Privacy Policy

Last updated: March 2026

Who We Are

AB&B Guest House operates guest house accommodation across the United Kingdom with locations in Blackpool, Chester, the Lake District, and Liverpool. This privacy policy explains how we collect, use, and protect your personal information when you use our website and services.

What Data We Collect

We collect the following personal data when you interact with our website:

Account registration: Full name, email address, phone number, postal address, username, and password (stored as a secure hash - we never store your actual password).

Booking information: Location preference, check-in and check-out dates, number of guests, room tier selection, and any special requests or notes.

Contact form: Name, email address, and message content when you submit an enquiry.

Chatbot conversations: Messages you send to our AI chatbot assistant are processed to provide helpful responses. These are not stored permanently.

Technical data: Your browser type, device information, and IP address are collected automatically for security and site functionality.

How We Use Your Data

We use your personal data for these purposes:

Providing our service: Processing your bookings, managing your account, and communicating about your reservations.

Customer support: Responding to your enquiries via the contact form and chatbot.

Site functionality: Remembering your theme preference (light/dark mode), language preference, and keeping you logged in during your session.

Security: Protecting against unauthorised access, fraud, and abuse of our services.

Cookies We Use

Our website uses cookies and similar technologies. For full details, see our Cookie Policy.

Essential cookies: Required for login sessions, security (anti-forgery tokens), and basic site functionality. These cannot be disabled.

Preference cookies: Store your theme choice (light/dark) and language preference. You can manage these in Cookie Settings.

Third-party cookies: Google Translate may set cookies when you use the language switcher. The AI chatbot sends your messages to HuggingFace for processing.

Data Storage and Security

Your data is stored in a secure SQLite database on our server. We implement the following security measures:

Password hashing: Passwords are hashed using industry-standard algorithms and never stored in plain text.

HTTPS encryption: All data transmitted between your browser and our server is encrypted.

Security headers: Content Security Policy (CSP), anti-clickjacking headers, and CSRF protection are enforced on every request.

API key protection: Third-party API keys are stored in secure server-side secrets, never exposed to browsers.

Your Rights (UK GDPR)

Under the UK General Data Protection Regulation, you have the right to:

Access: Request a copy of the personal data we hold about you.

Rectification: Ask us to correct inaccurate personal data (you can also update your details via your Profile page).

Erasure: Request deletion of your personal data ("right to be forgotten").

Restriction: Ask us to limit how we process your data.

Portability: Receive your data in a machine-readable format.

Objection: Object to processing of your personal data.

To exercise any of these rights, please contact us via our Contact page.

Third-Party Services

Our website uses the following third-party services:

Google Translate: Provides page translation. Google may collect browsing data when this feature is used. See Google's Privacy Policy.

Google Maps: Embedded maps on location pages. See Google's Privacy Policy.

HuggingFace: Powers our AI chatbot assistant. Your chat messages are sent to their servers for processing. See HuggingFace Privacy Policy.

wttr.in: Provides weather data for our chatbot customer assistant. Only our requested location name is sent. See wttr.in documentation.

Data Retention

We retain your personal data for as long as your account is active or as needed to provide our services. Booking records are kept for accounting purposes. You may request deletion at any time via our Contact page.

Contact Us

If you have questions about this privacy policy or how we handle your data, please contact us through our Contact page or email info@abbguesthouse.co.uk.