Privacy Policy

Last updated: July 2026

 

At Petra Hotel Belgrade, your privacy matters to us. This Privacy Policy explains how we collect, use, store and protect personal data when you visit our website, make a booking, stay with us, visit our restaurants and bars, attend an event, contact us, subscribe to our communications, apply for a job, or otherwise interact with us.

This Policy applies to Petra Hotel Belgrade, including our accommodation, dining, rooftop, café, bar, event, meeting and guest services.

 

For the purposes of this Privacy Policy, “Petra”, “we”, “us” or “our” refers to:

Libra development doo
Registered seat: Kneza Miloša 54, 11000 Belgrade
Company registration number / Matični broj: 21765970
Tax identification number / PIB: 112909606
Hotel address: Kralja Petra 19, Belgrade, Serbia

 

We act as the data controller for the personal data described in this Policy, unless stated otherwise.

 

1. Personal data we collect

The personal data we collect depends on how you interact with us and may include:

  • identity and contact details, such as name, surname, email address, phone number, nationality, passport or ID details, billing address and company details;
  • booking and stay information, such as reservation details, stay dates, room type, guest preferences, special requests, concierge requests, feedback and complaints;
  • payment and transaction information, such as billing details, invoices, deposits, refunds and payment records. We do not intentionally store full payment card details unless necessary and handled through secure payment systems;
  • restaurant, bar, rooftop and event information, such as table reservations, event enquiries, guest lists, menu preferences, allergies, dietary or accessibility requests where you choose to provide them;
  • marketing and communication information, such as newsletter preferences, enquiries and communication history;
  • website and technical data, such as IP address, browser type, device information, pages visited, cookie identifiers, analytics data and similar tracking technologies;
  • CCTV and security data from public and common areas of the hotel, where applicable. CCTV is not used in private guest rooms or bathrooms;
  • recruitment data, such as CV, employment history, education, qualifications, references and interview notes if you apply for a role with us.

We generally do not seek to collect sensitive personal data. However, you may choose to provide information such as allergies, health-related needs, dietary restrictions or accessibility requirements so that we can provide the requested service safely and properly.

 

2. How we collect personal data

We may collect personal data directly from you, for example when you make a booking, complete a form, check in, contact us, visit our restaurants or bars, attend an event, subscribe to our communications or apply for a job.

We may also receive personal data from booking platforms, travel agents, corporate bookers, event organisers, restaurant reservation platforms, payment providers, technology providers, social media platforms or anyone making a booking or enquiry on your behalf.

Some data is collected automatically when you use our website, through cookies, analytics tools, pixels and similar technologies.

 

3. How we use your personal data

We use personal data to:

  • manage bookings, check-in, check-out, payments and guest services;
  • provide restaurant, bar, rooftop, meeting and event services;
  • respond to enquiries, requests, feedback and complaints;
  • personalise your experience and remember your preferences;
  • process payments, deposits, invoices and refunds;
  • send newsletters, offers, event invitations and marketing communications where permitted by law or where you have given consent;
  • improve our website, services, booking journey and guest experience;
  • protect the safety and security of guests, visitors, employees, property, systems and the hotel;
  • comply with legal, tax, accounting, hotel registration, regulatory or court obligations;
  • manage recruitment and job applications.


4. Legal bases for processing

We process personal data only where we have a lawful basis to do so. Depending on the situation, this may include:

  • performance of a contract, for example to manage a booking, reservation, event or payment;
  • legal obligation, for example to comply with tax, accounting, guest registration or regulatory requirements;
  • legitimate interests, for example to improve our services, manage guest relationships, prevent fraud, protect property and secure our systems;
  • consent, for example for certain marketing communications, non-essential cookies or sensitive information you choose to provide.

Where we rely on consent, you may withdraw it at any time.

 

5. Cookies and marketing

Our website may use cookies, pixels and similar technologies for website functionality, analytics, advertising, booking engine performance and social media integrations.

Strictly necessary cookies are used to make the website function properly. Analytics, functional and marketing cookies will be used only where permitted by law and, where required, after you have given consent through our cookie banner or cookie settings.

You may accept, reject or manage non-essential cookies through our cookie banner or browser settings.

We may send you marketing communications, newsletters, offers, opening updates, event news or dining promotions where we have a valid legal basis to do so. You can unsubscribe at any time by clicking the unsubscribe link in our emails or by contacting us at privacy@petrahotelbelgrade.com.

Even if you opt out of marketing, we may still send you service-related communications, such as booking confirmations, payment information or important updates about your stay.

 

6. Who we share personal data with

We do not sell your personal data.

We may share personal data only where necessary and lawful, including with:

  • booking engine, reservation and property management system providers;
  • payment processors and banks;
  • restaurant, bar and event reservation platforms;
  • email, CRM, marketing, analytics, advertising and website service providers;
  • IT, hosting, cybersecurity and technical support providers;
  • accountants, auditors, lawyers, insurers and other professional advisers;
  • travel agents, corporate bookers, event organisers and service partners involved in your reservation or event;
  • public authorities, regulators, courts or law enforcement where required by law;
  • potential buyers, investors or business partners in the event of a business transfer or restructuring.

We require service providers to protect personal data and use it only for the purposes for which it was shared.

 

7. International transfers

Some of our service providers or technology platforms may process personal data outside the Republic of Serbia.

Where personal data is transferred internationally, we will ensure that the transfer is carried out in accordance with applicable data protection laws and based on an appropriate transfer mechanism, such as contractual safeguards, adequacy decisions, standard contractual clauses, consent where applicable, or another lawful mechanism.

 

8. How long we keep personal data

We keep personal data only for as long as necessary for the purpose for which it was collected, unless a longer period is required or permitted by law.

In general:

  • booking, stay and guest-service records are kept for as long as necessary to provide services, manage the guest relationship and comply with legal obligations;
  • accounting, payment and invoice records are kept in accordance with applicable tax and accounting laws;
  • marketing data is kept until you withdraw consent or object to marketing, unless another lawful basis applies;
  • CCTV footage is kept for a limited period, unless needed for security, investigation, legal, insurance or dispute-resolution purposes;
  • recruitment data is kept for the duration of the recruitment process and for a limited period afterwards, unless you consent to a longer retention period.

When personal data is no longer needed, it will be deleted, anonymised or securely stored in accordance with applicable law.

 

9. How we protect personal data

We use appropriate technical and organisational measures to protect personal data against unauthorised access, loss, misuse, alteration or disclosure.

These measures may include access controls, secure systems, staff confidentiality obligations, supplier controls, secure payment processing, data minimisation and internal procedures for handling personal data and personal data breaches.

However, no website, system or transmission method is completely secure, so we encourage you to take care when sharing information online.

 

10. Your rights

Subject to applicable law, you may have the right to:

  • request access to the personal data we hold about you;
  • request correction of inaccurate or incomplete data;
  • request deletion of your personal data;
  • request restriction of processing;
  • object to certain processing based on legitimate interests;
  • object to direct marketing;
  • withdraw consent where processing is based on consent;
  • request data portability where applicable;
  • lodge a complaint with the competent data protection authority.

To exercise your rights, please contact us at:

Email: privacy@petrahotelbelgrade.com
Postal address: Kralja Petra 19, Belgrade, Serbia

We may need to verify your identity before responding to your request. We will respond within the timeframe required by applicable law.

 

11. Children’s privacy

Our website and services are not directed at children for marketing purposes, and we do not knowingly collect children’s personal data for marketing.

Where children are included in a hotel booking or stay, we may process limited personal data necessary to manage the reservation, provide services, comply with legal obligations or ensure safety, usually through a parent, guardian or responsible adult.

12. Third-party links

Our website may contain links to third-party websites, platforms or services, such as booking platforms, payment providers, social media platforms or partner websites.

We are not responsible for the privacy practices or content of those third parties. Please read their privacy policies before sharing personal data with them.

13. Changes to this Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our services, website, legal obligations or privacy practices.

The latest version will always be available on our website, with the date of the latest update shown at the top.

14. Contact us

For any questions about this Privacy Policy or how we handle personal data, please contact:

 

Petra Hotel Belgrade
Email: privacy@petrahotelbelgrade.com

If you are not satisfied with our response, you may contact the competent data protection authority in accordance with applicable law.

Privacy Policy

Last updated: July, 2026

 

Petra Hotel Belgrade is a luxury hospitality property located in the heart of Belgrade, Serbia. Our operations include accommodation, food and beverage services, rooftop and bar experiences, meetings and events, guest services, procurement, recruitment, housekeeping, maintenance and other hotel operations.

As a hospitality business, we work with employees, suppliers, contractors and service providers across areas such as food and beverage, laundry, cleaning, technology, maintenance, uniforms, recruitment, security, transport, marketing and event production.

We recognise the importance of responsible business practices and are committed to operating with integrity, respect and accountability.

Our Commitment

Petra Hotel Belgrade has a zero-tolerance approach to modern slavery, forced labour, human trafficking, child labour and exploitation.

We are committed to:

  • acting ethically and responsibly in our business relationships;
  • respecting human rights and lawful labour standards;
  • promoting fair and safe working conditions;
  • supporting responsible recruitment practices;
  • working with suppliers and partners who share our standards;
  • taking appropriate action where we identify or suspect a risk of exploitation.

We expect everyone working with us, or on our behalf, to act with honesty, respect and integrity.

Employees and Recruitment

We are committed to protecting the rights, safety and well-being of our employees.

Where required, we carry out appropriate identity, eligibility and right-to-work checks, provide clear employment terms and expect recruitment partners to act lawfully and ethically.

We do not knowingly work with agencies, contractors or third parties that use forced labour, charge unlawful recruitment fees, withhold identity documents, restrict freedom of movement or otherwise exploit workers.

Relevant team members may receive guidance or training on ethical conduct, responsible recruitment, supplier standards and reporting concerns.

Supplier Standards

We expect our suppliers, contractors and service providers to comply with applicable labour, employment, health and safety, immigration and anti-trafficking laws.

Suppliers are expected to:

  • prohibit forced labour, child labour, human trafficking and exploitation;
  • provide safe and fair working conditions;
  • respect workers’ rights, dignity and freedom;
  • avoid abusive, deceptive or coercive recruitment practices;
  • take reasonable steps to prevent exploitation within their own supply chains.

Where appropriate, we may request information about supplier practices, policies, certifications, recruitment processes, subcontractors or compliance standards.

If a concern is identified, we may request corrective action, suspend cooperation, terminate the relationship or report the matter to relevant authorities where required.

Higher-Risk Areas

We recognise that certain areas of the hospitality supply chain may carry higher labour and human-rights risks, especially where work is outsourced, seasonal, subcontracted or dependent on migrant labour.

These areas may include housekeeping, cleaning, laundry, construction, maintenance, food and beverage supply chains, security, transport, event production, temporary staffing and recruitment agencies.

We aim to pay particular attention to these areas when assessing supplier and operational risks.

Reporting Concerns

Employees, suppliers, contractors, guests and business partners are encouraged to report any concern relating to modern slavery, human trafficking, forced labour, child labour, exploitation or unethical conduct.

Concerns may be reported to:

Email: compliance@petrahotelbelgrade.com
Contact person/department: nemanja.galic@petrahotelbelgrade.com

Reports will be reviewed seriously and handled as sensitively as possible.

We do not tolerate retaliation against anyone who raises a concern in good faith.

Monitoring and Review

We are committed to reviewing and improving our approach to preventing modern slavery and human trafficking.

Our ongoing efforts may include reviewing supplier standards, improving employee awareness, strengthening reporting channels, assessing higher-risk suppliers and updating policies where needed.

This Statement will be reviewed periodically and updated where appropriate.