Stagionaly

Privacy Policy

Last updated: May 2026

1. Data Controller

Stagionaly (stagionaly.com) is the data controller for your personal information under EU Regulation 2016/679 (GDPR). For any privacy-related matter contact us at stagionaly@capsulecodes.com.

2. Data We Collect

We collect the following data depending on your account type:

Candidates: first name, last name, email address, birth year, city of residence, nationality, main professional role, years of experience, work availability, accommodation preferences, profile photo.

Employers: company name, VAT number (Partita IVA), email address, contact person name and role, establishment data (name, address, type).

Usage data: applications submitted, job offers viewed, language preferences, and — with your consent only — aggregated navigation data for statistical purposes.

3. Purpose and Legal Basis

We process your data to:

  • Provide the job-matching service between candidates and hospitality establishments — legal basis: contract performance (Art. 6.1.b GDPR).
  • Send notifications and platform-related communications — legal basis: contract performance.
  • Analyse platform usage to improve the service — legal basis: consent (Art. 6.1.a GDPR), revocable at any time.

4. Third Parties

We use the following service providers, each with adequate GDPR safeguards:

We do not sell or share your data with third parties for commercial purposes.

5. Data Retention

Data is retained for as long as your account is active. Upon a deletion request, personal data is removed within 30 days of receiving the request.

6. Your Rights

Under GDPR you have the right to:

  • Access — obtain a copy of your personal data.
  • Rectification — correct inaccurate or incomplete data.
  • Erasure— request deletion of your data ("right to be forgotten").
  • Portability — receive your data in a structured, machine-readable format.
  • Objection and restriction — object to or restrict processing in certain cases.

To exercise these rights write to stagionaly@capsulecodes.com. We will respond within 30 days.

7. International Transfers

Data may be transferred outside the European Union to the servers of the providers listed in section 4. These providers operate in compliance with GDPR safeguards (Standard Contractual Clauses or equivalent).