Effective Date: 01 July 2023
Last Updated: 15 August 2025
1. Introduction
Lemmika (“we,” “our,” or “us”) operates a premium pet hotel and home visit service for cats in Tallinn, Estonia. We are committed to protecting your privacy and handling your personal data in accordance with the General Data Protection Regulation (GDPR) and Estonian data protection laws.
Contact Information:
- Company: Lillika OÜ (Reg. No. 16767755)
- Email: hi@lemmika.ee
- Address: Pallasti 16-44, Tallinn
- Phone: +372 5390 8221
2. Data Controller
Lillika OÜ is the data controller responsible for your personal data. For any privacy-related questions or requests, please contact us.
3. What Personal Data We Collect
3.1 Customer Information
- Contact Details: Name, personal code, phone number, messaging channel preference, email address, home address.
- Emergency Contacts: Names and phone numbers of emergency contacts.
- Payment Information: Billing address, account number, payment method details (processed securely through our payment provider).
3.2 Pet Information
- Basic Details: Pet name, breed, hair colour, age, sex, weight, microchip information.
- Health Information: Vaccination records, medical conditions, dietary requirements, temperament and behavioural notes.
- Care Instructions: Feeding schedules, medication requirements, special needs.
3.3 Service-Related Data
- Booking Information: Service dates, duration, specific requests.
- Care Notes: Daily observations about your pet’s well-being, eating habits, behaviour.
- Communication Records: Messages, emails, and phone conversations related to your pet’s care.
3.4 Technical Data (Anonymous Website Usage)
- Device Information: IP address, browser type, device type.
- Usage Data: Pages visited, time spent on site.
4. How We Collect Your Data
We collect personal data through:
- Direct Communication: When you contact us via phone, email, or in person.
- Booking Forms: Online booking forms for our services.
- Service Delivery: During pet boarding staying period and home visits service period.
- Website Usage: Through cookies and analytics when you use our digital platforms.
- Veterinary Records: Health certificates and vaccination records you provide.
5. Legal Basis for Processing
We process your personal data based on:
- Contract Performance: To provide pet boarding and home visit services.
- Legitimate Interests: To improve our services, ensure pet safety, and communicate with you.
- Legal Obligations: To comply with veterinary and business regulations.
- Consent: For marketing communications (where required).
6. How We Use Your Data
6.1 Service Provision
- Providing pet hotel and home visit services.
- Creating individualised care plans for your pet.
- Maintaining health and safety records.
- Communicating about your pet’s well-being during service.
6.2 Business Operations
- Processing payments and managing bookings.
- Responding to inquiries and customer service requests.
- Maintaining business records and compliance.
- Improving our services based on welcomed feedback.
6.3 Marketing (with consent)
- Sending promotional offers and service updates.
- Sharing pet care tips and educational content.
- Informing you about new services.
7. Data Sharing and Disclosure
We may share your personal data with:
7.1 Service Providers
- Payment Processors: For secure payment handling.
- Veterinary Services: In case of pet health emergencies (with your consent or as necessary).
- IT Service Providers: For website maintenance and data backup.
7.2 Legal Requirements
- Estonian authorities when required by law.
- Emergency services in case of pet health crises.
7.3 Business Transfers
In the event of a business sale or merger, your data may be transferred to the new owner under the same privacy protections.
We never sell your personal data to third parties for marketing purposes.
8. Data Retention
We retain your personal data for:
- Active Customers: As long as you use our services.
- Inactive Customers: Up to 3 years after your last service for business records.
- Health Records: 5 years for veterinary compliance requirements.
- Financial Records: 7 years for accounting and tax purposes.
- Marketing Data: Until you withdraw consent or request deletion.
9. International Data Transfers
Your data is primarily stored and processed within the European Union. If we need to transfer data outside the EU, we ensure adequate protection through:
- Adequacy Decisions: Transfers to countries with adequate data protection.
- Standard Contractual Clauses: Legal agreements ensuring GDPR-level protection.
- Your Explicit Consent: Where other safeguards are not available.
10. Your Rights Under GDPR
You have the following rights regarding your personal data:
10.1 Right of Access
Request a copy of the personal data we hold about you and your pet.
10.2 Right to Rectification
Request correction of inaccurate or incomplete data.
10.3 Right to Erasure (“Right to be Forgotten”)
Request deletion of your personal data, subject to legal retention requirements.
10.4 Right to Restrict Processing
Request limitation of how we use your data in certain circumstances.
10.5 Right to Data Portability
Request transfer of your data to another service provider in a structured format.
10.6 Right to Object
Object to processing based on legitimate interests or for marketing purposes.
10.7 Right to Withdraw Consent
Withdraw consent for processing where consent is the legal basis.
To exercise these rights, contact us at hi@lemmika.ee. We will respond within 60 days.
11. Data Security
We implement appropriate technical and organizational measures to protect your data:
- Encryption: Sensitive data is encrypted in transit and at rest.
- Access Controls: Limited access to authorized personnel only.
- Regular Backups: Secure data backup procedures.
- Staff Training: Regular privacy and security training for all employees.
- Incident Response: Procedures for handling potential data breaches.
12. Cookies and Website Analytics
Our website uses cookies to:
- Essential Cookies: Enable basic website functionality.
- Analytics Cookies: Understand how visitors use our site (with consent).
- Marketing Cookies: Provide relevant advertising (with consent).
You can manage cookie preferences through your browser settings or our cookie consent tool.
13. Children’s Privacy
Our services are intended for pet owners aged 18 and above. We do not knowingly collect personal data from children under 16 without parental consent.
14. Data Breach Notification
In the unlikely event of a data breach that poses a risk to your rights and freedoms, we will:
- Notify the Estonian Data Protection Inspectorate within 72 hours.
- Inform affected individuals without undue delay.
- Take immediate action to minimise harm and prevent future breaches.
15. Complaints and Supervision
If you have concerns about how we handle your personal data:
- Contact us first: hi@lemmika.ee
- File a complaint with: Estonian Data Protection Inspectorate (Andmekaitse Inspektsioon)
- Website: www.aki.ee
- Email: info@aki.ee
- Phone: +372 627 4135
16. Changes to This Privacy Policy
We may update this privacy policy periodically to reflect:
- Changes in our services.
- Legal or regulatory requirements.
- Best practices in data protection.
We will notify you of significant changes via:
- Email notification
- Website announcement
- Direct communication during service delivery
17. Contact Information
Data Protection Officer: Retno Ika Safitri
Email: hi@lemmika.ee
Phone: +372 5390 8221
Address: Pallasti 16-44, Tallinn
For urgent pet-related matters during service delivery, please use our emergency contact number: +372 5390 8221
This privacy policy is designed to be transparent and easy to understand. If you have any questions about how we handle your personal data, please don’t hesitate to contact us.