Translated

Privacy policy

Effective from June 29, 2025

This is a translation provided for convenience. The Lithuanian version is legally authoritative.

MB “Vienu yriu prieky” (hereinafter “we”, “our”), which operates the website https://upemis.lt, respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store and share your personal data in accordance with the General Data Protection Regulation (GDPR), the ePrivacy Directive and other applicable legislation. If you have any questions, please contact us by email at: info@upemis.lt.

1. Data Controller

The data controller is:
MB “Vienu yriu prieky”
Company registration number: 306658403
Address: Juknaičių g. 25, Lygumai, LT-83306 Pakruojo District, Lithuania
Email: info@upemis.lt
Telephone: +370 638 87353
Head: Rimgaudas Jurgaitis, Director

2. What personal data do we collect and why?

We collect only the data necessary to ensure the smooth operation of the website and the booking process. Our website is intended for a general audience, and whilst we do not verify users’ ages, it is not intended for children. Below is a breakdown of what data we collect, why we collect it, and the legal basis for doing so:

2.1. Device information

2.2. Account and booking information

2.3. Newsletters and contact form

2.4. Cookies

We use only the strictly necessary cookies required for the website to function (e.g. session cookies for logging in). PostHog cookies are used to collect anonymous statistics, but only with your consent via the cookie management tool. Neopay, our payment processing partner, may also set cookies during the payment process. Further information about cookies:

Consent management: Before enabling non-essential cookies (e.g. PostHog), we ask for your consent via the cookie management tool. Neopay also requests consent at the time of payment in accordance with their privacy policy.

2.5. Event registration and photo data

3. How do we share your data?

Your data may be transferred to the following recipients:

4. International data transfers

Your data (e.g. via Mailgun) may be transferred outside the EU/EEA, for example to the USA. In such cases, we use standard contractual clauses (Article 46 of the GDPR) to ensure the protection of your data.

5. Data retention period

6. Your rights

If you are a resident of the EU/EEA, you have the following rights under the GDPR:

7. Data protection

We use state-of-the-art technical solutions to protect your data:

In the event of a data breach, we will notify the State Data Protection Inspectorate within 72 hours and, where necessary, the affected users.

8. Automated decision-making

We do not use automated decision-making or profiling that would have legal consequences for you.

9. Children’s data

Our website is not intended for persons under the age of 16 and is not aimed at children. We do not verify the age of users, but our services require payment by card in advance, so purchases by children are not anticipated. If we become aware that we have collected data from a person under the age of 16, we will delete it immediately. Please contact us if you believe this has happened.

10. Links to third-party websites

Our website may contain links to third-party websites (e.g. Neopay, PostHog). We are not responsible for their privacy practices. We recommend that you read their privacy policies:

11. Website accessibility for people with disabilities

We aim to ensure that upemis.lt is accessible to all users in accordance with the European Accessibility Act (from 28 June 2025). Our website does not yet comply with WCAG 2.1 AA standards.

12. Policy updates

This Privacy Policy may be updated. We will notify you of any material changes by email or on the website at least 14 days before they come into effect. The updated policy is published at: https://upemis.lt/privatumo-politika.

13. Contact details

If you have any questions about this policy or your data, please contact us:
Email: info@upemis.lt
Telephone: +370 638 87353