Last updated: July 8th, 2025
This Privacy Policy explains how Nordic Adventures Oy collects, uses, protects, and otherwise processes your personal data. We are committed to transparency in our data practices and to safeguarding your privacy in accordance with the General Data Protection Regulation (GDPR) and other applicable privacy laws. Please read this policy carefully to understand our practices regarding your information.
Company: Nordic Adventures Oy (Business ID: 3087820-1)
Address: Leppiniementie 29, 97240 Rovaniemi, Finland
Phone: +358 40 744 2567
Email: hello@nordicadventures.fi
Name: Alex Rudyuk
Address: Leppiniementie 29, 97240 Rovaniemi, Finland
Phone: +358 40 744 2567
Email: hello@nordicadventures.fi
Customer, partner, and marketing register.
We collect and process personal data to manage our customer and partner relationships, ensure smooth service delivery, and continuously improve our operations and services. The legal basis for data processing is primarily the performance of a contract (e.g., a customer or partner agreement), your explicit consent, compliance with a legal obligation, or our legitimate interests.
Data is processed for the following key purposes:
The register may include various types of personal data to facilitate our services:
We kindly ask guests to inform us of any medical conditions, allergies, or dietary needs that may impact the safe and smooth delivery of our services.
Technical information that may be collected includes:
Our website uses cookies and similar tracking technologies to enhance your Browse experience, analyze website traffic, and personalize content.
What are Cookies?
Cookies are small text files stored on your device by your web browser. They enable a site or its service provider to recognize your browser and capture and remember certain information. Cookies are not personally identifiable to you but can be used to give you a more personalized web experience. Some information stored by cookies may be placed by other companies whose software we use on the site, which can also impact your experience on other websites you may visit after leaving ours.
How We Use Cookies
We use cookies for a variety of reasons, including to:
We may also use trusted third-party services that track this information on our behalf. These include:
Managing Your Cookie Preferences
You have full control over your cookie preferences. Our website's cookie consent tool (Finsweet Cookie Consent) allows you to accept or decline different categories of cookies, giving you granular control.
Most web browsers also allow you to control cookies through their settings. You can usually set your browser to notify you each time a cookie is being sent, giving you the chance to decide whether to accept it, or to block cookies altogether. Please note that blocking all cookies, especially strictly necessary ones, may impact the full functionality of our website and services.
We only share personal data with our trusted partners and essential service providers when it is strictly necessary for delivering a booked service (e.g., transfer companies, accommodation providers, activity operators). Data is shared only to the extent required for operational purposes. In rare cases, we may share data with authorities if explicitly required by law or at the customer’s direct request.
We do not regularly transfer personal data outside the European Union or European Economic Area, nor to international organizations. Should such a transfer become necessary (e.g., for specific service delivery involving partners outside the EU/EEA, or the use of certain international service providers), we will meticulously assess the security measures in place and ensure full compliance with GDPR regulations before any transfer takes place. This includes the use of standard contractual clauses (SCCs), reliance on adequacy decisions by the European Commission, or other legally recognized mechanisms to ensure data protection.
Personal data is handled with utmost care and stored securely throughout its entire lifecycle. Access to personal data is strictly restricted based on user roles and requires unique passwords. Our data is safeguarded through secure physical and digital storage solutions, robust firewalls, and encryption protocols where appropriate. Our staff is thoroughly trained in data protection practices and is bound by strict confidentiality agreements. Our systems are hosted on secure, protected servers. Personal data is deleted or anonymized according to strict data protection protocols and retention schedules when it is no longer needed for the purpose for which it was collected.
You have the right to request access to your personal data stored in our register. Upon receiving a verified request, we will provide you with a copy of your data in a clear and understandable format. To do so, please submit a signed written request to our Data Protection Officer using the contact details provided above.
We are committed to maintaining accurate and up-to-date information. If your personal data in our register is incorrect, incomplete, or outdated, we will promptly correct it upon your request. You also have the right to request the deletion of your personal data ("right to be forgotten") unless legal obligations require us to retain it for specific purposes (e.g., accounting, tax laws, or ongoing contracts).
In accordance with applicable data protection laws, you also have the right to:
We store personal data for at least one year after the end of a customer or partner agreement, unless otherwise required by law (e.g., for accounting or tax purposes, which typically require longer retention periods). You may request the deletion of your data, which we will carry out unless legal retention rules or legitimate business interests apply. Personal data is deleted or anonymized according to strict data protection protocols and retention schedules when it is no longer needed for the purpose for which it was collected.
On some of our tours, photos of customers may be included as part of the service, or available for purchase as an optional extra. For example, some Northern Lights tours may include free photos of customers with the Northern Lights, and some diving/snorkeling tours may offer photos for purchase.
These photos are shared with the customers electronically after the tour and are not made public; they are only shared with the customers who were on that specific tour. Nordic Adventures Oy strives to be GDPR compliant in this regard. Therefore, we generally store these photos for a maximum of two months after the tour, providing ample time for customers to download the photos they wish to keep. After this period, the photos are deleted.
Occasionally, at our discretion, we may include or offer third-party products or services on our website. These third-party sites have separate and independent privacy policies. We therefore have no responsibility or liability for the content and activities of these linked sites. Nonetheless, we seek to protect the integrity of our site and welcome any feedback about these sites.
We may update this Privacy Policy from time to time to reflect changes in our practices or legal requirements. The latest version will always be made available on our website, clearly indicating the "Last updated" date. We encourage you to review this policy periodically.