KVKK
Nippon HOTEL TAKSIM

kvkk

Data Privacy

Protection of Personal Data

As Nippon Hotel, we attach importance to your privacy and the security of your personal data.


KVKK Information
The purpose of the legal regulation is stated in Article 1 of Law No. 6698 as "The purpose of this Law is to protect the fundamental rights and freedoms of individuals, especially the privacy of private life, in the processing of personal data and to regulate the obligations and the procedures and principles to be followed by real and legal persons who process personal data."

Legal basis of information: Article 10 of Law No. 6698:

(1) During the acquisition of personal data, the data controller or the person authorized by him is obliged to inform the relevant persons about; a) The identity of the data controller and his representative, if any, b) For what purpose the personal data will be processed, c) To whom and for what purpose the processed personal data can be transferred, d) The method and legal reason for collecting personal data, d) Other rights listed in Article 11. This information is provided in terms of legal obligation and transparency as it contains the provision. POINT HOTEL MANAGEMENT TURİZM Inc. It keeps the system infrastructure and internet servers at the most reliable level in order to protect the confidentiality of the personal information it receives from its guests-customers. What does the processing of personal data mean: Article 2 of Law No. 6698 e. It is defined in the paragraph: "Processing of personal data: All kinds of operations performed on data such as obtaining, recording, storing, preserving, changing, rearranging, disclosing, transferring, taking over, making available, classifying or preventing the use of personal data by fully or partially automatic or non-automatic means provided that it is part of any data recording system."

Principles taken into account in the processing of personal data: Personal data may be processed in accordance with the law and the rules of honesty, for accurate and up-to-date, specific, clear and legitimate purposes, with the express consent of the relevant person, provided that it is kept in connection with the purpose for which it is processed, limited and measured, for the period stipulated in the relevant legislation or for the period required for the purpose for which it is processed. Purpose of processing personal data: The identity data of our guests and all persons entering and exiting our establishment on a daily basis, to fulfill our obligations in accordance with the legislation to which we are subject, to fulfill the contract we have established with our guests. We process our services for the purposes of ensuring the security of our guests and similar guest, public and institutional interests.  

We record the identity data of our employees in accordance with labor and social security legislation. We process the identity data of our employee candidates in order to evaluate their job applications; the data of visitors, suppliers, contractors and similar people with whom we have business relations for the purpose of commercial necessity and to ensure the security of our guests and our establishment. Collection of personal data and legal reason: As a necessity within the scope of obligations arising from the legislation, to be decisive in legal disputes in accordance with the contract we have made with our guests, to ensure that our guests are informed about forgotten belongings and similar situations. We record identity, address, telephone number, payment information when necessary and other necessary information in order to provide all kinds of information about our establishment to our guests and to offer the requested products and services. Sharing of personal data, transferring them abroad: As stated in Article 8 of Law No. 6698, Personal data cannot be transferred without the explicit consent of the relevant person. In exceptional cases stated in the law, it can be shared in the manner and conditions specified in the law.

As stated in Article 9 of Law No. 6698, personal data cannot be transferred abroad without the explicit consent of the relevant person. In exceptional cases specified in the law, it can be transferred abroad within the manner and conditions specified in the law. Data controller – Representative: POINT HOTEL MANAGEMENT TURİZM A.Ş. Within the scope of Law No. 6698, it is the Data Controller, as the data controller. POINT HOTEL MANAGEMENT TURİZM A.Ş. The Data Controller representative to be appointed by will be announced in the Data Controllers Registry when the legal infrastructure is provided in accordance with KVKK Article 16 and related articles.  Rights of the person concerned: Pursuant to Article 11 of Law No. 6698 (1) Everyone can contact the data controller to: a) Learn whether personal data is being processed or not, b) Request information about it if personal data has been processed, c) Learn the purpose of processing personal data and whether they are used in accordance with their purpose, d) Know the third parties to whom personal data are transferred at home or abroad, d) Request correction of personal data in case they are incomplete or incorrectly processed, e) Request correction of personal data within the framework of the conditions stipulated in Article 7. f) To request that the transactions carried out in accordance with paragraphs (d) and (e) be notified to third parties to whom personal data have been transferred, g) To object to the emergence of a result against the person by analyzing the processed data exclusively through automatic systems, g) To request compensation of the damage in case of damage due to the unlawful processing of personal data. It includes the provision.

Application address: Topçu Cad. with your petition containing your rights regarding your personal data within the scope of KVKK Law No. 6698, documents explaining your identity and your request. No: 2 34437 Taksim/İstanbul or via e-mail to 'info@pointhotelmanagement.com'. Application to the data controller: In accordance with Article 11 of Law No. 6698:

(1) The relevant person submits his/her requests regarding the implementation of this Law to the data controller in writing or by other methods determined by the Board.

(2) The data controller finalizes the requests in the application free of charge as soon as possible and within thirty days at the latest, depending on the nature of the request. However, if the transaction requires an additional cost, the fee in the tariff determined by the Board may be charged.

(3) The data controller accepts the request or rejects it by explaining the reason and notifies the relevant person in writing or electronically of his/her response.

If the request in the application is accepted, the necessary action will be taken by the data controller. If the application is due to the error of the data controller, the fee collected will be refunded to the relevant person. In cases where the application to the Data Controller is rejected, the response is found to be insufficient, or there is no response, a complaint can be made to the Personal Data Protection Board located in Ankara within 30 days from the date of learning and in any case within 60 days from the date of application.

Storage of personal data: In accordance with Article 7 of Law No. 6698 and relevant legal regulations: Your personal data can be stored for the periods required by legal obligation and the purposes of processing. If the obligations arising from legal regulations and contracts are eliminated, your personal data, whose purposes for processing are no longer valid, are deleted and destroyed by the data controller ex officio or upon the request of the relevant person. Other legal regulations on this subject are reserved.​

SECURITY
​We Respect Your Privacy

We attach great importance to protecting your privacy when providing your personal information during transactions. Personal information obtained during your visit to our site is kept confidential by us within the framework of legal provisions. It is part of our company policy to retain this information. Our site may contain links to other internet addresses that do not have these policies.

COLLECTION OF YOUR PERSONAL INFORMATION

During your visit to our site, our network analytics program automatically records the name of your internet provider, the site that transferred you to our site, which parts of our site you visited, the date of your visit and how long you spent. Our site helps us analyze the preferences of our guests with the help of cookies and other active programs (e.g. JavaScript) and improve our system according to those preferences. If you wish, you can set your browser to warn you when you receive a cookie or reject cookies. If you reject cookies, some parts of our site may not function properly.

Other personal information will only be obtained when you fill out a registration, survey, form or contract. Use of Personal Information and Purpose Statement We will use your personal information only when necessary and only for the technical administration of our site, marketing and surveys. Your personal information will never be disclosed to third parties without your permission.

Security We have high security protocols to protect your information against manipulation, loss, damage or access by unauthorized persons for any other purpose. We are constantly increasing these protocols as technology develops.

We prefer to use your information recorded in our hotel data in order to inform you about our Freedom of Choice Campaigns and services or to benefit from your ideas; Of course, we would like to do this with your permission. If it is not suitable for you, you can let us know at any time. Thus, we prevent the use of your information. Contact: For any information, suggestions or complaints regarding your personal data, you can contact us at the e-mail address and phone number below. Despite all our efforts for accuracy and timeliness, if there is incorrect information, we can correct this information upon your request.​​

Data Controller

E-Mail: kvkk@nipponhotel.com.tr

Phone: +90 212 313 33 00

Point HOTEL Management A.Ş. (Hereinafter referred to as “OTEL”), we process the personal data / special personal data of our guests as the data controller, within the scope of the Personal Data Protection Law No. 6698 (hereinafter referred to as “KVKK”).
This text has been prepared for the purpose of informing you about our data controller identity, the purposes of processing your personal data, to whom and for what purposes we transfer your personal data, the methods of processing your personal data, our legal reasons and your rights as a relevant person within the scope of the form, reservation transactions and contact information you have filled out in order to benefit from the services we will provide on the website https://www.nipponhotel.com.tr as the "Data Controller" in accordance with Article 10 of the KVKK.

1-) DATA CONTROLLER:
ADDRESS                                : Topçu Cd. No:6 Beyoğlu/İSTANBUL
PHONE NUMBER: 0212 313 33 00
E-MAIL                             : kvkk@nipponhotel.com.tr
KEP                                      : pointhotel@hs01.kep.tr
MERSİS                               : 0730036964500036

2-) SCOPE OF THE INFORMATION TEXT:
This text; It includes the data of website visitors, guests who made reservations and visitors / guests who want to contact us to obtain information.

3-) PROCESSED PERSONAL DATA AND PURPOSES OF PROCESSING PERSONAL DATA:
The categories of personal data processed for guests are listed below, and each data category is processed for the purposes specified above.
Purposes of Processing Personal Data
Identity Information: Name - Surname, T.R. Identity Number and Passport Number.    For the purpose of performing the HOTEL reservation service; creating a guest registration, verifying the information of our guests, establishing a contractual relationship between the parties, and fulfilling the obligations arising from the Law.
Contact Information: 
Email Address and Phone Number.    Ensuring continuous and uninterrupted communication between the guest and the HOTEL staff and optionally benefiting from advertising and marketing services.
Camera Footage: Cameras Inside the HOTEL.    Ensuring the physical space security of the OTEL, protecting the legitimate interests of the employer, protecting the life and property of guests, staff or third parties and obtaining evidence that can be proven in possible disputes.
Health Information: Allergen Records and Food Intolerance Information.    In order to protect the health of the guests, determining the foods suitable for their health and meeting their special nutritional demands during their stay at the HOTEL.
Payment Information: Credit Card Information and Bank Account Information    Completing transactions regarding guest reservations, collecting the amount of accommodation fees and providing convenience to our guests in payment transactions.
Invoice Information:    Issuing e-invoice/e-archive invoices, submitting legal declarations and carrying out accounting processes in accordance with tax laws.
License Plate Information: Vehicle.    Creating and tracking guest records and controlling HOTEL entry and exit.
SPA Information    Registering the guests who want to benefit from the SPA service, determining the SPA occupancy rate, ensuring the preservation of the guest's valuable belongings before using the SPA and protecting the safety of the guest's life and property.

4-) PARTIES TO WHICH PERSONAL DATA CAN BE TRANSFERRED:
Among the personal data subject to this information text, those transferred for the purpose of fulfilling legal obligations, execution of the contract between the parties and ensuring the legitimate interests of the employer and the places where they are transferred are listed below. 
Your personal data; It can be transferred domestically or abroad for the purposes stated below, in accordance with the personal data transfer conditions in KVKK articles 8 and 9. Data transfer abroad; In line with the GDPR, it is transferred to the server and cloud service provider operating in countries where an Adequacy Decision has been issued by the European Commission, solely for the purpose of security and storage of data. 
Personal Data Categories     Parties
Identification    Judicial and Law Enforcement Authority.

Contact Information    Authorized Public Institutions, Travel Agencies, CRM Companies, Supplier Officials and Supplier Employees.
Camera Footage    Judicial Authorities and Law Enforcement Authority.
Payment Information    Banks, Financial Institutions, Financial Advisors, Overseas Cloud Systems, Service Providers and Servers.
Invoice Information     Authorized Public Institutions and Financial Advisors

5-) PROTECTION OF PERSONAL DATA:
In accordance with KVKK article 12; As the data controller, we take all necessary technical and administrative measures to prevent the unlawful processing of your personal data that we have collected, to prevent unlawful access, to preserve personal data and to prevent it from falling into the hands of unauthorized persons. The main measures taken in this direction are as follows:
Administrative Measures     Technical Measures
Personnel KVKK Awareness Training: Hotel personnel are given periodic training on the protection of personal data; Awareness is provided to personnel in accordance with current KVKK legislation and principles.    Cyber ​​Security Measures: OTEL information systems are protected by up-to-date firewalls, anti-virus software and intrusion detection systems.
Confidentiality Agreements with Supplier Companies: Confidentiality agreements are signed with companies from which outsourced services are provided to ensure the security of personal data.
    Physical Security: Physical archives and server rooms where data is stored; It is protected against natural disasters such as fire, flood and earthquake; Entry and exit to these areas is limited to authorized personnel.
Authorization Matrix: Access to personal data within OTEL is limited only to authorized persons who need access to the relevant data.    Encryption and Secure Communication: In reservation and payment transactions made through the OTEL website, SSL (Secure Sockets Layer) certificate and cryptographic encryption methods are used for the secure transfer of data.
Data Storage and Destruction Policy: The retention periods of each personal data processed by the staff and guests within the hotel are certain, and personal data whose retention period has expired is periodically deleted, destroyed or anonymized in line with our "Personal Data Storage and Destruction Policy".    Access Logs: All accesses to databases and reservation systems are monitored by keeping log records in order to detect unauthorized transactions.
Data Recovery Studies: There are procedures regarding how long and by what methods the backed-up data will be uploaded to the system in case of a possible cyber attack or data loss.    Backup: Our data is regularly backed up in secure environments in case of a possible cyber attack or data loss.

6-) PERSONAL DATA COLLECTION METHODS AND LEGAL REASONS:
Your personal data; It is collected through our website, call center, reception records, agencies and security cameras.
Personal Data Collection Methods Legal Reasons:
Personal data regarding the identity of the guests; In online reservations, it is processed digitally by guests entering their identity information on the website, and in case of application to the HOTEL, it is processed directly by physical methods when the reservation is made.    According to KVKK Article 5/2 - (d), "It is mandatory for the data controller to fulfill its legal obligations." (*In accordance with the Identity Reporting Law No. 1174, guests' identity information must be submitted to law enforcement.)
Personal data regarding contact information of guests; The form, reservation process or contact form filled out on the website is processed through digital media, contact by phone or written e-mail.    According to KVKK Article 5/2 – (f), "Data processing is mandatory for the legitimate interests of the data controller, provided that it does not harm the fundamental rights and freedoms of the relevant person." 
Personal data regarding guests' payment information; It is processed digitally when entering bank information for reservations.    In accordance with KVKK Article 5/1, the relevant person must have explicit consent.
Personal data regarding billing information of guests; Payments made through the website are processed digitally, while physical payments are processed through physical methods upon the guest's verbal declaration to the reception.    According to KVKK Article 5/2 – (d), “It is mandatory for the data controller to fulfill its legal obligations.”
Personal data regarding guests' camera images; From the time the guest enters the HOTEL for accommodation until he leaves the HOTEL, it is processed through security cameras in the common areas of the HOTEL.    According to KVKK Article 5/2 – (f), "Data processing is mandatory for the legitimate interests of the data controller, provided that it does not harm the fundamental rights and freedoms of the relevant person."
Personal data regarding guests' health information; It is processed by physical methods after the guest communicates the sensitivity regarding allergen or food intolerance to the HOTEL staff verbally or in writing.    According to KVKK article 6/3- (a), "Explicit consent of the relevant person"
Personal data regarding guests' license plate information; It is processed when the vehicle is left in front of the HOTEL during the guest's visit to the HOTEL.    According to KVKK Article 5/2 - (f), "Data processing is mandatory for the legitimate interests of the data controller, provided that it does not harm the fundamental rights and freedoms of the relevant person."
Personal data regarding guests' SPA information; It is processed when the personal data of the guest is entered in the physical environment into the SPA entry-exit schedule while the guest will benefit from the SPA service.    According to KVKK Article 5/2 - (f), "Data processing is mandatory for the legitimate interests of the data controller, provided that it does not harm the fundamental rights and freedoms of the relevant person."

7-) STORAGE PERIOD OF PERSONAL DATA:
The retention periods of personal data written in this information text according to data categories are listed below and personal data will be destroyed at the end of the period.
Personal Data     Parties
ID    1 year.
Contact    10 years.
Payment Information    1 year.
Billing Information    10 years.
Health Information    1 year.
Camera Footage    15 days.
License Plate Information     3 months.
SPA Information     1 year.

8-) RIGHTS OF THE RELATED PERSON:
The natural person whose personal data is processed is defined as the relevant person and has the following rights regarding him/her by applying to the workplace:
a) Learning whether personal data is processed or not,
b) Requesting information if personal data has been processed,
c) Learning the purpose of processing personal data and whether they are used for their intended purpose,
ç) Knowing the third parties to whom personal data is transferred domestically or abroad,
d) Requesting correction of personal data if they are incomplete or incorrectly processed,
e) Requesting the deletion or destruction of personal data within the framework of the conditions stipulated in Article 7,
f) To request that the transactions carried out in accordance with paragraphs (d) and (e) be notified to third parties to whom personal data is transferred,
g) Objecting to the emergence of a result that is unfavorable to the person by analyzing the processed data exclusively through automatic systems,
g) Requesting compensation for the damage in case of damage due to illegal processing of personal data.
In accordance with Article 11 titled "Rights of the person concerned" of the Personal Data Protection Law No. 6698, you can submit your requests regarding your personal data to Kocatepe, Topçu Cd. You can send it in writing to No:2, 34437 Beyoğlu/İstanbul or to our e-mail address kvkk@nipponhotel.com.tr. Your requests will be responded to in writing or electronically, free of charge, as soon as possible and within thirty days at the latest, depending on the nature of the request. However, if the transaction requires an additional cost, the fee in the tariff determined by the Board may be charged.

This Information Text may be revised by the OTEL when deemed necessary. 
Point HOTEL Management A.Ş. I have read this clarification text prepared by and obtained information.

Point HOTEL Management A.Ş. (Hereinafter referred to as “OTEL”), we process the personal data of our OTEL visitors as the data controller, within the scope of the Personal Data Protection Law No. 6698 (hereinafter referred to as “KVKK”).

This text, as the "Data Controller" in accordance with KVKK Article 10, regarding your personal data processed during your visit to the OTEL; It has been prepared for the purpose of informing you about the purposes for which we process your personal data, to whom we transfer your personal data and for what purposes, our methods of processing your personal data, our legal reasons and your rights as a relevant person.

1-) DATA CONTROLLER:

ADDRESS                                                : Topçu Caddesi No:6 Beyoğlu/Istanbul

PHONE NUMBER                     : 0212 313 33 00

E‑MAIL                                          : kvkk@nipponhotel.com.tr              

KEP                                                    : pointhotel@hs01.kep.tr

MERSİS                                               : 0730036964500036

2-) SCOPE OF THE INFORMATION TEXT:

This text; It includes the persons staying at the HOTEL (guests) or the relevant persons whose personal data are processed in the HOTEL Visitor Registry during their daily HOTEL visits, without being the HOTEL's staff.

3-) PROCESSED PERSONAL DATA AND PURPOSES OF PROCESSING PERSONAL DATA:

The personal data categories processed for OTEL daily visitors are listed below, and each data category is processed for the purposes specified above.

Personal Data

Purposes of Processing Personal Data

Identity Information: Name - Surname, T.R. Identification Number

Preventing unauthorized entry and exit to the HOTEL and ensuring security.

Contact Information: Phone Number.

Establishing contact with relevant persons in urgent and important situations and ensuring security during daily visits.

Camera Footage: Cameras Inside the HOTEL.

Ensuring the physical space security of the HOTEL, protecting the legitimate interests of the employer, protecting the life and property safety of guests, staff, daily visitors or third parties, and obtaining evidence that is suitable for proof in case of possible disputes.

License Plate Information: Vehicle.

Creating and tracking daily visitors' records at the HOTEL and controlling HOTEL entry and exit.

 

4-) PARTIES TO WHICH PERSONAL DATA CAN BE TRANSFERRED:

The places where personal data subject to this information text may be transferred are listed below.

Your personal data; It can be transferred domestically or abroad for the purposes stated below, in accordance with the personal data transfer conditions in KVKK articles 8 and 9.

Personal Data Categories

Parties

Identity

Judicial Authorities, Law Enforcement Authorities and Competent Public Institutions.

Contact Information

Judicial Authorities, Law Enforcement Authorities and Competent Public Institutions.

Camera Images

Judicial Authorities, Law Enforcement Authorities and Competent Public Institutions.

Plate Information

Judicial Authorities, Law Enforcement Authorities and Competent Public Institutions.

 

5-) PROTECTION OF PERSONAL DATA:

In accordance with KVKK article 12; As the data controller, we take all necessary technical and administrative measures to prevent the unlawful processing of your personal data that we have collected, to prevent unlawful access, to preserve personal data and to prevent it from falling into the hands of unauthorized persons. The main measures taken in this direction are as follows:

ADMINISTRATIVE MEASURES:

•              Personnel KVKK Awareness Training: OTEL personnel are given periodic training on the protection of personal data; Awareness is provided to personnel in accordance with current KVKK legislation and principles.

•              Authorization Matrix: Access to personal data within the OTEL is limited only to authorized persons who need access to the relevant data.

•              Data Destruction Policy: The retention periods of each personal data processed by the personnel and customers within the OTEL are certain, and personal data whose retention period has expired is periodically deleted, destroyed or anonymized in line with our "Personal Data Storage and Destruction Policy".

TECHNICAL MEASURES:

•              Physical Security: Physical archives and server rooms where data is stored; It is protected against natural disasters such as fire, flood and earthquake; Entry and exit to these areas is limited to authorized personnel.

6-) PERSONAL DATA COLLECTION METHODS AND LEGAL REASONS:

Your personal data; It is collected during your visit to the HOTEL by being recorded in the HOTEL Visitor Registry Book and processed through the security cameras in the HOTEL.

Personal Data Collection Methods

Legal Reasons:

Personal data regarding the identity information of OTEL daily visitors; During the HOTEL visit, the personal data of the relevant person is filled into the HOTEL Visitor Registry Book and processed manually.

According to KVKK Article 5/2 - (f), "Data processing is mandatory for the legitimate interests of the data controller, provided that it does not harm the fundamental rights and freedoms of the relevant person."

Personal data regarding the contact information of OTEL daily visitors; During the HOTEL visit, the personal data of the relevant person is filled into the HOTEL Visitor Registry Book and processed manually.

According to KVKK Article 5/2 – (f), "Data processing is mandatory for the legitimate interests of the data controller, provided that it does not harm the fundamental rights and freedoms of the relevant person."

Personal data regarding camera images of daily visitors of the OTEL; During the HOTEL visit, it is processed by automatic methods through HOTEL security cameras.

According to KVKK Article 5/2 – (f), "Data processing is mandatory for the legitimate interests of the data controller, provided that it does not harm the fundamental rights and freedoms of the relevant person."

Personal data regarding license plate information of OTEL daily visitors; During the HOTEL visit, the personal data of the relevant person is filled into the HOTEL Visitor Registry Book and processed manually.

According to KVKK Article 5/2 - (f), "Data processing is mandatory for the legitimate interests of the data controller, provided that it does not harm the fundamental rights and freedoms of the relevant person."

 

7-) PERSONAL DATA STORAGE AND DESTRUCTION PERIOD:

The retention periods of personal data written in this information text according to data categories are listed below and personal data will be destroyed at the end of the period.

PERSONAL DATA

STORAGE PERIOD

DESTRUCTION PERIOD

Identity

3 months.

During the first periodic destruction following the end of the storage period

Communication

3 months.

During the first periodic destruction following the end of the storage period

Camera Images

3 months.

During the first periodic destruction following the end of the storage period

Plate Information

3 months.

During the first periodic destruction following the end of the storage period

 

8-) RIGHTS OF THE RELATED PERSON:

The natural person whose personal data is processed is defined as the relevant person and has the following rights regarding him/her by applying to the workplace:

a) Learning whether personal data has been processed, b) Requesting information if personal data has been processed, c) Learning the purpose of processing personal data and whether they are used in accordance with their purpose, d) Knowing the third parties to whom personal data have been transferred domestically or abroad, d) Requesting correction of personal data in case they have been processed incompletely or incorrectly, e) Requesting the deletion or destruction of personal data within the framework of the conditions stipulated in Article 7, f) Transactions carried out in accordance with paragraphs (d) and (e) to third parties to whom personal data have been transferred. g) To object to the emergence of a result against the person by analyzing the processed data exclusively through automatic systems, g) To request compensation for the damage in case of damage due to the unlawful processing of personal data.

In accordance with Article 11 titled "Rights of the person concerned" of the Personal Data Protection Law No. 6698, you can submit your requests regarding your personal data to Kocatepe, Topçu Cd. You can send it in writing to No:2, 34437 Beyoğlu/İstanbul or to our e-mail address kvkk@nipponhotel.com.tr. Your requests will be responded to in writing or electronically, free of charge, as soon as possible and within thirty days at the latest, depending on the nature of the request.

This Information Text may be revised by the OTEL when deemed necessary.

Point HOTEL Management A.Ş. I have read this clarification text prepared by and obtained information.

This clarification text is prepared for the purpose of fulfilling the clarification obligation by Point HOTEL Management A.Ş. (hereinafter referred to as "OTEL"), which is the data controller in accordance with Article 10 of the Personal Data Protection Law No. 6698 and the Communiqué on the Procedures and Principles to be Followed in Fulfilling the Disclosure Obligation published in the Official Gazette No. 30356 dated 10.03.2018. has been prepared.

1-) DATA CONTROLLER:

ADDRESS                                     :Topçu Cd. No:6 Beyoğlu/İSTANBUL                                            

PHONE NUMBER          :0212 313 33 00                             

MERSİS                                   :0730036964500036

KEP                                           :pointhotel@hs01.kep.tr                                            

E‑MAIL                               :kvkk@nipponhotel.com.tr

2-) SCOPE OF THE INFORMATION TEXT:

This text; It covers guests, staff or third parties whose personal data are processed through security cameras used by the HOTEL.

3-) PURPOSES OF PROCESSING PERSONAL DATA:

Your personal data; It is processed to ensure physical space security, to protect the life and property safety of guests, staff or third parties, and to obtain demonstrable evidence in case of possible disputes.

4-) PARTIES TO WHICH PERSONAL DATA CAN BE TRANSFERRED:

Your personal data may be transferred to Judicial Authorities and Law Enforcement Authorities in order to resolve legal disputes or in accordance with the relevant legislation.

5-) PERSONAL DATA COLLECTION METHOD AND LEGAL REASONS:

Your personal data is automatically processed through a total of 80 closed circuit security cameras (CCTV) located in the entrance and exit doors, building exterior, dining hall, guest waiting area and floor corridors within the HOTEL. Security cameras only record images and no audio. Your personal data in question, in accordance with KVKK Article 5/2 - (f), "Data processing is mandatory for the legitimate interests of the data controller, provided that it does not harm the fundamental rights and freedoms of the relevant person." It is processed based on legal grounds.

6-) STORAGE PERIOD OF PERSONAL DATA:

In accordance with our personal data retention and destruction policy at the OTEL, records related to security camera images are kept for 3 months and the OTEL deletes, destroys or anonymizes personal data in the first periodic destruction process following this date.

7-) RIGHTS OF THE RELATED PERSON:

The natural person whose personal data is processed is defined as the relevant person and has the following rights by contacting the workplace: a) To learn whether personal data has been processed, b) To request information if personal data has been processed, c) To learn the purpose of processing personal data and whether they are used in accordance with their purpose, d) To know the third parties to whom personal data are transferred domestically or abroad, d) To request correction of personal data if they are incomplete or incorrectly processed, e) To request deletion or destruction of personal data within the framework of the conditions stipulated in Article 7, f) Requesting the transactions made in accordance with clauses (d) and (e) to be notified to third parties to whom personal data have been transferred, g) Objecting to the emergence of a result against the person by analyzing the processed data exclusively through automatic systems, g) Requesting the compensation of the damage in case of damage due to the unlawful processing of personal data.

In accordance with Article 11 titled "Rights of the person concerned" of the Personal Data Protection Law No. 6698, you can submit your requests regarding your personal data to Kocatepe, Topçu Cd. You can send it in writing to No:2, 34437 Beyoğlu/İstanbul or to our e-mail address kvkk@nipponhotel.com.tr. Your requests will be responded to in writing or electronically, free of charge, as soon as possible and within thirty days at the latest, depending on the nature of the request. However, if the transaction requires an additional cost, the fee in the tariff determined by the Board may be charged.

This Information Text may be revised by the OTEL when deemed necessary.

Point HOTEL Management A.Ş. I have read this clarification text prepared by and obtained information. You can access the detailed information text we have created within the scope of the Personal Data Protection Law No. 6698 on our website www.nipponhotel.com.tr/kvkk or by scanning the QR code below.