1. Foundational Commitment to User Privacy
The editorial leadership and technical operators of Sedef.tours ("the Publication," "we," "our," or "us") maintain an unyielding commitment to safeguarding the digital privacy, autonomy, and security of every reader who accesses our online maritime guides. We recognize that travelers seeking independent logistical advice deserve an online experience free from invasive tracking, hidden data harvesting, or predatory marketing practices.
This Privacy Policy articulates with complete transparency the precise categories of data we collect, the lawful bases under which such data is processed, the storage safeguards implemented, and the statutory legal rights available to users residing within the European Economic Area (EEA) under the General Data Protection Regulation (GDPR - EU 2016/679) and within the Republic of Turkey under the Law on the Protection of Personal Data (KVKK - Law No. 6698).
2. Categories of Information Collected & Lawful Bases
We adhere strictly to the principle of data minimization. We collect only the minimum quantum of information technically indispensable to deliver fast, secure, and reliable web pages:
- Automated Telemetry & Technical Server Logs: When your web browser requests files from our Cloudflare edge network, our servers log standardized HTTP request headers, including your IP address (anonymized at the edge), browser version, operating system, referring URL, timestamp, and requested resource path. This processing is conducted pursuant to GDPR Article 6(1)(f) (Legitimate Interest) to prevent malicious distributed denial-of-service (DDoS) attacks and ensure edge network resilience.
- Direct Communications Data: If you elect to transmit an inquiry to our editorial office or Captain Cihan Aksu via email (such as
editor@sedef.tours), we receive your sender email address and the contents of your message. This data is processed under GDPR Article 6(1)(b) (Performance of a Contract or Pre-contractual Communication) solely to address your maritime inquiry. - Zero Sensitive Data: We never solicit, store, or process special categories of personal data, including biometrics, health status, political opinions, religious beliefs, or financial bank credentials.
3. Cookie Architecture & Telemetry Disclosures
Cookies are compact text files stored on your computing device by web servers to remember user preferences or session states. Sedef.tours employs a minimalist cookie footprint:
- Strictly Necessary Technical Cookies: Deployed automatically by our global CDN (Cloudflare) to identify trusted web traffic, route requests efficiently across edge points of presence, and protect server infrastructure against botnets. These cookies do not store personally identifiable data.
- Performance & Anonymized Analytics: We may deploy privacy-preserving analytics scripts that track aggregated visitor trends (such as page view counts and popular device screen widths) without setting tracking cookies or following user behavior across third-party websites.
4. Affiliate Marketing & Third-Party Outbound Links
Sedef.tours participates in curated travel affiliate marketing programs, primarily with GetYourGuide (Partner ID: FY0PT2P) and Viator (Partner ID: P00271667). When you click an outbound link to view live availability or reserve a tour, a custom tracking parameter (e.g., campaign=sedeftours&cmp=sedeftours) is appended to the destination URL.
Please note:
- Clicking an affiliate link does not alter the retail ticket price you pay on the provider's website.
- No personal identity, credit card information, or passport data is ever captured, shared with, or accessible to Sedef.tours during your transaction on third-party booking platforms.
- Third-party websites maintain independent privacy policies, and we encourage you to review their terms upon departure from our domain.
5. Data Retention Protocols & International Transfers
Technical server log files are automatically expunged or permanently aggregated into anonymous statistical metrics within thirty (30) days of capture. Any voluntary email correspondence is retained only for as long as necessary to conclude your maritime consultation, after which it is permanently purged. We do not transmit or sell personal visitor data to commercial data brokers, advertising networks, or third-party mailing lists.
6. Statutory Rights of Data Subjects (GDPR & KVKK)
Under applicable international data protection statutes, you are entitled to exercise the following fundamental rights regarding any personal information that pertains to you:
- Right of Access (GDPR Art. 15 / KVKK Art. 11): The right to obtain confirmation as to whether your personal data is processed and to receive a copy thereof.
- Right to Rectification (GDPR Art. 16): The right to demand correction of inaccurate or incomplete personal records.
- Right to Erasure / "To Be Forgotten" (GDPR Art. 17): The right to request permanent deletion of your data when retention is no longer legally justified.
- Right to Restrict Processing (GDPR Art. 18): The right to halt further processing under contested circumstances.
- Right to Object (GDPR Art. 21): The right to object at any time to processing predicated on legitimate interest grounds.
7. Data Protection Officer & Privacy Inquiries
To submit an inquiry, register an objection, or exercise your statutory data subject rights, please direct formal communications to our designated privacy desk:
- Privacy Office:
privacy@sedef.tours - Physical Jurisdiction: Adalar District, Istanbul, Republic of Turkey
- Supervisory Authority: EEA residents have the right to lodge a complaint with their national Data Protection Authority (DPA); Turkish residents may lodge appeals with the Kişisel Verileri Koruma Kurumu (KVKK).