding External Links.
Cookie policy
Corporate.barrydocks.com may use necessary cookies and, depending on the technologies deployed, optional cookies or similar technologies. Where consent is required, users are able to make a genuine choice concerning non-essential technologies. Read our Cookie Policy · Manage cookie preferences
