top of page

Privacy Policy

Privacy Policy – LH Hotels Milano

Last updated: May 2026

This Privacy Policy describes how personal data of users visiting this website are processed, in accordance with applicable European data protection regulations, including Regulation (EU) 2016/679 (“GDPR”).

By using this website, users acknowledge and accept the practices described in this Privacy Policy.

1. Data Controller

Data Controller:

LH Hotels Milano
VAT Number: 13792060967

2. Types of Data Collected

The website may collect the following personal data:

  • name and surname;

  • email address;

  • phone number;

  • booking information;

  • IP address and browsing data;

  • information voluntarily provided through contact forms.

3. Purpose of Data Processing

Personal data may be processed for the following purposes:

  • management of booking requests;

  • customer assistance and information requests;

  • administrative and legal obligations;

  • website security and technical maintenance;

  • statistical analysis and improvement of services;

  • marketing communications only where consent has been provided.

4. Legal Basis for Processing

Data processing is carried out on the basis of:

  • execution of contractual or pre-contractual measures;

  • compliance with legal obligations;

  • legitimate interest of the Data Controller;

  • consent provided by the user where required.

5. Methods of Processing

Personal data are processed using electronic and organizational measures designed to ensure confidentiality, integrity and security.

The Data Controller adopts appropriate technical and organizational measures to protect data against unauthorized access, loss or unlawful disclosure.

6. Data Retention

Personal data are retained only for the time necessary to fulfill the purposes for which they were collected and in compliance with applicable legal obligations.

7. Sharing of Data

Personal data may be shared with:

  • technical service providers;

  • booking and hosting platforms;

  • consultants and legal authorities where required by law;

  • third-party providers necessary for website operation.

Data will not be sold or disclosed to unauthorized parties.

8. User Rights

Users may exercise their rights under Articles 15–22 of the GDPR, including:

  • access to personal data;

  • rectification or deletion of data;

  • restriction of processing;

  • objection to processing;

  • data portability;

  • withdrawal of consent where applicable.

Requests may be submitted using the contact details provided by the Data Controller.

9. Cookies

This website uses technical and analytical cookies to improve browsing experience and website functionality.

For more information, please refer to the Cookie Policy.

10. Changes to this Privacy Policy

The Data Controller reserves the right to update this Privacy Policy at any time.

Users are encouraged to periodically review this page for updates.

bottom of page