Privacy Policy

Effective Date: 1 July 2025
Last Updated: 1 July 2025

This Privacy Policy explains how ("we", "us", "our") collects, uses, discloses and protects personal data when you visit and interact with ravorianprestigeretreat.com (the "Website"). It applies solely to personal data processed in connection with this Website and the services offered through it.

We are committed to handling your personal data in accordance with the Personal Information Protection and Electronic Documents Act (PIPEDA) and applicable provincial privacy legislation in Canada.

Please read this Policy carefully. By using the Website you acknowledge that you have read and understood its contents.

1. Data Controller

The data controller responsible for your personal data is:

Legal Entity
Registered Address
Registration Number 1472863-9
GST/HST Registration 734821697 RT0001
Privacy Contact privacy@ravorianprestigeretreat.com

Our designated Privacy Officer oversees compliance with this Policy and can be reached at the privacy contact address above.

2. Personal Data We Collect

We collect personal data only to the extent necessary to provide the services and features available through this Website. The categories of personal data we may collect are set out below.

2.1 Contact and Reservation-Request Data

When you submit an enquiry, room reservation request or any other form on the Website, we collect information you voluntarily provide, which may include:

  • Full name
  • Email address
  • Postal address
  • Telephone number
  • Arrival and departure dates
  • Room type preferences
  • Number of guests
  • Special requests or accessibility requirements
  • Payment card details (processed securely; see Section 6)
  • Any other information you choose to include in a free-text field

2.2 Device and Technical Data

When you browse the Website, our servers and analytics tools automatically collect certain technical information, including:

  • IP address
  • Browser type and version
  • Operating system and device type
  • Pages viewed and navigation paths
  • Date and time of access
  • Referring URL
  • Session duration and interaction data

2.3 Consent and Cookie Data

When you interact with our cookie consent notice, we record your preferences and the timestamp of your consent decision. This record is stored to demonstrate compliance with applicable privacy requirements. Details of the cookies we use are set out in Section 5.

2.4 Correspondence Data

If you contact us by email or through any contact form, we retain a record of that correspondence, including your contact details and the content of your messages.

2.5 Special-Category Personal Data

We do not intentionally collect special-category personal data through this Website. If you voluntarily include such information in a free-text field (for example, within a special request), we will treat it with the heightened level of protection required by applicable law and will use it solely to fulfil the specific request to which it relates.

3. Purposes and Legal Bases for Processing

The table below sets out each purpose for which we process your personal data, the categories of data used and the legal basis under PIPEDA (meaningful consent, contractual necessity or legitimate interest).

Purpose Data Categories Legal Basis
Responding to enquiries and processing reservation requests Contact and reservation-request data; correspondence data Performance of a contract or pre-contractual steps at your request; your consent where provided
Confirming bookings and sending related communications Contact and reservation-request data Performance of a contract
Processing payments securely Payment card details; contact data Performance of a contract
Operating and improving the Website Device and technical data Legitimate interest in maintaining a functional, secure and user-friendly website
Website analytics and performance measurement Device and technical data; cookie data Your consent (where required by law); legitimate interest
Compliance with legal and regulatory obligations All relevant categories Legal obligation
Preventing fraud and ensuring security Device and technical data; contact data Legitimate interest in protecting our business and guests
Sending promotional communications about our hotel and casino services Contact data Your express consent; you may withdraw at any time (see Section 8)
Managing and recording consent preferences Consent and cookie data Legal obligation; legitimate interest in demonstrating compliance

Where we rely on legitimate interests as a legal basis, we have assessed that our interests are not overridden by your interests or fundamental rights and freedoms. You may request further details of that balancing assessment by contacting us at privacy@ravorianprestigeretreat.com .

4. Age Restriction for Casino Services

Our casino facilities are restricted to individuals who are at least 18 years of age. We do not knowingly collect personal data from persons under the age of 18 for any purpose related to casino services. If you are under 18, please do not submit any personal data in connection with casino-related enquiries. If we become aware that we have inadvertently collected personal data from a person under 18 in this context, we will take prompt steps to delete it.

5. Cookies and Similar Technologies

We use cookies and similar tracking technologies on the Website. A cookie is a small text file placed on your device when you visit a website. Cookies allow us to recognise your device on subsequent visits and to gather information about how you use the Website.

5.1 Types of Cookies We Use

Category Purpose Consent Required
Strictly Necessary Enable core Website functionality, security and your cookie consent preferences. The Website cannot function properly without these. No (placed on the basis of legitimate interest / legal obligation)
Functional Remember your preferences (such as language or form data) to improve your experience. Yes
Analytical / Performance Collect aggregated data about how visitors use the Website so we can improve its performance and content. Yes
Marketing Deliver relevant content and track the effectiveness of our promotional communications. Yes

5.2 Managing Your Cookie Preferences

When you first visit the Website, a consent banner will invite you to accept or decline non-essential cookies. You may change your preferences at any time by accessing the cookie settings link in the footer of the Website.

You may also manage or delete cookies through your browser settings. Please be aware that disabling certain cookies may affect the functionality of the Website. For guidance on managing cookies in common browsers, please consult your browser's help documentation.

6. Security of Your Personal Data

We implement appropriate technical and organisational measures to protect your personal data against unauthorised access, accidental loss, alteration, disclosure or destruction. These measures include:

  • Encryption of data in transit using Transport Layer Security (TLS)
  • Access controls limiting data access to authorised personnel who require it to perform their duties
  • Regular review of our information security practices
  • Secure handling of payment card data in accordance with applicable payment industry standards

No method of transmission over the internet or electronic storage is entirely secure. While we strive to use commercially acceptable means to protect your personal data, we cannot guarantee absolute security. We encourage you to use strong, unique passwords and to log out of any shared devices after using the Website.

7. Disclosure of Your Personal Data

We do not sell your personal data. We may share your personal data with third parties only in the circumstances described below.

7.1 Service Providers

We engage trusted third-party service providers who assist us in operating the Website and delivering our services. These providers act on our instructions and are permitted to use your personal data only for the specific purpose for which it was shared. Categories of service providers include:

  • Website hosting and infrastructure providers
  • Payment processing providers
  • Email delivery and communication platforms
  • Analytics service providers
  • Reservation management system providers

7.2 Legal and Regulatory Disclosures

We may disclose your personal data if required to do so by law or in response to a valid request from a governmental authority, court or regulatory body. We may also disclose personal data where we believe, in good faith, that disclosure is necessary to protect our legal rights, prevent fraud or protect the safety of any person.

7.3 Business Transfers

In the event of a merger, acquisition, reorganisation or sale of all or a portion of our assets, your personal data may be transferred as part of that transaction. We will notify you of any such change and of any choices you may have regarding your personal data in accordance with applicable law.

7.4 With Your Consent

We may share your personal data with other parties where you have given your express consent for us to do so.

8. International Transfers of Personal Data

is based in Canada. Some of our third-party service providers may be located or may process personal data outside Canada. Where your personal data is transferred to a recipient in another country, we take steps to ensure that an adequate level of protection is applied, including by putting in place contractual safeguards or relying on other lawful transfer mechanisms recognised under PIPEDA and applicable Canadian law.

If you would like further details about the safeguards we apply to international transfers, please contact us at privacy@ravorianprestigeretreat.com .

9. Retention of Personal Data

We retain your personal data only for as long as is necessary to fulfil the purposes for which it was collected, to comply with legal, accounting or reporting obligations, or to resolve disputes and enforce our agreements.

Data Category Typical Retention Period
Reservation and guest records 7 years from the date of the last stay or booking, to satisfy tax and accounting obligations
General correspondence and enquiries 2 years from the date of the last communication
Payment records 7 years, in compliance with Canadian financial recordkeeping requirements
Website analytics data 13 months from collection, after which it is aggregated or deleted
Consent records Duration of the consent period plus 3 years to demonstrate compliance
Marketing preferences and communications Until you withdraw consent or unsubscribe, plus 1 year

When personal data is no longer required, we securely delete or anonymise it in accordance with our internal data retention procedures.

10. Your Privacy Rights

Under PIPEDA and applicable Canadian privacy legislation, you have the following rights in relation to your personal data:

10.1 Right of Access

You have the right to request confirmation of whether we hold personal data about you and, if so, to receive a copy of that data together with information about how it is used.

10.2 Right to Correction

If you believe that personal data we hold about you is inaccurate or incomplete, you have the right to request that we correct or update it.

10.3 Right to Withdraw Consent

Where we process your personal data on the basis of your consent, you have the right to withdraw that consent at any time. Withdrawal of consent will not affect the lawfulness of any processing carried out prior to withdrawal. To withdraw consent for marketing communications, you may use the unsubscribe link included in each message or contact us directly.

10.4 Right to Erasure

Subject to applicable legal requirements and our legitimate interests, you may request that we delete personal data we hold about you. We will consider all such requests and inform you of the outcome and the reasons for our decision.

10.5 Right to Lodge a Complaint

You have the right to lodge a complaint with the Office of the Privacy Commissioner of Canada (OPC) if you believe we have not handled your personal data in accordance with applicable law. Contact details for the OPC are available at www.priv.gc.ca .

10.6 How to Exercise Your Rights

To exercise any of the rights listed above, please submit a written request to:

Privacy Officer


Email: privacy@ravorianprestigeretreat.com

We will acknowledge your request within 10 business days and aim to respond fully within 30 calendar days. If your request is complex or numerous, we may extend this period by a further 30 days and will notify you accordingly. We may ask you to verify your identity before processing your request.

12. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, the services we offer or applicable law. When we make material changes, we will update the "Last Updated" date at the top of this page and, where appropriate, notify you by email or by a prominent notice on the Website. We encourage you to review this Policy periodically to stay informed about how we protect your personal data.

Your continued use of the Website after any changes to this Policy constitutes your acknowledgement of the updated terms.

13. Contact Us

If you have any questions, concerns or requests relating to this Privacy Policy or our handling of your personal data, please contact our Privacy Officer:


Attn: Privacy Officer

Email: privacy@ravorianprestigeretreat.com

We are committed to working with you to resolve any concerns about your privacy in a timely and respectful manner.

Check availability