top of page

Privacy Policy

Effective Date: 07/01/2025
Last Updated: 30/03/2025

​

Hidden Sidewalks (“we,” “our,” or “us”) is committed to protecting your privacy and handling your personal information responsibly and transparently. This Privacy Policy explains how we collect, use, store, and protect your data when you visit our website, book a tour, or communicate with us.

 

We comply with applicable data protection regulations, including the General Data Protection Regulation (GDPR) in the European Union and the Act on the Protection of Personal Information (APPI) in Japan.

1. Information We Collect

We collect the following types of personal information when you use our website or services:

​

a) Information You Provide Directly:

​

  • Full name

  • Email address

  • Phone number and/or WhatsApp number

  • Nationality or country of residence (if needed for group arrangements)

  • Booking details (selected tour, date, number of participants)

  • Special requests or personal preferences (e.g. dietary, accessibility)

​

b) Payment Information:

​

We do not collect or store your credit card information directly. All payments are processed securely via a third-party payment provider (e.g., Stripe or PayPal), which is PCI-DSS compliant and encrypts all sensitive data.

​

c) Automatically Collected Information. When you visit our website, we may collect:

​

  • IP address

  • Browser type and version

  • Device type

  • Pages visited and time spent on site

  • Referring URL

​

This data is collected anonymously via tools like Google Analytics and is used for website performance and marketing insights.

2. How We Use Your Information

We use your information to:

​

  • Process and confirm your bookings

  • Communicate important updates about your tour (e.g., meeting point, weather changes)

  • Respond to your questions or requests

  • Improve our website and services based on usage trends

  • Send occasional follow-ups or feedback requests (with your consent)

​

We will never sell, rent, or share your personal information with third parties for marketing purposes.

3. Legal Basis for Processing (under GDPR)

If you are located in the EU, our legal basis for processing your personal data depends on the context:

​

  • Performance of a contract: To process your booking and deliver our services

  • Consent: When you opt in to receive optional emails or provide personal preferences

  • Legitimate interest: To improve our website or respond to your inquiries

  • Legal obligation: Where required to comply with applicable laws

4. Data Storage and Retention

We store your personal data securely and only for as long as necessary:

​

  • Booking and communication data: kept for up to 24 months

  • Financial transaction data: retained by our payment processor in accordance with legal requirements

  • Analytics data: retained anonymously for up to 26 months

​

You may request deletion of your personal data at any time (see Section 6).

5. Data Security

We take data protection seriously and implement appropriate technical and organizational measures to safeguard your information. This includes:

​

  • Secure HTTPS encryption on our website

  • Password-protected internal systems

  • Use of trusted third-party providers with proven security track records

  • Limited access to personal data on a need-to-know basis

6. Your Rights

You have the right to:

​

  • Access the personal data we hold about you

  • Correct inaccurate or incomplete information

  • Request deletion of your personal data (“right to be forgotten”)

  • Withdraw consent at any time

  • Object to or restrict data processing under certain conditions

  • File a complaint with a data protection authority if you believe your rights are violated

​

To exercise any of these rights, please contact us at info@hiddensidewalks.com. We will respond within 30 days.

7. Third-party Services

We may use the following third-party services, which are governed by their own privacy policies:

​

  • Google Analytics (for website analytics)

  • Bokun, Stripe or PayPal (for secure payments)

  • Email or CRM platforms (for communication, if used)

​

We ensure that all third-party services used are compliant with privacy and data protection laws relevant to their jurisdiction.

8. International Transfers

Because we operate in Japan and may serve guests globally, your data may be transferred to, and processed in, countries outside your own. By using our services, you consent to this transfer, provided we ensure appropriate safeguards are in place.

9. Changes to This Policy

We may update this Privacy Policy from time to time. Any changes will be posted on this page, with the “Last Updated” date clearly indicated. We encourage you to review it regularly.

10. Contact Us

If you have any questions or concerns about your privacy or this policy, contact us at info@hiddensidewalks.com.

bottom of page