Privacy Policy
Last updated: 10 September 2026. This Privacy Policy explains how Mirevianofflineguide AS handles personal data when you browse this website, send an enquiry or communicate with the resort. It is intended to describe website and guest-enquiry processing in clear terms; specific services may provide additional information where necessary.
1. Data controller and contact
Mirevianofflineguide AS, Dronningens gate 31, 8514 Narvik, Norway, is responsible for personal data processed through the website and the direct contact routes described here, unless another party is identified as an independent controller for a particular service.
For privacy questions or requests concerning your personal data, contact privacy@mirevianofflineguide.com. General reservation questions should be sent to the normal guest contact address rather than the privacy mailbox.
2. Information we may collect
The information we receive depends on how you use the website and what you choose to send to us.
- Contact details such as your name, email address and telephone number when you provide them.
- Reservation-enquiry information such as preferred dates, guest count, room preference and practical stay requirements.
- Communications and correspondence, including the content of questions, requests and follow-up messages.
- Technical information that may be generated when the website is accessed, such as IP address, browser type, device information, timestamps and basic security logs.
- Cookie and consent information, including whether you accepted or rejected optional website technologies.
- Information you voluntarily include in a special request. Please avoid sending sensitive personal information unless it is necessary for the service you are requesting.
3. Why we use personal data
Responding to enquiries and preparing requested services
We use the details you provide to understand and respond to reservation, guest-service, accessibility, dining, event or other resort enquiries. Processing may be necessary to take steps at your request before a contract is entered into or to perform an existing booking.
Operating and protecting the website
Limited technical data may be used to deliver pages, maintain security, diagnose errors, prevent misuse and keep the website functioning reliably. This processing may be based on our legitimate interest in operating a secure and usable website.
Meeting legal and administrative obligations
We may process or retain information where reasonably necessary to comply with applicable accounting, legal, regulatory or dispute-resolution obligations.
Optional communications and analytics
Where optional analytics, marketing technologies or promotional communications require consent, they should remain optional. You can withdraw consent for future processing without affecting processing that took place before withdrawal.
4. Cookies and similar technologies
Essential website storage may be used for security, navigation and remembering consent choices. Optional analytics or marketing technologies should not be activated until the required choice has been made. More detail is provided in the Cookie Policy.
5. Who may receive personal data
We do not describe personal data as sold to third parties. Data may, however, be shared when this is reasonably necessary for the purpose for which it was collected.
- Hosting, infrastructure, security and technical service providers that support website operation.
- Reservation, communications or customer-service providers used to process a guest request.
- Professional advisers such as accountants, auditors, insurers or legal advisers where needed.
- Public authorities, regulators, courts or law-enforcement bodies where disclosure is required or legally justified.
- A successor organisation in connection with a legitimate corporate reorganisation, subject to applicable legal safeguards.
6. International data transfers
Some technical or service providers may process data outside Norway or the European Economic Area. Where applicable, transfers should use a legally recognised transfer mechanism and appropriate safeguards. The specific safeguard can depend on the provider and destination involved.
7. How long information is kept
Personal data is kept only for as long as reasonably necessary for the purpose for which it was collected, together with any period required for legal, accounting, security or dispute-resolution reasons.
- Unsuccessful or general enquiries may be deleted or anonymised when they are no longer needed for follow-up.
- Booking-related records may need to be retained for longer where accounting, contractual or legal obligations apply.
- Security logs are generally kept for a limited period unless an incident requires longer investigation.
- Consent records may be retained as evidence of the choice made and to respect later changes to that choice.
8. Security
Reasonable technical and organisational measures are used to reduce the risk of unauthorised access, loss, misuse or alteration. No website, email system or storage method can be guaranteed to be completely secure, so visitors should avoid sending information that is unnecessary for the requested service.
9. Your data-protection rights
Depending on the circumstances and applicable law, you may have rights concerning personal data held about you.
- Request access to personal data and information about how it is used.
- Ask for inaccurate or incomplete information to be corrected.
- Request deletion where there is no overriding legal reason to keep the information.
- Ask for processing to be restricted in certain circumstances.
- Object to processing based on legitimate interests in certain circumstances.
- Receive certain information in a portable format where the legal conditions for portability are met.
- Withdraw consent for future processing where consent is the legal basis.
- Complain to the competent data-protection authority if you believe personal data has been handled unlawfully.
A request may require reasonable identity verification. Some rights are subject to exceptions, for example where records must be retained by law or are required to establish or defend legal claims.
10. Children and age-restricted services
The general accommodation and resort website is not intended to collect personal data from children without an appropriate reason. Information concerning age-restricted gambling areas is directed to eligible adults. Do not use a child’s personal data in an enquiry unless it is reasonably necessary for a family booking or service request.
11. Third-party websites and services
Links to transport providers, public authorities, support services or other external websites may lead to services operated independently from Mirevianofflineguide AS. Their own privacy notices govern how they process personal data.
12. Changes to this policy
This policy may be updated when website features, service providers or legal requirements change. The latest version will be published on this page with a revised update date where appropriate.
13. Privacy contact
For privacy-related questions or requests, contact privacy@mirevianofflineguide.com or write to Mirevianofflineguide AS, Dronningens gate 31, 8514 Narvik, Norway. Include enough information for us to understand the request, but do not send identity documents unless they are specifically and securely requested.