Privacy
Controller
The controller responsible for the processing of personal data on this website within the meaning of the General Data Protection Regulation (GDPR) is:
PleiWa GmbH Spitzwiese 3 54340 Bekond Germany
Represented by: Simon Warth and Markus Plein Phone: +49 6534 949667 Email: info@plein-hotel.com
At a glance
This website has been deliberately designed to process as little data as possible:
- We do not use any analytics or tracking services, advertising or marketing cookies, or social media plugins.
- Fonts, images and all other content are delivered from our own server. No third-party content is loaded when you visit our pages.
- There is only one cookie. It is only set if you choose a language yourself, and it remembers that choice.
- We only receive details such as your name or email address if you write to us using one of the request forms or contact us directly.
Hosting and server log files
This website runs on our own virtual server hosted by IONOS SE, Elgendorfer Str. 57, 56410 Montabaur, Germany. We have concluded a data processing agreement with IONOS in accordance with Art. 28 GDPR.
Each time you visit the website, your browser transmits data to our server for technical reasons. The following information in particular may be recorded in server log files:
- IP address of the requesting device
- date and time of access
- page or file requested and amount of data transferred
- response status code (e.g. whether the request was successful)
- browser and operating system, if your browser transmits this information
- previously visited page (referrer), if your browser transmits this information
We need this data to deliver the website, to ensure its secure and stable operation and to detect faults and attacks. It is not evaluated for marketing or analytics purposes. The legal basis is Art. 6(1)(f) GDPR; our legitimate interest lies in providing the website securely and without errors.
Server log files are only stored for as long as necessary for these purposes and are then deleted.
The connection between your browser and our server is encrypted (HTTPS). You can recognise this by “https://” in your browser’s address bar.
Language selection and cookie
If you open the website’s start address without specifying a language, we automatically redirect you to a suitable language version. To do so, we take into account the language you previously chose yourself (see below) or, if there is none, the language setting your browser sends with every page request. This evaluation itself does not store anything. The legal basis is Art. 6(1)(f) GDPR; our legitimate interest is to show you the website in a suitable language.
If you actively choose a language using the language selector, we store this choice in a cookie so that the website is displayed in this language straight away on your next visit:
- Name: ks_lang
- Content: code of the chosen language (e.g. “de” or “en”)
- Storage period: 1 year
- Other characteristics: a cookie of our own website (first-party cookie) with the setting SameSite=Lax; it is not passed on to third parties and is used neither to recognise you nor for tracking.
No cookie is set unless you actively choose a language. We do not use any other cookies. Nor do we use your browser’s local storage (local storage or session storage).
Storing the cookie on your device is based on Section 25(2) no. 2 TDDDG (German Telecommunications Digital Services Data Protection Act), as it is strictly necessary for the function you have expressly requested – remembering your chosen language. The associated processing is also based on Art. 6(1)(f) GDPR. You can delete the cookie in your browser at any time.
Table and celebration requests
You can use the forms on this website to request a table or a celebration or event. The forms are processed exclusively by our own server; no external form or captcha services are used.
Table request
For a table request, we process the following details:
- first and last name
- email address
- phone number
- requested date, time and number of guests
- your message, if you write one (optional)
- your agreement that your details may be used to process the request (tick box in the form)
Celebration and event request
For a celebration or event request, we process the following details:
- name
- email address
- phone number
- type of event, date, time of day and number of guests
- preferred format (e.g. set menu, à la carte or buffet)
- your message, if you write one (optional)
- your agreement that your details may be used to process the request (tick box in the form)
Additional information
With both forms, the language of the page from which you send your request and information used to protect against spam are also transmitted for technical reasons (see “Protection against spam and misuse”). Each request is given a request number, and the time it was received is recorded.
Please only include in your message what is needed for your request. If you voluntarily tell us about intolerances or allergies, for example, we will use this information solely so that we can take it into account during your visit or celebration.
Transmission by email
The website does not store your request in a database of its own. Immediately after you submit it, our server sends it as an email to our mailbox buchung@plein-hotel.com. The email is sent via the mail servers of IONOS; the technical sender mailbox is webseite@plein-hotel.com. So that we can reply to you directly, your email address is set as the reply-to address in this email.
Confirmation of receipt for table requests
After a table request has been submitted successfully, we automatically send a confirmation of receipt to the email address you provided. It only confirms that we have received your request and is not a reservation confirmation. The email contains the requested date, time and number of guests, the request number and our contact details – but not your name or your message.
No automatic confirmation of receipt is currently sent for celebration and event requests.
Further processing in OpenTable
We use the OpenTable reservation system to manage our reservations. Once your request has been received, we manually transfer the details relevant to the reservation from the email to OpenTable. There is no automatic transfer from the website form to OpenTable. We have concluded a data processing agreement with OpenTable in accordance with Art. 28 GDPR.
Protection against spam and misuse
To protect the forms against automated spam and misuse, we only use our own, data-minimising measures:
- a form field that is invisible to visitors and is only filled in by automated programs;
- the time at which the form was opened, in order to detect implausibly fast submissions;
- a limit on the number of requests per IP address. For this purpose, the IP address is only held in the server’s working memory and is automatically deleted after about 10 minutes;
- a limit on the number of automatic confirmations of receipt per email address, so that the form cannot be used to trigger emails to other people’s addresses. For this purpose, only a check value (hash) calculated from the address – not the address itself – is held in working memory and automatically deleted after about 24 hours.
This data is not stored permanently and is not passed on to third parties. The application’s technical logs only record technical information, such as the request number, the result of processing and, where applicable, the type of error – no names, email addresses, phone numbers or message contents.
Purpose and legal basis
We process your details in order to handle your request and to arrange your visit or celebration with you. The legal basis is Art. 6(1)(b) GDPR (steps taken at your request prior to entering into a contract). By ticking the box in the form, you also agree that your details may be used to process your request.
The measures to protect against spam and misuse are based on Art. 6(1)(f) GDPR; our legitimate interest lies in protecting our forms and mailboxes against misuse.
We need the details not marked as optional in order to process your request and to be able to contact you. Without them, the form cannot be submitted. Alternatively, you can also reach us by phone.
Contact by email, phone or WhatsApp
If you contact us by email, by phone or via WhatsApp, we process your details – such as your name, your contact details and the content of your message – in order to deal with your enquiry. The legal basis is Art. 6(1)(b) GDPR where your enquiry concerns a reservation or event, and otherwise Art. 6(1)(f) GDPR; our legitimate interest lies in responding to your enquiry.
For messages sent via WhatsApp, WhatsApp’s privacy policy also applies.
Links to WhatsApp, Google Maps and other websites
Our website contains links to WhatsApp (wa.me) and to Google Maps (route planning). These are simple links: no content or maps from these services are embedded in our pages. No data is therefore transmitted to WhatsApp or Google when our website loads.
Only when you click on one of these links do you leave our website and access the service of the respective provider. From then on, that provider’s privacy policy applies; we have no influence on the data processing there. The same applies to links to other websites, such as that of the Altes Kelterhaus.
Fonts and content
All fonts are stored on our own server and loaded from there; there is no connection to Google Fonts or other font providers. Images and all other content also come from our own server. There are no embedded videos, maps or social media content.
Processors and recipients
To operate this website and process your requests, we use the following service providers as processors. We have concluded a data processing agreement in accordance with Art. 28 GDPR with each of them:
- IONOS SE, Montabaur (website hosting and email delivery)
- OpenTable (management of our reservations)
Beyond this, we only pass on your data if we are legally obliged to do so.
Storage period
We only store personal data for as long as necessary for the respective purpose. Once the purpose no longer applies, the data is deleted unless statutory retention obligations or other legal grounds require further storage.
The short periods mentioned above (about 10 minutes and 24 hours respectively) apply to the technical data used to protect against misuse. The language cookie expires after one year unless you delete it beforehand.
Your rights
Under the GDPR, you have the following rights with regard to your personal data:
- access to the data stored about you (Art. 15 GDPR)
- rectification of inaccurate data (Art. 16 GDPR)
- erasure (Art. 17 GDPR)
- restriction of processing (Art. 18 GDPR)
- data portability (Art. 20 GDPR)
- withdrawal of any consent given, with effect for the future (Art. 7(3) GDPR)
To exercise these rights, simply contact us at info@plein-hotel.com or at the address given above.
You also have the right to lodge a complaint with a data protection supervisory authority (Art. 77 GDPR). The authority responsible for us is: Der Landesbeauftragte für den Datenschutz und die Informationsfreiheit Rheinland-Pfalz (State Commissioner for Data Protection and Freedom of Information of Rhineland-Palatinate) Hintere Bleiche 34 55116 Mainz Germany
Right to object
Where we process your data on the basis of Art. 6(1)(f) GDPR, you have the right to object to this processing at any time on grounds relating to your particular situation (Art. 21 GDPR). We will then no longer process the data unless we can demonstrate compelling legitimate grounds for the processing which override your interests, rights and freedoms, or the processing serves the establishment, exercise or defence of legal claims.
Automated decision-making
There is no automated decision-making, including profiling, within the meaning of Art. 22 GDPR.
Changes to this privacy policy
We will update this privacy policy if our website or the legal requirements change. The version published here applies.
Last updated: 4 October 2026
