1.Controller
The controller responsible for the processing of personal data on this website is:
Frankenbridge International
Inhaber (sole proprietor): Annibal F. Parisien
Rathenaustraße 21, 63263 Neu-Isenburg, Germany
Email: [email protected] · Phone: +49 175 7028316
Legal form: sole proprietorship (Einzelunternehmen). Not entered in the Handelsregister; therefore, no HRB number.
VAT: under the small-business rule (§ 19 UStG), no VAT is charged.
Data Protection Officer
We have not appointed a Data Protection Officer, as we are not legally required to do so.
2.Scope and principles
This policy explains what personal data we collect when you visit www.frankenbridge.com or book an experience with us, why we collect it, the legal basis for doing so, who receives it, how long we keep it, and the rights you have. We process personal data only in accordance with the EU General Data Protection Regulation (GDPR), the German Federal Data Protection Act (BDSG) and the German Telecommunications-Digital-Services Data Protection Act (TDDDG).
3.What data do we collect
Contact data — name, email address, phone number and message content when you contact us or subscribe.
Booking data — traveler name(s), booking details, dates, special requirements, and communications relating to your booking.
Payment data — processed by our payment provider; we do not store full card numbers on our own systems.
Technical and usage data — IP address, browser type, device, pages viewed and timestamps, collected via cookies and similar technologies (see Section 7).
4.Purposes and legal bases
We process personal data on the following legal bases under Art. 6(1) GDPR:
Performing your booking and our contract with you — Art. 6(1)(b) GDPR.
Responding to enquiries and communication — Art. 6(1)(b) and (f) GDPR.
Cookies, analytics and marketing that are not strictly necessary — only with your consent, Art. 6(1)(a) GDPR (you may withdraw consent at any time).
Legal and tax record-keeping — Art. 6(1)(c) GDPR, in line with German commercial and tax law.
Website security and fraud prevention — our legitimate interest, Art. 6(1)(f) GDPR.
5.Recipients and processors
To operate the website and fulfil bookings, we share data with the service providers below, each only to the extent necessary and under a data processing agreement where applicable.
Bókun (booking engine / checkout) — processing of bookings and payments.
Stripe (payment processing) — card payments and payouts.
GetYourGuide and Viator (distribution partners) — where a booking is made or fulfilled via these platforms, under their own policies.
Our website hosting and security/CDN provider — hosting, content delivery and protection of the website.
Our email service provider — handling of email communication.
6.International data transfers
Some of the providers above (for example Stripe and our security/CDN provider) may process data on servers outside the EU/EEA, including in the United States. Where this happens, the transfer is safeguarded by an EU adequacy decision or by the European Commission’s Standard Contractual Clauses (SCCs), together with additional measures where required.
7.Cookies and consent
Strictly necessary cookies are required for the website to function and are set on the basis of our legitimate interest. All other cookies — including any analytics — are set only after you give consent through our cookie banner. You can change or withdraw your choice at any time via the banner settings. We do not rely on “continued browsing” as consent.
Cookie Consent Management
This cookie policy is a supplement to this website’s privacy policy. The cookie policy specifies how a website uses cookies and what data it collects through them, while the privacy policy is a more comprehensive overview of all data processing activities on the website and beyond.
What are cookies?
Cookies are small pieces of information similar to text files that can be stored and read on the end device. They serve various purposes, including maintaining basic functionalities of the website, security and privacy, providing optional functions of the website, collecting statistic data on visitor flows and providing marketing systems. Practical examples of what can be stored in cookies are the storage of login status in user accounts, the content of shopping baskets in e-commerce platforms, or a user ID for tracking behavior on the website.
The information can technically be stored in various ways. The best-known examples of this are HTTP cookies and cookie-like technologies like local storage, session storage or IndexedDB. Each type of storage has different properties, which determine the technical handling, accessibility and controllers authorized to access the information. All these types of storage are usually summarized under the term “cookies” and are therefore called as such in this cookie policy.
Legal basis
The setting and reading of cookies in the European Union (EU) and the European Economic Area (EEA) is in accordance with the GDPR/ePrivacy Directive only permitted if a user has given his consent on the basis of comprehensive information about the purposes of the processing. The website operator may also set cookies if they are strictly necessary to provide you as a user with the expressly requested service, e.g. the basic content of this website or other strictly necessary cookies for basic functionality of the website to be displayed to you without your consent.
Your rights regarding cookies
Services and their cookies can be set and read on the legal basis of your consent or a legitimate interest. When you first visited this website, you were asked for your consent and you had the opportunity to object to the use of certain services. We explained which legal basis is used for which service in our consent dialog.
You have the right to view the history of your decisions, change your privacy settings, object to the use of services and revoke your consent at any time. Below you find possibilities to exercise your rights:
How to manage cookies in your browser
- How to remove cookies in a browser: To remove cookies from your device, you can clear the browsing data in the settings of your browser. This action will remove all cookies from all websites you’ve visited, potentially including saved login details and site preferences. In some browsers, you can just delete the cookies and similar data without deleting the whole browsing history.
- How to control cookies in a browser: For more granular control over cookies specific to certain websites, navigate to the privacy and cookie settings within your used browser. Here, you can adjust preferences related to individual sites’ cookie usage.
- How to block cookies in a browser: It’s possible to configure most modern browsers in their settings to block all cookies from being placed on your device. But blocking cookies could lead to certain services and functionalities not functioning correctly, e.g. logins as a user. You can also use extensions for many browsers which can block the setting of cookies on websites.
- How to manage cookies on this website: To tailor your preferences regarding cookies on this website, you can change your preferences at any time by clicking on the link in the section “Rights of the website visitor”.
8.Retention
Technical/server-log data and general enquiries that do not lead to a booking are deleted within 30 days.
However, booking, invoicing and accounting records must be kept for the statutory periods required by German tax and commercial law — generally 6 years for business correspondence and 10 years for invoices and accounting records (§ 147 AO, § 257 HGB). These statutory periods override any shorter deletion schedule; they are mandatory and cannot be reduced to 30 days.
9.Your rights
Under the GDPR you have the right to:
Access your stored data (Art. 15)
Have inaccurate data corrected (Art. 16)
Have your data deleted (Art. 17)
Restrict processing (Art. 18)
Receive your data in a portable format (Art. 20)
Object to processing based on legitimate interests (Art. 21)
Withdraw consent at any time, without affecting prior lawful processing (Art. 7(3))
To exercise any of these, contact us at [email protected].
You also have the right to lodge a complaint with a supervisory authority (Art. 77). The authority responsible for us is: Der Hessische Beauftragte für Datenschutz und Informationsfreiheit (HBDI), Wiesbaden.
10.Data security
We use appropriate technical and organizational measures, including TLS/SSL encryption of this website, to protect your data against unauthorized access, loss or misuse.
11.Children
This website is not directed at children. We do not knowingly collect data from children under 16 without the consent of a parent or guardian.
12.Changes to this policy
We may update this policy to reflect changes in our services or the law. The current version is always available on this page, with the “Last updated” date above.